Skip to page content or skip to Accesskey List.
Search evolt.org
evolt.org login: or register

Work

Main Page Content

Why Verisign's Wildcard DNS is a Bad Idea

Rated 4.14 (Ratings: 5) (Add your rating)

Log in to add a comment
(11 comments so far)

Want more?

 
Picture of spinhead

Joel D Canfield

Member info | Full bio

User since: April 18, 2001

Last login: October 06, 2009

Articles written: 7

Verisign, owners of what was once Network Solutions, have introduced a new wrinkle to the web. By adding 'wildcards' to their domain name settings, any domain name not found will be redirected to their 'helpful search portal.' This is because, in reality, an address was found: Verisign's wildcards match anything not found elsewhere. If the domain is found, but not the page, that domain's 'not found' page will be displayed. I'll leave it to others to discuss the technical details if they choose to.

Why is this a bad idea? Not because it annoys me personally. If that were a valid argument it would deny fans of certain television sitcoms and certain styles of music their rightful enjoyment. Verisign had a Bad Idea from a business perspective, and from a web perspective. It's a bad business model, it violates the spirit of the web, and it confuses and potentially alienates customers.

A Bad Business Model

Network Solutions was once a government-sanctioned monopoly. Not the open-to-debate type of monopoly Microsoft is accused of being, but a true monopoly. As the only vendor for domain name registration, they could essentially make their own rules.

Those days are gone. Now, domain name registrars can be found on any virtual street corner. Verisign, as the new NetSol, is trying to recover from that loss of monopoly. Let's briefly compare these two alleged monopolies, Microsoft and Verisign/Netsol. Microsoft develops (or purchases) tools that are useful to me, and which I usually have a hard time finding elsewhere for a fair price and the same quality. (I realize that's a subjective statement, so if you disagree, feel free to write your own article and make your own subjective statements to the contrary.) Microsoft has done a world-class job of marketing, making their tools the de facto standards of the software world, as far as the average end-user is concerned.

Verisign provides no services which can't be found elsewhere, at a better value for the same or superior quality. Their marketing has done nothing compelling to cause me to desire their services. Although they have lowered prices on extended domain name registration, their first-year price is exactly what it was during the days of their monopoly. This makes bad business sense when equal or better registration services are commonly available for less than one-third the cost. Higher prices, in a good business model, must be offset by some compelling reason for the customer to pay them. Verisign has not provided that reason.

It Violates the Spirit of the Web

Openness. Sharing. Freedom. Those are things we've come to associate with the world wide web. Want to chat with someone in another country, asynchronously? Want to compare prices across, not just time zones, but international borders? Want to learn virtually anything? It's all possible because the people who make the web work want it to work. While commercial interests drive much web development, much is still driven by altruism.

Verisign has created a situation where I, the user, have no choice. I cannot circumvent their device. I can't choose to turn it off without changing the way a familiar tool functions. They're like the loud voice at the next table, interrupting your conversation every time they hear something they want to comment on. Perhaps it's not malice; perhaps it's just rudeness. Why would a commercial entity like Verisign want to drive potentially millions of visitors to their website?

It's Confusing

On the telephone, in most countries, if you misdial, or dial a number that doesn't exist, you hear a recording which tells you succinctly "That number doesn't exist. Please check it, and try again." That short and useful response is the conceptual basis for the well-known '404' 'page-not-found' error we've all seen often enough.

Now, imagine a different scene: one day, you dial an old friend's number, not sure whether they still live there. Instead of the familiar recording, someone answers—but it's not your friend, it's a total stranger. "Hello? Oh, they don't have this number. No, I don't know if they moved, or if you dialed wrong. Hmmm . . . let me see if I can help you. Would you like to try calling someone with a similar name? How about just calling similar phone numbers and see if they answer? No? Okay."

You try again, wondering if you misdialed. The same voice answers, with the same message. They learned nothing from your previous experience. They're not more helpful the second, third, or twelfth time. No benefit has been added by hijacking the phone conversation you were trying to make. Instead, you are confused and frustrated.

Changing something familiar without an overwhelming reason is a bad customer service model.

What Can You Do?

If you don't want to see Verisign's 'helpful' message when the web address you're looking for isn't found, there's a simple (albeit circuitous) method. If you're using a Windows based PC, there is a file called 'hosts' (that's all; no file extension) in your system folders. Making an entry which gives your local machine's address as the address of Verisign's helpful tool will essentially circumvent it. However, the 'not found' page you see will display information about the Verisign page, not the page you were really seeking. (It is left to the reader to find and implement whatever circumvention processes they might want.)

Another thing you can do is speak out. If you're a Verisign customer, tell your contacts at Verisign what you think. If you're not a customer, but others consult you for web expertise which might in the past have caused you to recommend Verisign, let them know if you won't consider them in the future. This isn't about personal preferences as much as it is about conducting business in a professional manner. Stepping on someone's toes is not how to win friends and influence people.

