Internet Engineering Task Force W. Tan Internet-Draft Cloud Registry Intended status: Standards Track G. Brown Expires: October 19, 2013 CentralNic Ltd J. Gould VeriSign, Inc. April 17, 2013 Launch Phase Mapping for the Extensible Provisioning Protocol (EPP) draft-tan-epp-launchphase-09 Abstract This document describes an Extensible Provisioning Protocol (EPP) extension mapping for the provisioning and management of domain name registrations and kapplications during the launch of a domain name registry. Status of this Memo This Internet-Draft is submitted in full conformance with the provisions of BCP 78 and BCP 79. Internet-Drafts are working documents of the Internet Engineering Task Force (IETF). Note that other groups may also distribute working documents as Internet-Drafts. The list of current Internet- Drafts is at http://datatracker.ietf.org/drafts/current/. Internet-Drafts are draft documents valid for a maximum of six months and may be updated, replaced, or obsoleted by other documents at any time. It is inappropriate to use Internet-Drafts as reference material or to cite them other than as "work in progress." This Internet-Draft will expire on October 19, 2013. Copyright Notice Copyright (c) 2013 IETF Trust and the persons identified as the document authors. All rights reserved. This document is subject to BCP 78 and the IETF Trust's Legal Provisions Relating to IETF Documents (http://trustee.ietf.org/license-info) in effect on the date of publication of this document. Please review these documents carefully, as they describe your rights and restrictions with respect to this document. Code Components extracted from this document must include Simplified BSD License text as described in Section 4.e of Tan, et al. Expires October 19, 2013 [Page 1] Internet-Draft Launch Phase Mapping for EPP April 2013 the Trust Legal Provisions and are provided without warranty as described in the Simplified BSD License. Tan, et al. Expires October 19, 2013 [Page 2] Internet-Draft Launch Phase Mapping for EPP April 2013 Table of Contents 1. Introduction . . . . . . . . . . . . . . . . . . . . . . . . . 4 1.1. Conventions Used in This Document . . . . . . . . . . . . 4 2. Object Attributes . . . . . . . . . . . . . . . . . . . . . . 5 2.1. Application Identifier . . . . . . . . . . . . . . . . . . 5 2.2. Launch Phases . . . . . . . . . . . . . . . . . . . . . . 5 2.3. Status Values . . . . . . . . . . . . . . . . . . . . . . 6 2.3.1. State Transition . . . . . . . . . . . . . . . . . . . 8 2.4. Poll Messaging . . . . . . . . . . . . . . . . . . . . . . 9 2.5. Mark Validation Models . . . . . . . . . . . . . . . . . . 12 2.5.1. element . . . . . . . . . . . . . . 13 2.6. Mark . . . . . . . . . . . . . . . . . . . . . . . . . . . 13 2.7. Digital Signature . . . . . . . . . . . . . . . . . . . . 14 2.7.1. element . . . . . . . . . . . . . . . 14 2.7.2. element . . . . . . . . . . . 14 3. EPP Command Mapping . . . . . . . . . . . . . . . . . . . . . 14 3.1. EPP Command . . . . . . . . . . . . . . . . . . . 15 3.1.1. Claims Check Form . . . . . . . . . . . . . . . . . . 15 3.1.2. Availability Check Form . . . . . . . . . . . . . . . 17 3.2. EPP Command . . . . . . . . . . . . . . . . . . . . 18 3.3. EPP Command . . . . . . . . . . . . . . . . . . . 22 3.3.1. Sunrise Create Form . . . . . . . . . . . . . . . . . 23 3.3.2. Claims Create Form . . . . . . . . . . . . . . . . . . 29 3.3.3. General Create Form . . . . . . . . . . . . . . . . . 31 3.3.4. Create Response . . . . . . . . . . . . . . . . . . . 32 3.4. EPP Command . . . . . . . . . . . . . . . . . . . 33 3.5. EPP Command . . . . . . . . . . . . . . . . . . . 34 3.6. EPP Command . . . . . . . . . . . . . . . . . . . 35 3.7. EPP Command . . . . . . . . . . . . . . . . . . 35 4. Formal Syntax . . . . . . . . . . . . . . . . . . . . . . . . 36 4.1. Launch Schema . . . . . . . . . . . . . . . . . . . . . . 36 5. Acknowledgements . . . . . . . . . . . . . . . . . . . . . . . 42 6. Change History . . . . . . . . . . . . . . . . . . . . . . . . 43 6.1. Change from 00 to 01 . . . . . . . . . . . . . . . . . . . 43 6.2. Change from 01 to 02 . . . . . . . . . . . . . . . . . . . 43 6.3. Change from 02 to 03 . . . . . . . . . . . . . . . . . . . 43 6.4. Change from 03 to 04 . . . . . . . . . . . . . . . . . . . 43 6.5. Change from 04 to 05 . . . . . . . . . . . . . . . . . . . 44 6.6. Change from 05 to 06 . . . . . . . . . . . . . . . . . . . 44 6.7. Change from 06 to 07 . . . . . . . . . . . . . . . . . . . 44 6.8. Change from 07 to 08 . . . . . . . . . . . . . . . . . . . 45 6.9. Change from 08 to 09 . . . . . . . . . . . . . . . . . . . 45 7. IANA Considerations . . . . . . . . . . . . . . . . . . . . . 45 8. Security Considerations . . . . . . . . . . . . . . . . . . . 46 9. Normative References . . . . . . . . . . . . . . . . . . . . . 46 Authors' Addresses . . . . . . . . . . . . . . . . . . . . . . . . 47 Tan, et al. Expires October 19, 2013 [Page 3] Internet-Draft Launch Phase Mapping for EPP April 2013 1. Introduction This document describes an extension mapping for version 1.0 of the Extensible Provisioning Protocol (EPP) [RFC5730]. This EPP mapping specifies a flexible schema that can be used to implement several common use cases related to the provisioning and management of domain name registrations and applications during the launch of a domain name registry. It is typical for domain registries to operate in special modes during their initial launch to facilitate allocation of domain names, often according to special rules. This document uses the term "launch phase" and the shorter form "launch" to refer to such a period. The EPP domain name mapping [RFC5731] is designed for the steady- state operation of a registry. During a launch period, the model in place may be different from what is defined in the EPP domain name mapping [RFC5731]. For example, registries often accept multiple applications for the same domain name during the "Sunrise" launch phase, referred to as a Launch Application. A Launch Registration refers to a registration made during a launch phase when the server uses a "first-come, first-served" model. Even in a "first-come, first-served" model, additional steps and information might be required, such as trademark information. In addition, the TMCH Functional Specification [1] defines a registry interface for the Trademark Claims or "claims" launch phase that includes support for presenting a Trademark Claims Notice to the Registrant. This document proposes an extension to the domain name extension in order to unambiguously manage the various launch phases known. 