Since the public DNS requires that globally visible websites are properly registered with ICANN (which requires valid contact information such as name, phone number, business addresses and other information be kept in the registry), CAs can use the information contained within the ICANN registry for a website to validate that the certificate requestor is permitted to request the certificate, usual