Security and Stability Advisory Committee (SSAC)

The SSAC is a volunteer group of specialists in the technical security field that provides advice and insight to the ICANN community and the Board.

SSAC Publications

The SSAC produces reports, correspondence, and comments on a range of topics. The SSAC undertakes ongoing risk analysis to identify a prioritized list of topics for SSAC work. However, the ICANN Board, Advisory Committees (ACs), Supporting Organizations (SOs) or other bodies within ICANN may request that the SSAC review, comment, or give feedback on a specific topic or issue at any time.

Reports are focused on providing information, recommendations, and advice on technical security, stability, and resiliency (SSR) issues to the ICANN Board, the ICANN community, and the broader internet community. They may investigate emerging or long-term issues or could be published in response to a security event or incident, where timely notification to the community is a priority concern. They may be informational without any findings or recommendations or they could contain specific recommendations for the ICANN Board or community, and if appropriate, organized according to the groups to which they are most applicable.

Correspondence comprises letters, comments, and other documents on administrative, community, and other non-SSR issues and are normally signed by the SSAC Chair. They may take the form of a letter or a response submitted to a public comment forum. They may present recommendations regarding the issue.

Comments are prepared in response to explicit questions posed to or requests made to the SSAC, or as a response to ICANN’s public comment forum. Comments may be brief or long, depending on the issue and the extent to which the SSAC studies it.

A goal of the SSAC is to ensure that its work results in specific actions whenever possible. In order to measure progress towards this goal, the SSAC tracks any effects of each recommendation. For documents that contain recommendations for the ICANN Board, the Board Action Request Register (ARR) captures the information required to understand the status of advice and tracks it from when it is given through implementation.

Advanced Search
Select filter and click Apply to narrow your search results or click More Search Options to search for keywords within SSAC Publications.

Report of the Security and Stability Advisory Committee on Root Scaling (English) (pdf, 174.62 KB)SAC 046 SAC 046 Root SystemReport
6 Dec 2010
6 Dec 2010
Invalid Top Level Domain Queries at the Root Level of the Domain Name System (English) (pdf, 506.79 KB)SAC 045 SAC 045 Root SystemReport
15 Nov 2010
15 Nov 2010
A Registrant's Guide to Protecting Domain Name Registration Accounts (English) (pdf, 376.29 KB)

Additional Documents:
Executive Summary (English)

SAC 044 SAC 044 Registration ServicesReport
5 Nov 2010
5 Nov 2010
SSAC Comment on the JAS Report on the IANA Process for Implementing Root Zone Change Requests and on the IANA Explanatory Memoranda (English) (pdf, 175.58 KB)SAC 043 SAC 043 AddressingComment
5 Oct 2010
5 Oct 2010
SSAC Comment on the Root Scaling Study Team Report and the TNO Report (English) (pdf, 397.01 KB)SAC 042 SAC 042 Root SystemComment
17 Dec 2009
17 Dec 2009
SSAC Review of SSAC (English) (pdf, 262.5 KB)SAC 039 SAC 039 PlanningReport
15 Oct 2009
15 Oct 2009
Measures to Protect Domain Registration Services Against Exploitation or Misuse

Additional Documents:
Executive Summary (English)

SAC 040 SAC 040 Registration ServicesReport
19 Aug 2009
19 Aug 2009
Recommendation to prohibit use of redirection and synthesized responses by new TLDs (English) (pdf, 44.02 KB)SAC 041 SAC 041 Domain Name System (DNS) AbuseAdvisory
10 Jun 2009
10 Jun 2009
Display and usage of Internationalized Registration Data: Support for characters from local languages or scripts

Additional Documents:
Executive Summary (English)

SAC 037 SAC 037 Internationalized Domain Name (IDN)Report
20 Apr 2009
20 Apr 2009
Registrar Abuse Point of Contact

Additional Documents:
Executive Summary (English)

SAC 038 SAC 038 Registration ServicesReport
25 Feb 2009
25 Feb 2009
Letter of Transmittal to ICANN Board (English) (pdf, 21.18 KB)

Additional Documents:
Executive Summary (English)

SAC 036a SAC 036a PlanningLetter
30 Jan 2009
30 Jan 2009
SSAC Comments on the Draft ICANN Strategic Plan for 2009-2012 (English) (pdf, 152.06 KB)

Additional Documents:
Executive Summary (English)

SAC 036b SAC 036b PlanningComment
9 Dec 2008
9 Dec 2008
Test Report: DNSSEC Impact on Broadband Routers and Firewalls (English) (pdf, 390.12 KB)SAC 035 SAC 035 Domain Name System (DNS) SecurityReport
16 Sep 2008
16 Sep 2008
Survey of DNSSEC Capable DNS Implementations (English)SAC 030 SAC 030 Domain Name System (DNS) SecurityReport
15 Jul 2008
15 Jul 2008
Preliminary Report on DNS Response Modification

Additional Documents:
Executive Summary (English)

SAC 032 SAC 032 Domain Name System (DNS) AbuseAdvisory
20 Jun 2008
20 Jun 2008
Domain Name Registration Information and Directory Services (English) (pdf, 185.78 KB)

Additional Documents:
Executive Summary (English)

SAC 033 SAC 033 WHOISReport
20 Jun 2008
20 Jun 2008
SSAC Comment on the FY09 Operating Plan and Budget (English) (pdf, 127.4 KB)SAC 034 SAC 034 PlanningComment
17 Jun 2008
17 Jun 2008
SSAC Advisory on Registrar Impersonation Phishing Attacks

Additional Documents:
Executive Summary (English)

SAC 028 SAC 028 Registration ServicesAdvisory
26 May 2008
26 May 2008
SSAC Review of the After Action Report for the gTLD Registry Failover Exercise conducted 24-25 January 2008 (English) (pdf, 83.92 KB)SAC 031 SAC 031 PlanningComment
23 Apr 2008
23 Apr 2008
SSAC Endorsement of Proposed Amendment to the ORG registry agreement, Security Extensions for the DNS - DNSSEC (English) (pdf, 49.57 KB)SAC 029 SAC 029 Domain Name System (DNS) SecurityComment
17 Apr 2008
17 Apr 2008