WHOIS-Domain-Abfrage
Prüfen Sie mit RDAP, dem modernen WHOIS-Protokoll, wer eine Domain registriert hat, wann sie abläuft, ihre Nameserver und den DNSSEC-Status.
Details zur Domain-Registrierung abfragen
Data retrieved via Registration Data Access Protocol (RDAP) RFC 7480-7484. Under ICANN specifications and GDPR data protection regulations, personal registrant contact information is redacted by registries.
WHOIS, modernisiert als RDAP
Registrierungsdaten zeigen Ihnen den Registrar, wichtige Termine und Nameserver einer Domain. Das ist nützlich, wenn Sie eine Migration planen, ein Ablaufdatum im Auge behalten oder eine Domain prüfen möchten. Dieses Tool nutzt RDAP, den strukturierten JSON-Nachfolger von Port-43-WHOIS, dessen Unterstützung für Registrierungsstellen verpflichtend ist.
Was Ihnen dieses Tool bietet
- Registrar, Registrierungs-, Änderungs- und Ablaufdaten einer Domain.
- Nameserver, Domain-Statuscodes und DNSSEC-Signaturstatus.
- Ein klares Signal, wenn eine Domain nicht registriert zu sein scheint und möglicherweise verfügbar ist.
EPP domain status codes reference
EPP (Extensible Provisioning Protocol) status codes define the administrative locks and operational state of a domain name across registrars and registries:
| Status code | Applied by | Meaning & security impact |
|---|---|---|
| clientTransferProhibited | Registrar | Prevents unauthorized transfer requests to another registrar (anti-hijacking lock). |
| clientUpdateProhibited | Registrar | Locks DNS nameservers and contact information from being modified without unlocking. |
| clientDeleteProhibited | Registrar | Protects the domain against accidental deletion requests. |
| serverHold | Registry | Suspends DNS resolution at the registry level (e.g. pending legal dispute or non-payment). |
| ok / active | Registry | Standard operational status with no pending actions or restrictions. |
Domain & SSL requirements for venue WiFi captive portals
When configuring custom domains for guest WiFi splash pages and network access control (NAC), adhere to these best practices:
- Dedicated Hostname: Delegate a dedicated subdomain (such as
wifi.venue.comorguest.brand.com) via CNAME to your captive portal provider rather than using apex domains. - Automated TLS/SSL Provisioning: Ensure the domain has a valid, unexpired public SSL certificate signed by a trusted Certificate Authority (CA). Self-signed certificates cause instant browser security blocks on iOS and Android.
- Authoritative DNS Resilience: Host your domain on redundant Anycast DNS nameservers to guarantee sub-millisecond captive portal resolution during peak venue footfall.
- DNSSEC Integrity: Enable DNSSEC at your registrar to validate that guest login requests cannot be intercepted or spoofed by malicious local access points.
Frequently asked questions about WHOIS & RDAP
What is RDAP and how does it replace traditional port-43 WHOIS?
RDAP (Registration Data Access Protocol, RFC 7480-7484) is the standardized JSON-over-HTTPS protocol designed by the IETF and ICANN to succeed legacy port-43 WHOIS. Unlike unstructured plaintext WHOIS queries, RDAP provides machine-readable JSON responses, internationalized domain name (IDN) support, secure transport layer encryption (HTTPS), and standardized privacy redaction for GDPR compliance.
How do I check if a domain has DNSSEC enabled?
DNSSEC (Domain Name System Security Extensions) adds cryptographic signatures to DNS records to protect against DNS spoofing and cache poisoning. In this tool, the DNSSEC status queries the top-level domain (TLD) registry for active DS (Delegation Signer) records. A 'Signed' result indicates active cryptographic delegation.
What do EPP status codes like clientTransferProhibited and clientDeleteProhibited mean?
EPP (Extensible Provisioning Protocol) status codes indicate the operational and lock states of a domain name. Codes starting with 'client' (such as clientTransferProhibited, clientUpdateProhibited, and clientDeleteProhibited) are registrar-level security locks that prevent unauthorized transfers, domain hijacking, and accidental deletions.
Why are registrant personal contact details redacted in WHOIS lookups?
Under ICANN's Temporary Specification and global data protection laws (such as GDPR and CCPA), registries and registrars are legally mandated to redact personal identifying information - including registrant names, street addresses, and phone numbers - from public queries. Registrars provide anonymized web forms or privacy relays for legitimate technical inquiries.
Why is domain and DNS verification essential for guest WiFi captive portals?
Enterprise guest WiFi captive portals require fully qualified domain names (FQDNs) and valid SSL/TLS certificates (e.g. splash.yourvenue.com) to establish secure HTTPS connections without triggering browser security warnings or Apple/Android Captive Network Assistant (CNA) failures. Redundant authoritative nameservers and active DNSSEC prevent DNS resolution failures during guest login.
Related WiFi tools
Standing up a new venue domain?
Captive portals, splash pages, and resident sign-up all need a domain and certificates that just work. Purple handles the hosting so you launch guest WiFi faster.
Book a 20-min demoNetforge Network Multi-Tool
Run offline network health checks, path analysis, and latency diagnostic scans directly from your desktop.
Download Multi-Tool