<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.11 (Ruby 3.2.4) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-ietf-dtn-ipn-update-11" category="std" consensus="true" submissionType="IETF" updates="[9171, 7116]" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.21.0 -->
  <front>
    <title abbrev="ipn-update">Update to the ipn URI scheme</title>
    <seriesInfo name="Internet-Draft" value="draft-ietf-dtn-ipn-update-11"/>
    <author fullname="Rick Taylor">
      <organization>High Frontier Ltd</organization>
      <address>
        <email>rick.taylor@highfrontier.co.uk</email>
      </address>
    </author>
    <author fullname="Ed Birrane">
      <organization>JHU/APL</organization>
      <address>
        <email>Edward.Birrane@jhuapl.edu</email>
      </address>
    </author>
    <date year="2024" month="June" day="04"/>
    <area>Transport</area>
    <workgroup>Delay/Disruption Tolerant Networking</workgroup>
    <keyword>DTN</keyword>
    <keyword>ipn</keyword>
    <keyword>BPv7</keyword>
    <keyword>CBHE</keyword>
    <keyword>Bundle Protocol</keyword>
    <abstract>
      <?line 45?>

<t>This document updates both the specification of the ipn URI scheme previously defined in RFC 7116 and the rules for encoding of these URIs when used as an Endpoint Identifier (EID) in Bundle Protocol Version 7 (BPv7) as defined in RFC 9171. These updates clarify the structure and behavior of the ipn URI scheme, define encodings of ipn scheme URIs, and establish the registries necessary to manage this scheme.</t>
    </abstract>
    <note removeInRFC="true">
      <name>About This Document</name>
      <t>
        The latest revision of this draft can be found at <eref target="https://ricktaylor.github.io/ipn2/draft-taylor-dtn-ipn-update.html"/>.
        Status information for this document may be found at <eref target="https://datatracker.ietf.org/doc/draft-ietf-dtn-ipn-update/"/>.
      </t>
      <t>
        Discussion of this document takes place on the
        Delay/Disruption Tolerant Networking Working Group mailing list (<eref target="mailto:dtn@ietf.org"/>),
        which is archived at <eref target="https://mailarchive.ietf.org/arch/browse/dtn/"/>.
        Subscribe at <eref target="https://www.ietf.org/mailman/listinfo/dtn/"/>.
      </t>
      <t>Source for this draft and an issue tracker can be found at
        <eref target="https://github.com/ricktaylor/ipn2"/>.</t>
    </note>
  </front>
  <middle>
    <?line 49?>

<section anchor="introduction">
      <name>Introduction</name>
      <t>The ipn URI scheme was originally defined in <xref target="RFC7116"/> as a way to identify network nodes and node services using concisely-encoded integers that can be processed faster and with fewer resources than other verbose identifier schemes. The scheme was designed for use with the experimental Bundle Protocol version 6 (BPv6, <xref target="RFC5050"/>) and IPN was defined as an acronym for the term "InterPlanetary Network" in reference to its intended use for deep-space networking. Since then, the efficiency benefit of integer identifiers makes ipn scheme URIs useful for any networks operating with limited power, bandwidth, and/or compute budget. Therefore, the term IPN is now used as a non-acronymous name.</t>
      <t>Similar to the experimental BPv6, the standardized Bundle Protocol version 7 (BPv7, <xref target="RFC9171"/>) codifies support for the use of the ipn URI scheme for the specification of bundle Endpoint Identifiers (EIDs). The publication of BPv7 has resulted in operational deployments of BPv7 nodes for both terrestrial and non-terrestrial use cases. This includes BPv7 networks operating over the terrestrial Internet and BPv7 networks operating in self-contained environments behind a shared administrative domain. The growth in the number and scale of deployments of BPv7 DTNs has been accompanied by a growth in the usage of the ipn URI scheme which has highlighted areas to improve the structure, moderation, and management of this scheme.</t>
      <t>By updating <xref target="RFC7116"/> and <xref target="RFC9171"/>, this document updates the specification of the ipn URI scheme, in a backwards-compatible way, to provide needed improvements both in the scheme itself and its usage to specify EIDs with BPv7. Specifically, this document introduces a hierarchical structure for the assignment of ipn scheme URIs, clarifies the behavior and interpretation of ipn scheme URIs, defines efficient encodings of ipn scheme URIs, and updates/defines the registries associated for this scheme.</t>
      <t>Although originally developed by the deep space community for use with Bundle Protocol, the ipn URI scheme is sufficiently generic to be used in other environments where a concise unique representation of a resource on a particular node is required.</t>