1.1. Conventions Used in This Document The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "MAY", and "OPTIONAL" in this document are to be interpreted as described in RFC 2119 [RFC2119]. XML is case sensitive. Unless stated otherwise, XML specifications and examples provided in this document MUST be interpreted in the character case presented in order to develop a conforming implementation. "launch-1.0" is used as an abbreviation for "urn:ietf:params:xml:ns:launch-1.0". The XML namespace prefix "launch" is used, but implementations MUST NOT depend on it and instead employ a proper namespace-aware XML parser and serializer to interpret and output the XML documents. Tan, et al. Expires October 19, 2013 [Page 4] Internet-Draft Launch Phase Mapping for EPP April 2013 "signedMark-1.0" is used as an abbreviation for "urn:ietf:params:xml:ns:signedMark-1.0" that is defined in [draft-lozano-smd]. The XML namespace prefix "smd" is used, but implementations MUST NOT depend on it and instead employ a proper namespace-aware XML parser and serializer to interpret and output the XML documents. "mark-1.0" is used as an abbreviation for "urn:ietf:params:xml:ns:mark-1.0" that is defined in [draft-lozano-smd]. The XML namespace prefix "mark" is used, but implementations MUST NOT depend on it and instead employ a proper namespace-aware XML parser and serializer to interpret and output the XML documents. 2. Object Attributes This extension adds additional elements to the EPP domain name mapping [RFC5731]. Only those new elements are described here. 2.1. Application Identifier Servers MAY allow multiple applications, referred to as a Launch Application, of the same domain name during its launch phase operations. Upon receiving a valid request to create a Launch Application, the server MUST create an application object corresponding to the request, assign an application identifier for the Launch Application, set the [RFC5731] pendingCreate status, and return the application identifier to the client with the element. In order to facilitate correlation, all subsequent launch operations on the Launch Application MUST be qualified by the previously assigned application identifier using the element. 2.2. Launch Phases The server MAY support multiple launch phases sequentially or simultaneously. The element MUST be included by the client to define the target launch phase of the command. The server SHOULD validate the element against the active phase of the server for a create command, and return an EPP error result code of 2004 if there is a mismatch. The following launch phase values are defined: Tan, et al. Expires October 19, 2013 [Page 5] Internet-Draft Launch Phase Mapping for EPP April 2013 sunrise The phase during which trademark holders can submit registrations or applications with trademark information that can be validated by the server. landrush A post-Sunrise phase when non-trademark holders are allowed to register domain names with steps taken to address a large volume of initial registrations. claims The Trademark Claims phase, as defined in the TMCH Functional Specification [1], in which a Claims Notice must be displayed to a prospective registrant of a domain name that matches trademarks. open A post-launch phase that is also referred to as "steady state". Servers MAY require additional trademark protection during this phase. custom A custom server launch phase that is defined using the "name" attribute. For extensibility, the element includes an OPTIONAL "name" attribute that can define a sub-phase or the full name of the phase when the element has the "custom" value. For example, the "claims" launch phase could have two sub-phases that include "landrush" and "open". Launch phases MAY overlap to support the "claims" launch phase, defined in the TMCH Functional Specification [1], and to support a traditional "landrush" launch phase. The overlap of the "claims" and "landrush" launch phases SHOULD be handled by setting "claims" as the value and setting "landrush" as the sub-phase with the "name" attribute. For example, the element SHOULD be claims. 2.3. Status Values A Launch Application or Launch Registration object MAY have a launch status value. The element is used to convey the launch status pertaining to the object, beyond what is specified in the object mapping. A Launch Application or Launch Registration MUST set the [RFC5731] pendingCreate status if a launch status is supported and the launch status is not one of the final statuses, including the "allocated" and "rejected" statuses. The following status values are defined using the required "s" attribute: pendingValidation: The initial state of a newly-created application or registration object. The application or registration requires validation, but the validation process has not yet completed. Tan, et al. Expires October 19, 2013 [Page 6] Internet-Draft Launch Phase Mapping for EPP April 2013 validated: The application or registration meets relevant registry rules. invalid: The application or registration does not validate according to registry rules. pendingAllocation: The allocation of the application or registration is pending based on the results of some out-of-band process (for example, an auction). allocated: One of two possible end states of an application or registration object; the object corresponding to the application or registration has been provisioned. rejected: The other possible end state; the