From: Brett Fenton Sent: Wednesday, 24 August 2005 2:32 PM To: jo.lim@auda.org.au Subject: domain name password policy review Dear Jo, In regards to the current review of the published policy, http://auda.org.au/policies/auda-2002-29/ I note the following comments: 1) Clause 2.3 Clause 2.2 defines the Registrar guidelines for the generation of an authInfo password. There should be clarification as to whether these guidelines extend to Registrants choosing their own password as per 2.3. 2) Clause 4.2 should specify the method of delivery as "by email to the listed Registrant contact on the domain name" 3) Clause 4.3 is relatively insufficient and out of step with current best practice in the gTLD space. The requirement in writing needs to include that documents submitted be notarized, and furthermore that electronic copies be excluded from the request mechanism. Regards, Brett Fenton -- Brett Fenton NetRegistry Pty Ltd _______________________________________________