I wrote The Commonsense Entrepreneur to help the average small business operator who has passion, but not experience. Rather than a 'how to', it's a 'why to' designed to help you ask yourself the right questions, to which you already know the best answers. I'm also co-founder of BizBa6 Small Business Support Services, Spinhead Web Design, the Northern California Association of Entrepreneurs, Business Heretics and the Instant Biz Plan. With my wife, I wrote a second Commonsense book, The Commonsense Virtual Assistant.

Not 404 but browser dialog

Submitted by tupholme on September 19, 2003 - 06:40.

This isn't a replacement for the 404 - that's sent by a domain's Web server if a page can't be found - but a replacement for the browser dialog box that says something like 'XXX could not be found, please check the address and try again'. If you've forgotten what that was like already, try a made-up .co.uk domain, for example (because this intervention only applies to US TLDs).

I'm sure something like this happened with certain versions of Internet Explorer, where the browser directed you to an MSN search if it couldn't find the domain name. Personally, I'd rather go with Verisign than Microsoft!

login or register to post comments

petition your ISP

Submitted by bryann on September 20, 2003 - 05:39.

there is a patch available for the major DNS servers (bind, djdns etc) that will stop the changes by Verisign from being effective - just petition your ISP to install it, we are :)

login or register to post comments

hang on a sec...

Submitted by bryann on September 20, 2003 - 05:42.

here's a link with info : http://www.imperialviolet.org/dnsfix.html

login or register to post comments

Verisign's response to my e-mails

Submitted by spinhead on September 20, 2003 - 15:38.

Thus far I've received two e-mails from Verisign. The first read:

"VeriSign's Site Finder service improves the web browsing experience when the user has submitted a query for a nonexistent second-level domain name in the .com and .net top-level domains. Before this service was implemented, when a user entered a URL containing a nonexistent (e.g., unregistered) domain name ending in .com or .net, their web browser returned an error message that contained no useful information. With the introduction of Site Finder, users now receive a helpful web page offering links to possible intended destinations, related categories, and the ability to conduct additional searches immediately. For more information, please email: sitefinder@verisign-grs.com"

The second provided a link to the Sitefinder page and then quoted extensively from it.

I still think it's a bad idea.

login or register to post comments

Ripped W3C?

Submitted by haidary on September 20, 2003 - 15:54.

I'm sorry, but the design of the page bryann posted ( http://www.imperialviolet.org/dnsfix.html ) looks like it was ripped from the W3C. o_O Has anyone noticed that? Colors are different but it's the same basic layout.

login or register to post comments

Circumvent Verisign in your firewall

Submitted by KUQ on September 22, 2003 - 00:07.

I've blocked the site and the corresponding ip address in my firewall. I don't get a 404 error but at least I get an error. Without this, running a link checker like Xenu would be useles as all links would resolve.

Definitely a Bad Thing!

login or register to post comments

nunames

Submitted by bearwalk on September 22, 2003 - 01:48.

What do you think about nunames, that uses a similar technique? Type a random .nu domain name, and it will tell you that it may be available to register.

Is that bad too?

login or register to post comments

nunames tool

Submitted by spinhead on September 22, 2003 - 14:41.

I don't think so, but it's a case of perspective, not function.

If I mistype a .com name, I just want to see an error, not someone's idea of helpfulness. The .nu tool performs a similar process, true; but .nu names being so much less common, there may be greater acceptance of an unexpected result.

To me, it's like suddenly having my home phone work differently, or learning that my cell phone doesn't behave exactly like my home phone. In the former case, surprises are confusing, perhaps frustrating. In the latter, unexpected functionality may not be so surprising, since I'm working from a different base of assumptions.

login or register to post comments

Re: Ripped W3C?

Submitted by Martin Tsachev on September 24, 2003 - 06:59.

Look at http://www.imperialviolet.org/iv.css.text=css
/* Imperialviolet.org CSS - Aggle */
/* Ripped from the W3C - don't you love the W3C? */
Explains a lot of things, doesn't it.

login or register to post comments

GoDaddy files suit to stop Verisign

Submitted by spinhead on September 24, 2003 - 19:26.

GoDaddy has filed a lawsuit and is asking for a preliminary injunction to stop VeriSign's misuse of its registry.

login or register to post comments

Blocked

Submitted by mantik on June 6, 2004 - 03:06.

I've blocked the site and the corresponding ip address in my firewall. I don't get a 404 error but at least I get an error. Without this, running a link checker like Xenu would be useles as all links would css resolve. Definitely a Bad Thing!

login or register to post comments

The access keys for this page are: ALT (Control on a Mac) plus:

evolt.orgEvolt.org is an all-volunteer resource for web developers made up of a discussion list, a browser archive, and member-submitted articles. This article is the property of its author, please do not redistribute or use elsewhere without checking with the author.