application or registration object was not provisioned. custom: A custom status that is defined using the "name" attribute. Each status value MAY be accompanied by a string of human-readable text that describes the rationale for the status applied to the object. The OPTIONAL "lang" attribute MAY be present to identify the language if the negotiated value is something other than the default value of "en" (English). For extensibility the element includes an OPTIONAL "name" attribute that can define a sub-status or the full name of the status when the status value is "custom". The server SHOULD NOT use the "custom" status value. Certain status values MAY be combined. For example, an application or registration may be both "invalid" and "rejected". Additionally, certain statuses MAY be skipped. For example, an application or registration MAY immediately start at the "allocated" status or an application or registration MAY skip the "pendingAllocation" status. If the launch phase does not require validation of a request, an application or registration MAY immediately skip to "pendingAllocation". If the command processes a request synchronously without the use of an intermediate application, then an Application Identifier (Section 2.1) MAY not be needed along with the application status. Tan, et al. Expires October 19, 2013 [Page 7] Internet-Draft Launch Phase Mapping for EPP April 2013 2.3.1. State Transition | request | v +-------------------+ | | | pendingValidation | | | +---------+---------+ | | +-----------+-----------+ | | | | v v +-----------+ +---------+ | | | | | validated | | invalid | | | | | +-----+-----+ +----+----+ | | | | v | +-------------------+ | | | | | pendingAllocation | | | | | +-------------------+ | | | | | +-----------------------+ | | | | v v +---------+ +--------+ / \ / \ | allocated | | rejected | \ / \ / +---------+ +--------+ Figure 1 Tan, et al. Expires October 19, 2013 [Page 8] Internet-Draft Launch Phase Mapping for EPP April 2013 2.4. Poll Messaging A Launch Application MUST and a Launch Registration MAY be handled as a domain name of [RFC5731] in "pendingCreate" status, with the launch status values defined in Section 2.3. As a Launch Application or Launch Registration transitions between the status values defined in Section 2.3, the server SHOULD insert poll messages, per [RFC5730], for the applicable intermediate statuses, including the "pendingValidation", "validated", "pendingAllocation, and "invalid" statuses, using the element with the extension. The element MAY contain non- mandatory information, like contact and name server information. Also, further extensions that would normally be included in the response of a command, per [RFC5731], MAY be included. For the final statuses, including the "allocated" and "rejected" statuses, the server MUST insert a poll message, per [RFC5731], with the extension. Tan, et al. Expires October 19, 2013 [Page 9] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example poll message for a Launch Application that has transitioned to the "pendingAllocation" state. Command completed successfully; ack to dequeue 2013-04-04T22:01:00.0Z Application pendingAllocation. example.tld ... sunrise abc123 ABC-12345 54322-XYZ Tan, et al. Expires October 19, 2013 [Page 10] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example poll message for an "allocated" Launch Application. Command completed successfully; ack to dequeue 2013-04-04T22:01:00.0Z Application successfully allocated. example.tld ABC-12345 54321-XYZ 2013-04-04T22:00:00.0Z sunrise abc123 BCD-23456 65432-WXY Tan, et al. Expires October 19, 2013 [Page 11] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example poll message for an "allocated" Launch Registration. Command completed successfully; ack to dequeue 2013-04-04T22:01:00.0Z Registration successfully allocated. example.tld ABC-12345 54321-XYZ 2013-04-04T22:00:00.0Z sunrise BCD-23456 65432-WXY 2.5. Mark Validation Models A server MUST support at least one of the following models for validating trademark information: code Use of a mark code by itself to validate that the mark matches the domain name. This model is supported using the element with just the element. Tan, et al. Expires October 19, 2013 [Page 12] Internet-Draft Launch Phase Mapping for EPP April 2013 mark The mark information is passed without any other validation element. The server will use some custom form of validation to validate that the mark information is authentic. This model is supported using the element with just the (Section 2.6) element. code with mark: A code is used along with the mark information by the server to validate the mark utilizing an external party. The code represents some form of secret that matches the mark information passed. This model is supported using the element that contains both the and the (Section 2.6) elements. signed mark: The mark information is digitally signed as described in the Digital Signature (Section 2.7) section. The digital signature can be directly validated by the server using the public key of the external party that created the signed mark using its private key. This model is supported using the (Section 2.7.1) and (Section 2.7.2) elements. More than one , (Section 2.7.1), or (Section 2.7.2) element MAY be specified. The maximum number of marks per domain name is up to server policy. 2.5.1. element The element that is used by the "code", "mark", and "code with mark" validation models, has the following child elements: : OPTIONAL mark code used to validate the (Section 2.6) information. The mark code is be a mark-specific secret that the server can verify against a third party. : OPTIONAL mark information with child elements defined in the Mark (Section 2.6) section. The following is an example element with both a and (Section 2.6) element. 49FD46E6C4B45C55D4AC ... 