# Gandi

https://docs.wisecp.com/fr/gandi

Connect Gandi to manage domain orders, DNS and forwarding from your WISECP services.

## Accessing the Screen

Open **Products → Domains → Domain Name Registrars → All Modules → Gandi.net**: `{admin}/module/registrars?module=Gandi`.

## What Is on the Screen

**Module Settings** contains connection and order options. **Import** lists account domains with search and pagination. **Import Extensions** requests extension prices.

### Preparing the Gandi Account

1. In Gandi, open **ORGANIZATIONS**, select your organization, then open **Sharing → Create a token**.
2. Choose an expiry date and resources. Allow domain reading, management and purchases, plus DNS or forwarding permissions for the services you will use.
3. Copy the token when shown. Create a separate token in Gandi Sandbox Admin for sandbox use. See [token creation](https://docs.gandi.net/en/managing_an_organization/organizations/personal_access_token.html) and [authentication](https://api.gandi.net/docs/authentication/).
4. For reseller purchases, prepare the organization and customer identifiers in Gandi. Fund the intended prepaid account before live purchases.

## Settings

- ****Personal Access Token****: Required; initially empty. Use a token for the selected environment and organization.
- ****Authentication Scheme****: Defaults to Bearer (Personal Access Token). Apikey (deprecated) is for existing legacy keys.
- ****Use the Sandbox Environment****: Off by default. Enable for the separate sandbox account and token.
- ****Organisation ID (sharing_id)****: Initially empty. Selects the organization for account queries and purchases; needed when purchasing on its behalf.
- ****Default Customer ID (resellee_id)****: Optional; initially empty. Existing Gandi reseller customer identifier, sent with registrations and transfers. It is not a WISECP customer number.
- ****Price Grid****: Optional; initially empty. Uses the account’s default tariff when blank.
- ****Currency****: Defaults to EUR; USD, GBP, TWD and CNY are available. Match the prepaid account used for orders.
- ****Default Registration Period (years)****: Defaults to 1; range 1–10. Used when the order has no period. Renewals are limited to nine years per request.
- ****Enable WHOIS Privacy By Default****: Off by default. Requests contact privacy for new registrations and transfers, subject to extension rules.
- ****Enable The Free Mailboxes****: Off by default in WISECP. Requests Gandi’s two mailboxes offered for the first year; later renewal follows Gandi’s terms.
- ****Allow Premium Domain Purchases****: Off by default. Premium results are unavailable while off. Enabling it permits purchases at premium prices.
- ****Enable LiveDNS Automatically****: Off by default. Requests LiveDNS activation before listing or editing DNS records; this can change authoritative nameservers.
- ****Default Nameservers****: Four initially empty fields. The first two have required markers; without both, service defaults use system nameservers.
- ****Automatic Cost Updates****: Off by default. Enables scheduled cost updates for automatic pricing.
- ****Cost Currency****: Check the initial selection against Currency before importing prices.

## Tasks

### Connecting and Testing

1. In **Module Settings**, enable sandbox and enter its token with **Bearer (Personal Access Token)**.
2. Click **Test Connection** beside **Save Changes**. It reads the domain list; it does not purchase anything or validate every permission.
3. After success, click **Save Changes** and reopen the form. No separate server record is needed.
4. Before live use, disable sandbox, enter the production token, test and save. Verify sandbox order and customer-management workflows before enabling sales.

### Assigning Extensions

1. Open **Import Extensions**, check prices, select extensions and click its **Import** button. Existing prices can also change.
2. Under **Products → Domains**, choose **Gandi.net** in the row’s **Registrar** field. Click **Update Extensions**.
3. Open the row’s **Pricing** window, check periods and selling prices, then click **Save Changes**. Confirm the saved assignment.

### Existing Domains

In **Import**, search the account and assign a customer before clicking **Import**. The extension must exist first. Check the resulting service and dates. If the domain cannot be resolved during import, stop and request support; a populated list alone does not prove import succeeded.

### Orders and Domain Management

Registration and transfer send contacts, period, nameservers and configured extension requirements. Transfers require an EPP code. Renewal, expired-domain recovery and transfer/status/date synchronization are implemented. Check Gandi’s order status before repeating a purchase.

Open a domain under **Orders → Services**. **DNS** provides nameservers, child nameservers and LiveDNS records. TTL is shared by records with the same name and type. Changes preserve the other values in that group.

**WHOIS** manages contacts and privacy. **Transfer** manages the lock and **Get Auth (EPP) Code**. A newly requested code can require a later retry.

**Domain Forwarding** supports 301/302 redirects; frame forwarding is not implemented. **Email Forwarding** manages source and destination addresses. Customers need the corresponding permissions and active addons.

**DNS → DNSSEC** can list and delete keys. Adding a key requires Gandi public-key material, while the shared form asks for Digest. Configure additions in Gandi until that input path is validated. See the [domain API reference](https://api.gandi.net/docs/domains/).

## Things to Consider

> **Charges and DNS**
> 
> Registration, transfer, renewal and recovery can charge your Gandi account. Review premium pricing and mailbox renewal terms. Back up the zone before automatic LiveDNS activation; even opening the record list can request activation.

> **Troubleshooting**
> 
> For 401/403, check token expiry, permissions and environment. Missing domains can indicate the wrong organization or resource scope. For DNS errors, check LiveDNS and token rights. Compare incomplete price lists with Gandi before importing.

## Required Permissions

Setup requires **Domain Name Registrars** permission. Service operations require their corresponding service permissions.

## Related Guides

- [Registrar Configuration](https://docs.wisecp.com/en/registrar-modules)
- [Domain Extensions](https://docs.wisecp.com/en/domain-extensions-and-pricing)
- [Service DNS Management](https://docs.wisecp.com/en/service-dns-management)
- [Service WHOIS Records](https://docs.wisecp.com/en/service-whois-records)
- [Service Transfer](https://docs.wisecp.com/en/service-transfer)
