Secure Access to Registry Service via Registry GUI
From CoCCA Registry Services (NZ) Limited
Contents |
Secure Access to Registry GUI
The CoCCA Registry SRS can restrict the access to Registry GUI, after you installed the CoCCA Registry as described in CoCCA_Installation,_patch,_upgrade#CoCCA_Installation_How_to, you can login to your Registry system using internet browser, by vist the Registry URL.
To protect you GUI from unauthorized login, the SRS provide you with many options:
1- GUI IP Restrictions, SRS restrict Access to Registry GUI to specific IP for each login. 2- The SRS uses a Captcha mechanismto prevent automated login. 3- SRS can provide you access using Tokens to protect GUI access.
GUI IP Restrictions
CoCCA Registry Allow LOGIN To Set IP Restrictions, this include Enforce IP Restrictions, you can restric access to your Registry system for specific IP and IP ranges.
you can see the following figure, explain how you can enable IP Restrictions GUI --->Logins----your login--->GUI IP Restrictions:
GUI Access using Captcha
CoCCA Registry Allow Registry administrator to enable the Captcha at the Login page to prevent the automated script login, this feature can be done through the GUI -----> Configuration ----> Login Page :
The following figure show how you can set the Capatcha for Login Page:
GUI Access using Tokens
CoCCA Registry support two-factor authentication, by provide the login using password and tokens, CoCCA comptible with MYPW, you will need to add the device to your login (just once). this can be done when you login, On the top look from GUI -----> Logins then in the opened window go to-----> "View current login" on the right -----> then "Edit details" for login. It will show your login details, at the very bottom you will see "Require MyPW Token". If you press yes, the system will ask for device ID and current token. After completed - save.
The Following figure explain this:
Notice: you can Download MYPW application on your mobile phone to generate based on time tokens, you can check MYPW website MYPW.
EPP IP Restrictions
CoCCA can secure Access to Registry EPP service using EPP IP Restrictions via GUI, CoCCA allow Client (Registrar) To Set IP Restrictions for his account, you can enforce IP Restrictions for EPP loign, this can be done via GUI -----> Clients------> on the Right you will find EPP IP Restrictions as the following figure:
Secure Access to Registry WHOIS service
CoCCA Registry secure all Registry services, you can restrict access to those services through the GUI, the WHOIS service and All WHOIS queries are logged.
for PORT 43 we can add the following rules vai GUI ----> Configuration ---> Site:
- limits are set per IP/per min/hour on the WHOIS config page if the query limit is reached then the port 43 WHIOS will give a response "WHOIS Query Limit Reached" ( these values can be adjusted as required when there is evidence of abuse ). See the following figure:![]()
The following figure show how to restrict IP and Network query Limits via GUI ----->Configuration --->Whois :![]()
- The SRS also will create WHOIS IP black lists and white lists as required,See the following figure show how you can add white and black list, via GUI ----->Configuration --->Whois:![]()
- The SRS uses a Captcha mechanism, to prevent automated WHOIS queries. you can enable Captcha from GUI ----->Configuration --->Whois :![]()