      <t>It is important to remember that, like most other URI schemes, the ipn URI scheme defines a unique identifier of a resource, and does not include any topological information describing how to route messages to that resource.</t>
    </section>
    <section anchor="conventions-and-definitions">
      <name>Conventions and Definitions</name>
      <t>The key words "<bcp14>MUST</bcp14>", "<bcp14>MUST NOT</bcp14>", "<bcp14>REQUIRED</bcp14>", "<bcp14>SHALL</bcp14>", "<bcp14>SHALL
NOT</bcp14>", "<bcp14>SHOULD</bcp14>", "<bcp14>SHOULD NOT</bcp14>", "<bcp14>RECOMMENDED</bcp14>", "<bcp14>NOT RECOMMENDED</bcp14>",
"<bcp14>MAY</bcp14>", and "<bcp14>OPTIONAL</bcp14>" in this document are to be interpreted as
described in BCP 14 <xref target="RFC2119"/> <xref target="RFC8174"/> when, and only when, they
appear in all capitals, as shown here.</t>
      <?line -18?>

<t>For the remainder of this document, the term "ipn URI" is used to refer to a URI that uses the ipn scheme.</t>
    </section>
    <section anchor="core-concepts">
      <name>Core Concepts</name>
      <t>Every ipn URI, no matter whether it is expressed with the textual representation or a binary encoding, <bcp14>MUST</bcp14> be considered as a tuple of the following three components:</t>
      <ul spacing="normal">
        <li>
          <t>The Allocator Identifier</t>
        </li>
        <li>
          <t>The Node Number</t>
        </li>
        <li>
          <t>The Service Number</t>
        </li>
      </ul>
      <t>The Allocator Identifier indicates the entity responsible for assigning Node Numbers to individual resource nodes, maintaining uniqueness whilst avoiding the need for a single registry for all assigned Node Numbers. See <xref target="allocator-identifiers">Allocator Identifiers</xref>.</t>
      <t>The Node Number is a shared identifier assigned to all ipn URIs for resources co-located on a single node. See <xref target="node-numbers">Node Numbers</xref>.</t>
      <t>The Service Number is an identifier to distinguish between resources on a given node. See <xref target="service-numbers">Service Numbers</xref>.</t>
      <t>The combination of these three components guarantees that every correctly constructed ipn URI uniquely identifies a single resource.  Additionally, the combination of the Allocator Identifier and the Node Number provides a mechanism to uniquely identify the node on which a particular resource is expected to exist. See <xref target="fqnn">Fully-qualified Node Number</xref>.</t>
      <section anchor="null-uri">
        <name>The Null ipn URI</name>
        <t>It has been found that there is value in defining a unique 'null' ipn URI to indicate "nowhere".  This ipn URI is termed the "Null ipn URI", and has all three components: Allocator Identifier, Node Number, and Service Number, set to the value zero (0).  No resource identified by Null ipn URI exists, and any such resource is therefore by definition unreachable.</t>
      </section>
      <section anchor="allocator-identifiers">
        <name>Allocator Identifiers</name>
        <t>An Allocator is any organization that wishes to assign Node Numbers for use with the ipn URI scheme, and has the facilities and governance to manage a public registry of assigned Node Numbers. The authorization to assign these numbers is provided through the assignment of an Allocator Identifier by IANA.  Regardless of other attributes of an Allocator, such as a name, point of contact, or other identifying information, Allocators are identified by Allocator Identifiers: a unique, unsigned integer.</t>
        <t>The Allocator Identifier <bcp14>MUST</bcp14> be the sole mechanism used to identify the Allocator that has assigned the Node Number in an ipn URI. An Allocator may have multiple assigned Allocator Identifiers, but a given Allocator Identifier <bcp14>MUST</bcp14> only be associated with a single Allocator.</t>
        <t>A new IANA "'ipn' Scheme URI Allocator Identifiers" registry is defined for the registration of Allocator Identifiers, see <xref target="iana-allocator-identifiers">'ipn' Scheme URI Allocator Identifiers registry</xref>.  Although the uniqueness of Allocator Identifiers is required to enforce uniqueness of ipn URIs, some identifiers are explicitly reserved for experimentation or future use.</t>
        <t>Each Allocator assigns Node Numbers according to its own policies, without risk of creating an identical ipn URI, as permitted by the rules in the <xref target="node-numbers">Node Numbers</xref> section of this document.  Other than ensuring that any Node Numbers it allocates are unique amongst all Node Numbers it assigns, an Allocator does not need to coordinate its allocations with other Allocators.</t>