2.6. Mark A element describes an applicant's prior right to a given domain name that is used with the "mark", "mark with code", and the Tan, et al. Expires October 19, 2013 [Page 13] Internet-Draft Launch Phase Mapping for EPP April 2013 "signed mark" validation models. The element is defined in [draft-lozano-smd]. A new mark format can be supported by creating a new XML schema for the mark that has an element that substitutes for the element from [draft-lozano-smd]. 2.7. Digital Signature Digital signatures MAY be used by the server to validate either the mark information, when using the "signed mark" validation model with the (Section 2.7.1) element or the (Section 2.7.2) element. 2.7.1. element The element contains the digitally signed mark information. The element is defined in [draft-lozano-smd]. A new signed mark format can be supported by creating a new XML schema for the signed mark that has an element that substitutes for the element from [draft-lozano-smd]. 2.7.2. element The element contains an encoded form of the digitally signed (Section 2.7.1) element. The element is defined in [draft-lozano-smd]. A new encoded signed mark format can be supported by creating a new XML schema for the encoded signed mark that has an element that substitutes for the element from [draft-lozano-smd]. 3. EPP Command Mapping A detailed description of the EPP syntax and semantics can be found in the EPP core protocol specification [RFC5730]. The command mappings described here are specifically for use in the Launch Phase Extension. This mapping is designed to be flexible, requiring only a minimum set of required elements. While it is meant to serve several use cases, it does not prescribe any interpretation by the client or server. Such processing is typically highly policy-dependent and therefore specific to implementations. Tan, et al. Expires October 19, 2013 [Page 14] Internet-Draft Launch Phase Mapping for EPP April 2013 Operations on application objects are done via one or more of the existing EPP verbs defined in the EPP domain name mapping [RFC5731]. Registries may choose to support a subset of the operations. 3.1. EPP Command There are two forms of the extension to the EPP command that include the Claims Check Form (Section 3.1.1) and the Availability Check Form (Section 3.1.2). The element "type" attribute defines the form, with the value of "claims" for the Claims Check Form (Section 3.1.1) and with the value of "avail" for the Availability Check Form (Section 3.1.2). The default value of the "type" attribute is "claims". The check forms supported is up to server policy. The server MUST return an EPP error result code of 2307 if it receives a check form that is not supported. 3.1.1. Claims Check Form The Claims Check Form defines additional elements to extend the EPP command and response to be used in conjunction with the EPP domain name mapping [RFC5731]. This form is the default form and MAY be explicitly identified by setting the "type" attribute to "claims". The Claims Check Form defines a new command called the Claims Check Command that is used to determine whether or not there are any matching trademarks, in the specified launch phase, for each domain name passed in the command. The availability check information defined in the EPP domain name mapping [RFC5731] MUST NOT be returned for the Claims Check Command. Instead of returning whether the domain name is available, the Claims Check Command will return whether or not at least one matching trademark exists for the domain name. If there is at least one matching trademark that exists for the domain name, a element is returned. The client may then use the value of the element to obtain information needed to generate the trademark Claims Notice from a third-party trademark validator such as the Trademark Clearinghouse (TMCH). The third party trademark validator should also return a unique notice identifier that can be passed in the element of the extension to the Create Command (Section 3.3). The elements in the EPP command of EPP domain name mapping [RFC5731] define the domain names to check for matching trademarks. The element contains the following child elements: Tan, et al. Expires October 19, 2013 [Page 15] Internet-Draft Launch Phase Mapping for EPP April 2013 The launch phase that SHOULD be "claims". Example Claims Check command using the domain command and the extension with the "type" explicitly set to "claims", to determine if "example1.tld" and "example2.tld" have any matching trademarks during the "claims" launch phase: example1.tld example2.tld claims ABC-12345 If the command has been processed successfully, the EPP element MUST contain a child element that identifies the launch namespace. The element contains the following child elements: The launch phase that SHOULD be "claims". One or more elements that contain the following child elements: Contains the fully qualified name of the queried domain name. This element MUST contain an "exists" attribute whose value indicates if a matching trademark exists for the domain name. A value of "1" (or "true") means that a matching trademark does exist for the claims launch phase. A value of "0" (or "false") means that a matching trademark does not exist. Tan, et al. Expires October 19, 2013 [Page 16] Internet-Draft Launch Phase Mapping for EPP April 2013 An OPTIONAL claim key that MAY be passed to a third-party trademark validator such as the Trademark Clearinghouse (TMCH) for querying the information needed to generate a Trademark Claims Notice. The is used as the key for the query in place of the domain name to securely query the service without using a well-known value like a domain name. Example Claims Check response when no matching trademarks are found for the domain name example1.tld and matching trademarks are found for the domain name example2.tld for the "claims" launch phase: Command completed successfully claims example1.tld example2.tld abc123 ABC-12345 54321-XYZ 3.1.2. Availability Check Form The Availability Check Form defines additional elements to extend the EPP command described in the EPP domain name mapping [RFC5731]. No additional elements are defined for the EPP response. This form MUST be