Ugh. This sucks.

Azure decided to move my free subscription to a different subscription type. Fine, just log in and move it over to the other one.

Unfortunately, the move broke in the middle for some unknown reason. And there seems to be no possible way of contacting support.

Okay, so plan B: move it over to another machine and update DNS to point to it. Except #Gandi ( @gandi ?) now needs to send me an email to log into the DNS management console. And I can't do that because the DNS entry I want to update is the one to the mail server. So... any ideas?

They do have a recovery thing that is very complicated.

any of you have experience with the secondary dns service at netim? i really need to get off #gandi, the pricing is absurd
Managing DNS nameservers - Netim support

1 How to manage nameservers 2 How to enable or disable DNSSEC 3 Predefined nameservers 4 Using Netim DNS Servers as secondary servers 5 Predelegation requirement and Zone Check How to manage nameservers A domain name must have nameservers for users to be able to access its associated website. And when users try to go […]

Netim support
Ça y est, je n’ai plus rien chez #gandi c’était devenu trop cher pour pas plus de service ou de qualité !! 

Call for #ddclient testers on #OpenBSD: the `net/ddclient` package is currently at 3.9.1, but we've got a patch updating to 4.0.0 in review:

https://marc.info/?t=176774244800001&r=1&w=2

This is a pretty big jump from the old version we currently have, but is necessary for some #DynDNS providers. I'm run-testing this patch with #Gandi, but it supports so many providers that it'd be best to get a better sampling.

'net/ddclient 4.0.0' thread - MARC

Moving off from #gandi, not affordable for me. Suggestions, please? #domain
@hanscees Yeah, i switched off #gandi too - they were great, but there was a 2019 purchase by private equity then resale in 2023 to another firm and the price increases. Alas. https://www.pehub.com/montefiore-investment-sells-majority-stake-in-gandi/ #Registrars
Montefiore Investment sells majority stake in Gandi

Gandi, a webhosting company, will be bought by Total Webhosting Solutions.

PE Hub

#Gandi just "upgraded" me from U2F to E-Mail MFA.

U2F binding was removed. E-Mail MFA was put in place instead.

No advanced warning, no migration period.

Would have gladly upgraded that to #Webauthn had they asked.

Strong signal that the "no bullshit" policy is no more.

It's unacceptable to remove strong MFA from an account with no warning or migration period.

It's also very weird that #Gandi claims my U2F keys are "no longer compatible". Yes, there are newer protocols (like passkeys) but you can still keep the old MFA method active!

And the icing on top is that I was indeed able to just re-register my old keys. Which means they were still compatible, and there was no point to the entire exercise.

#Gandi just sent me an email notifying me that they've disabled my security keys and switched me over to email #MFA.

But don't worry, I can just re-add them!

I have... several concerns.

Actually, you just significantly reduced my security, Gandi. You should have let the users manage this transition, or at least warn them ahead of time what was going to happen if they didn't.

Replacing unphishable auth (old school U2F is still quite functional!) with phishable auth (email) without user consent is not acceptable.

#Gandi #SecurityKeys #U2F