identified by setting the "type" attribute to "avail". The EPP command is used to determine if an object can be provisioned within a repository. Domain names may be made available Tan, et al. Expires October 19, 2013 [Page 17] Internet-Draft Launch Phase Mapping for EPP April 2013 only in unique launch phases, whilst remaining unavailable for concurrent launch phases. In addition to the elements expressed in the , the command is extensed with the element that contains the following child elements: The launch phase to which domain name availability should be determined. Example Availability Check Form command using the domain command and the extension with the "type" set to "avail", to determine the availability of two domain names in the "idn-release" custom launch phase: example1.tld example2.tld custom ABC-12345 The Availability Check Form does not define any extension to the response of an domain command. After processing the command, the server replies with a standard EPP response as defined in the EPP domain name mapping [RFC5731]. 3.2. EPP Command This extension defines additional elements to extend the EPP command and response to be used in conjunction with the EPP domain name mapping [RFC5731]. The EPP command is used to retrieve information for a launch phase registration or application. The Application Identifier (Section 2.1) returned in the element of the create Tan, et al. Expires October 19, 2013 [Page 18] Internet-Draft Launch Phase Mapping for EPP April 2013 response (Section 3.3) is used for retrieving information for a Launch Application. A element is sent along with the regular domain command. The element includes an OPTIONAL "includeMark" boolean attribute, with a default value of "false", to indicate whether or not to include the mark in the response. The element contains the following child elements: The phase during which the application or registration was submitted or is associated with. Server policy defines the phases that are supported. OPTIONAL application identifier of the Launch Application. Example domain command with the extension to retrieve information for the sunrise application for example.tld and application identifier "abc123": example.tld sunrise abc123 ABC-12345 Tan, et al. Expires October 19, 2013 [Page 19] Internet-Draft Launch Phase Mapping for EPP April 2013 Example domain command with the extension to retrieve information for the sunrise registration for example.tld: example.tld sunrise ABC-12345 If the query was successful, the server replies with a element along with the regular EPP . The contains the following child elements: The phase during which the application was submitted, or is associated with, that matches the associated command . OPTIONAL Application Identifier of the Launch Application. OPTIONAL status of the Launch Application using one of the supported status values (Section 2.3). Zero or more (Section 2.6) elements. Tan, et al. Expires October 19, 2013 [Page 20] Internet-Draft Launch Phase Mapping for EPP April 2013 Example domain response using the extension with the mark information: Command completed successfully example.tld EXAMPLE1-REP jd1234 sh8013 sh8013 ClientX ClientY 2012-04-03T22:00:00.0Z 2fooBAR sunrise abc123 ... ABC-12345 54321-XYZ Tan, et al. Expires October 19, 2013 [Page 21] Internet-Draft Launch Phase Mapping for EPP April 2013 3.3. EPP Command There are three forms of the extension to the EPP command that include the Sunrise Create Form (Section 3.3.1), the Claims Create Form (Section 3.3.2), and the General Create Form (Section 3.3.3). The form is dependent on the supported launch phases (Section 2.2) as defined below. sunrise The EPP command with the "sunrise" launch phase is used to submit a registration with trademark information that can be verified by the server with the value. The Sunrise Create Form (Section 3.3.1) is used for the "sunrise" launch phase. landrush The EPP command with the "landrush" launch phase MAY use the General Create Form (Section 3.3.3) to explictly specify the phase and optionally define the expected type of object to create. claims The EPP command with the "claims" launch phase is used to pass the information associated with the presentation and acceptance of the Claims Notice. The Claims Create Form (Section 3.3.2) is used and the General Create Form (Section 3.3.3) MAY be used for the "claims" launch phase. open The EPP command with the "open" launch phase is undefined but the form supported is up to server policy. custom The EPP command with the "custom" launch phase is undefined but the form supported is up to server policy. A server MAY support a mix of the create forms, where for example the Sunrise Create Form (Section 3.3.1) and the Claims Create Form (Section 3.3.2) MAY be supported in a single command by including both the verified trademark information and the information related to the registrant's acceptance of the Claims Notice. The "custom" launch phase SHOULD be used when using a mix of the create forms. Tan, et al. Expires October 19, 2013 [Page 22] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example domain command using the extension, with using a mix of the Sunrise Create Form (Section 3.3.1) and the Claims Create Form (Section 3.3.2) by including both a mark and a notice: exampleone.tld jd1234 sh8013 sh8013 2fooBAR custom ... 49FD46E6C4B45C55D4AC 2012-06-19T10:00:10.0Z 2012-06-19T09:01:30.0Z ABC-12345 3.3.1. Sunrise Create Form The Sunrise Create Form of the extension to the EPP domain name mapping [RFC5731] includes the verifiable trademark information that Tan, et al. Expires October 19, 2013 [Page 23] Internet-Draft Launch Phase Mapping for EPP April 2013 the server uses to match against the domain name to authorize the domain create. A server MUST support one of four models in Claim Validation Models (Section 2.5) to verify the trademark information passed by the client. A element is sent along with the regular domain command. The element has an OPTIONAL "type" attribute that defines the expected type of object ("application" or "registration") to create. The server SHOULD validate the "type" attribute, when passed, against the type of object that will be created. The element contains the following child elements: The identifier for the launch phase. or or Zero or more elements. The child elements are defined in the element (Section 2.5.1) section. Zero or more elements. The child elements are defined in the element (Section 2.7.1) section. Zero or more elements. The child elements are defined in the element (Section 2.7.2) section. Tan, et al. Expires October 19, 2013 [Page 24] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example domain command using the extension, following the "code" validation model, with multiple sunrise codes: example.tld jd1234 sh8013 sh8013 2fooBAR sunrise 49FD46E6C4B45C55D4AC 49FD46E6C4B45C55D4AD 49FD46E6C4B45C55D4AE ABC-12345 Tan, et al. Expires October 19, 2013 [Page 25] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example domain command using the extension, following the "mark" validation model, with the mark information: exampleone.tld jd1234 sh8013 sh8013 2fooBAR sunrise ... ABC-12345 Tan, et al. Expires October 19, 2013 [Page 26] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example domain command using the extension, following the "code with mark" validation model, with a code and mark information: example.tld jd1234 sh8013 sh8013 2fooBAR sunrise 49FD46E6C4B45C55D4AC ... ABC-12345 Tan, et al. Expires October 19, 2013 [Page 27] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example domain command using the extension, following the "signed mark" validation model, with the signed mark information for a sunrise application: exampleone.tld jd1234 sh8013 sh8013 2fooBAR sunrise ... ABC-12345 Tan, et al. Expires October 19, 2013 [Page 28] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example domain command using the extension, following the "signed mark" validation model, with the base64 encoded signed mark information: exampleone.tld jd1234 sh8013 sh8013 2fooBAR sunrise ... ABC-12345 3.3.2. Claims Create Form The Claims Create Form of the extension to the EPP domain name mapping [RFC5731] includes the information related to the registrant's acceptance of the Claims Notice for the "claims" launch phase. A element is sent along with the regular domain command. The element has an OPTIONAL "type" attribute that defines the expected type of object ("application" or "registration") to create. The server SHOULD validate the "type" attribute, when passed, against the type of object that will be created. The element contains the following child elements: Tan, et al. Expires October 19, 2013 [Page 29] Internet-Draft Launch Phase Mapping for EPP April 2013 MUST contain the value of "claims" to indicate the claims launch phase. Unique notice identifier generated by the source of the Claims Notice information. Expiry of the claims notice. Contains the date and time that the Claims Notice was displayed or accepted. The following is an example domain command using the extension with the information for the "claims" launch phase: example.tld jd1234 sh8013 sh8013 2fooBAR claims 49FD46E6C4B45C55D4AC 2012-06-19T10:00:10.0Z 2012-06-19T09:01:30.0Z ABC-12345 Tan, et al. Expires October 19, 2013 [Page 30] Internet-Draft Launch Phase Mapping for EPP April 2013 3.3.3. General Create Form The General Create Form of the extension to the EPP domain name mapping [RFC5731] includes the launch phase and optionally the object type to create. The OPTIONAL "type" attribute defines the expected type of object ("application" or "registration") to create. The server SHOULD validate the "type" attribute, when passed, against the type of object that will be created. A element is sent along with the regular domain command. The element contains the following child elements: Contains the value of the active launch phase of the server. The server SHOULD validate the value against the active server launch phase. The following is an example domain command using the extension for a "landrush" launch phase application: example.tld jd1234 sh8013 sh8013 2fooBAR landrush ABC-12345 Tan, et al. Expires October 19, 2013 [Page 31] Internet-Draft Launch Phase Mapping for EPP April 2013 3.3.4. Create Response If the create was successful, the server MAY reply with the element along with the regular EPP to indicate the server generated Application Identifier (Section 2.1), when multiple applications of a given domain name is supported; otherwise no extension is included with the regular EPP . The element contains the following child elements: The phase of the application that mirrors the element included in the . The application identifier of the application. An example response when multiple overlapping applications are supported by the server: Command completed successfully; action pending example.tld 2010-08-10T15:38:26.623854Z 2012-08-10T15:38:26.623854Z sunrise 2393-9323-E08C-03B1 ABC-12345 54321-XYZ Tan, et al. Expires October 19, 2013 [Page 32] Internet-Draft Launch Phase Mapping for EPP April 2013 3.4. EPP Command This extension defines additional elements to extend the EPP command to be used in conjunction with the domain name mapping. A server that does not support multiple applications of a given domain name with an Application Identifier (Section 2.1) during its launch phase operations MUST return an EPP error result code of 2102. Registry policies permitting, clients may update an application object by submitting an EPP command along with a element to indicate the application object to be updated. The element contains the following child elements: The phase during which the application was submitted or is associated with. The application identifier for which the client wishes to update. Tan, et al. Expires October 19, 2013 [Page 33] Internet-Draft Launch Phase Mapping for EPP April 2013 The following is an example domain command with the extension to add and remove a name server of a sunrise application with the application identifier "abc123": example.tld ns2.example.tld ns1.example.tld sunrise abc123 ABC-12345 This extension does not define any extension to the response of an domain command. After processing the command, the server replies with a standard EPP response as defined in the EPP domain name mapping [RFC5731]. 3.5. EPP Command This extension defines additional elements to extend the EPP command to be used in conjunction with the domain name mapping. A server that does not support multiple applications of a given domain name with an Application Identifier (Section 2.1) during its launch phase operations MUST return an EPP error result code of 2102. Tan, et al. Expires October 19, 2013 [Page 34] Internet-Draft Launch Phase Mapping for EPP April 2013 Registry policies permitting, clients MAY withdraw an application by submitting an EPP command along with a element to indicate the application object to be deleted. The element contains the following child elements: The phase during which the application was submitted or is associated with. The application identifier for which the client wishes to delete. The following is an example domain command with the extension: example.tld sunrise abc123 ABC-12345 This extension does not define any extension to the response of a domain command. After processing the command, the server replies with a standard EPP response as defined in the EPP domain name mapping [RFC5731]. 3.6. EPP Command This extension does not define any extension to the EPP command or response described in the EPP domain name mapping [RFC5731]. 3.7. EPP Command This extension does not define any extension to the EPP command or response described in the EPP domain name mapping Tan, et al. Expires October 19, 2013 [Page 35] Internet-Draft Launch Phase Mapping for EPP April 2013 [RFC5731]. 4. Formal Syntax One schema is presented here that is the EPP Launch Phase Mapping schema. The formal syntax presented here is a complete schema representation of the object mapping suitable for automated validation of EPP XML instances. The BEGIN and END tags are not part of the schema; they are used to note the beginning and ending of the schema for URI registration purposes. 4.1. Launch Schema Copyright (c) 2012 IETF Trust and the persons identified as authors of the code. All rights reserved. Redistribution and use in source and binary forms, with or without modification, are permitted provided that the following conditions are met: o Redistributions of source code must retain the above copyright notice, this list of conditions and the following disclaimer. o Redistributions in binary form must reproduce the above copyright notice, this list of conditions and the following disclaimer in the documentation and/or other materials provided with the distribution. o Neither the name of Internet Society, IETF or IETF Trust, nor the names of specific contributors, may be used to endorse or promote products derived from this software without specific prior written permission. THIS SOFTWARE IS PROVIDED BY THE COPYRIGHT HOLDERS AND CONTRIBUTORS "AS IS" AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT SHALL THE COPYRIGHT OWNER OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE. BEGIN Tan, et al. Expires October 19, 2013 [Page 36] Internet-Draft Launch Phase Mapping for EPP April 2013 Extensible Provisioning Protocol v1.0 domain name extension schema for the launch phase processing. Tan, et al. Expires October 19, 2013 [Page 37] Internet-Draft Launch Phase Mapping for EPP April 2013 Tan, et al. Expires October 19, 2013 [Page 38] Internet-Draft Launch Phase Mapping for EPP April 2013 Tan, et al. Expires October 19, 2013 [Page 39] Internet-Draft Launch Phase Mapping for EPP April 2013 Tan, et al. Expires October 19, 2013 [Page 40] Internet-Draft Launch Phase Mapping for EPP April 2013 Tan, et al. Expires October 19, 2013 [Page 41] Internet-Draft Launch Phase Mapping for EPP April 2013 END 5. Acknowledgements The authors wish to acknowledge the efforts of the leading participants of the Community TMCH Model that led to many of the changes to this document, which include Chris Wright, Jeff Neuman, Jeff Eckhaus, and Will Shorter. Special suggestions that have been incorporated into this document Tan, et al. Expires October 19, 2013 [Page 42] Internet-Draft Launch Phase Mapping for EPP April 2013 were provided by Jothan Frakes, Keith Gaughan, Seth Goldman, Jan Jansen, Rubens Kuhl, Ben Levac, Gustavo Lozano, Klaus Malorny, Patrick Mevzek, James Mitchell, Bernhard Reutner-Fischer, Trung Tran, Ulrich Wisser and Sharon Wodjenski. 6. Change History 6.1. Change from 00 to 01 1. Changed to use camel case for the XML elements. 2. Replaced "cancelled" status to "rejected" status. 3. Added the child elements of the element. 4. Removed the XML schema and replaced with "[TBD]". 6.2. Change from 01 to 02 1. Added support for both the ICANN and ARI/Neustar TMCH models. 2. Changed the namespace URI and prefix to use "launch" instead of "launchphase". 3. Added definition of multiple claim validation models. 4. Added the and elements. 5. Added support for Claims Info Command 6.3. Change from 02 to 03 1. Removed XSI namespace per Keith Gaughan's suggestion on the provreg list. 2. Added extensibility to the launch:status element and added the pendingAuction status per Trung Tran's feedback on the provreg list. 3. Added support for the Claims Check Command, updated the location and contents of the signedNotice, and replaced most references of Claim to Mark based on the work being done on the ARI/Neustar launch model. 6.4. Change from 03 to 04 1. Removed references to the ICANN model. 2. Removed support for the Claims Info Command. 3. Removed use of the signedClaim. 4. Revised the method for referring to the signedClaim from the XML Signature using the IDREF URI. 5. Split the launch-1.0.xsd into three XML schemas including launch- 1.0.xsd, signeMark-1.0.xsd, and mark-1.0.xsd. Tan, et al. Expires October 19, 2013 [Page 43] Internet-Draft Launch Phase Mapping for EPP April 2013 6. Split the "claims" launch phase to the "claims1" and "claims2" launch phases. 7. Added support for the encodedSignedMark with base64 encoded signedMark. 8. Changed the elements in the createNoticeType to include the noticeID, timestamp, and the source elements. 9. Added the class and effectiveDate elements to mark. 6.5. Change from 04 to 05 1. Removed reference to in the example. 2. Incorporated feedback from Bernhard Reutner-Fischer on the provreg mail list. 3. Added missing launch XML prefix to applicationIDType reference in the idContainerType of the Launch Schema. 4. Added missing description of the element in the element. 5. Updated note on replication of the EPP contact mapping elements in the Mark Contact section. 6.6. Change from 05 to 06 1. Removed the definition of the mark-1.0 and signedMark-1.0 and replaced with reference to draft-lozano-smd, that contains the definition for the mark, signed marked, and encoded signed mark. 2. Split the into and based on feedback from Trung Tran. 3. Added the "includeMark" optional attribute to the element to enable the client to request whether or not to include the mark in the info response. 4. Fixed state diagram to remove redundant transition from "invalid" to "rejected"; thanks Klaus Malorny. 6.7. Change from 06 to 07 1. Proof-read grammar and spelling. 2. Changed "pendingAuction" status to "pendingAllocation", changed "pending" to "pendingValidation" status, per proposal from Trung Tran and seconded by Rubens Kuhl. 3. Added text related to the use of RFC 5731 pendingCreate to the Application Identifier section. 4. Added the Poll Messaging section to define the use of poll messaging for intermediate state transitions and pending action poll messaging for final state transitions. Tan, et al. Expires October 19, 2013 [Page 44] Internet-Draft Launch Phase Mapping for EPP April 2013 6.8. Change from 07 to 08 1. Added support for use of the launch statuses and poll messaging for Launch Registrations based on feedback from Sharon Wodjenski and Trung Tran. 2. Incorporated changes based on updates or clarifications in draft-lozano-tmch-func-spec-01, which include: 1. Removed the unused element. 2. Removed the element. 3. Added the element based on the required element. 6.9. Change from 08 to 09 1. Made element optional in to allow passing just the in per request from Ben Levac. 2. Added optional "type" attribute in to enable the client to explicitly define the desired type of object (application or registration) to create to all forms of the create extension. 3. Added text that the server SHOULD validate the element in the Launch Phases section. 4. Add the "General Create Form" to the create command extension to support the request from Ben Levac. 5. Updated the text for the Poll Messaging section based on feedback from Klaus Malorny. 6. Replaced the "claims1" and "claims2" phases with the "claims" phase based on discussion on the provreg list. 7. Added support for a mixed create model (Sunrise Create Model and Claims Create Model), where a trademark (encoded signed mark, etc.) and notice can be passed, based on a request from James Mitchell. 8. Added text for the handling of the overlapping "claims" and "landrush" launch phases. 9. Added support for two check forms (claims check form and availability check form) based on a request from James Mitchell. The availability check form was based on the text in draft-rbp-application-epp-mapping. 7. IANA Considerations This document uses URNs to describe XML namespaces and XML schemas conforming to a registry mechanism described in [RFC3688]. Three URI assignments have been registered by the IANA. Registration request for the Launch namespace: Tan, et al. Expires October 19, 2013 [Page 45] Internet-Draft Launch Phase Mapping for EPP April 2013 URI: urn:ietf:params:xml:ns:launch-1.0 Registrant Contact: See the "Author's Address" section of this document. XML: None. Namespace URIs do not represent an XML specification. 8. Security Considerations The mapping extensions described in this document do not provide any security services beyond those described by EPP [RFC5730], the EPP domain name mapping [RFC5731], and protocol layers used by EPP. The security considerations described in these other specifications apply to this specification as well. Updates to, and deletion of an application object must be restricted to clients authorized to perform the said operation on the object. As information contained within an application, or even the mere fact that an application exists may be confidential. Any attempt to operate on an application object by an unauthorized client MUST be rejected with an EPP 2303 (object does not exist) or an appropriate auhorization error. Server policy may allow operation with filtered output by clients other than the sponsoring client, in which case the and response SHOULD be filtered to include only fields that are publicly accessible. 9. Normative References [RFC2119] Bradner, S., "Key words for use in RFCs to Indicate Requirement Levels", BCP 14, RFC 2119, March 1997. [RFC3688] Mealling, M., "The IETF XML Registry", BCP 81, RFC 3688, January 2004. [RFC5730] Hollenbeck, S., "Extensible Provisioning Protocol (EPP)", STD 69, RFC 5730, August 2009. [RFC5731] Hollenbeck, S., "Extensible Provisioning Protocol (EPP) Domain Name Mapping", STD 69, RFC 5731, August 2009. [draft-lozano-smd] Lozano, G., "Mark and Signed Mark Objects Mapping". [1] Tan, et al. Expires October 19, 2013 [Page 46] Internet-Draft Launch Phase Mapping for EPP April 2013 Authors' Addresses Wil Tan Cloud Registry Suite 32 Seabridge House 377 Kent St Sydney, NSW 2000 AU Phone: +61 414 710899 Email: wil@cloudregistry.net URI: http://www.cloudregistry.net Gavin Brown CentralNic Ltd 35-39 Mooregate London, England EC2R 6AR GB Phone: +44 20 33 88 0600 Email: gavin.brown@centralnic.com URI: https://www.centralnic.com James Gould VeriSign, Inc. 12061 Bluemont Way Reston, VA 20190 US Email: jgould@verisign.com URI: http://www.verisigninc.com Tan, et al. Expires October 19, 2013 [Page 47]