        <t>If a system does not require interoperable deployment of ipn scheme URIs, then the Private Use Node Number range, reserved by the <xref target="default-allocator">Default Allocator</xref> for this purpose <bcp14>SHOULD</bcp14> be used.</t>
        <section anchor="allocator-identifier-ranges">
          <name>Allocator Identifier Ranges</name>
          <t>Some organizations with internal hierarchies may wish to delegate the allocation of Node Numbers to one or more of their sub-organizations.  Rather than assigning unique Allocator Identifiers to each sub-organization on a first-come first-served basis, there are operational benefits in assigning Allocator Identifiers to such an organization in a structured way so that an external observer can detect that a group of Allocator Identifiers are organizationally associated.</t>
          <t>An Allocator Identifier range is a set of consecutive Allocator Identifiers associated with the same Allocator. Each individual Allocator Identifier in a given range <bcp14>SHOULD</bcp14> be assigned to a distinct sub-organization of the Allocator. Assigning identifiers in this way allows external observers both to associate individual Allocator Identifiers with a single organization and to usefully differentiate amongst sub-organizations.</t>
          <t>The practice of associating a consecutive range of numbers with a single organization is inspired by the Classless Inter-domain Routing assignment of Internet Addresses described in <xref target="RFC4632"/>. In that assignment scheme, an organization (such as an Internet Service Provider) is assigned a network prefix such that all addresses sharing that same prefix are considered to be associated with that organization.</t>
          <t>Each Allocator Identifier range is identified by the first Allocator Identifier in the range and the number of consecutive identifiers in the range.</t>
          <t>Allocator Identifier ranges differ from CIDR addresses in two important ways.</t>
          <ol spacing="normal" type="1"><li>
              <t>Allocator Identifiers are used to identify organizations and are not, themselves, addresses.</t>
            </li>
            <li>
              <t>Allocator Identifiers may be less than 32 bits in length.</t>
            </li>
          </ol>
          <t>In order to differentiate between Allocator Identifier ranges using efficient bitwise operations, all ranges <bcp14>MUST</bcp14> be of a size S that is a power of 2, and for a given range of length N bits, with S = 2^N, the least-significant N bits of the first Allocator Identifier <bcp14>MUST</bcp14> be all 0.</t>
          <t>An example of the use of Allocator Identifier ranges for four organizations (A, B, C, and D) is as follows:</t>
          <table align="left" anchor="tab-air-example">
            <name>Allocator Identifier Range Assignment Example</name>
            <thead>
              <tr>
                <th align="left">Organization</th>
                <th align="center">Range (dec)</th>
                <th align="center">Range (hex)</th>
                <th align="center">Range Length (Bits)</th>
              </tr>
            </thead>
            <tbody>
              <tr>
                <td align="left">Org A</td>
                <td align="center">974848 .. 974975</td>
                <td align="center">0xEE000 .. 0xEE07F</td>
                <td align="center">7 bits</td>
              </tr>
              <tr>
                <td align="left">Org B</td>
                <td align="center">974976 .. 974991</td>
                <td align="center">0xEE080 .. 0xEE08F</td>
                <td align="center">4 bits</td>
              </tr>
              <tr>
                <td align="left">Org C</td>
                <td align="center">974992 .. 974993</td>
                <td align="center">0xEE090 .. 0xEE091</td>
                <td align="center">1 bit</td>
              </tr>
              <tr>
                <td align="left">Org D</td>
                <td align="center">974994</td>
                <td align="center">0xEE092</td>
                <td align="center">0 bits</td>
              </tr>
            </tbody>
          </table>
          <t>With these assignments, any Allocator Identifier whose most-significant 25 bits match 0xEE000 belong to organization A. Similarly, any Allocator Identifier whose most-significant 28 bits match 0xEE080 belong to organization B, and any Allocator Identifier whose most-significant 31 bits are 0xEE090 belong to organization C.  Organisation D has a single Allocator Identifier, and hence a range of bit-length 0.</t>
        </section>
        <section anchor="default-allocator">
          <name>The Default Allocator</name>
          <t>As of the publication of <xref target="RFC7116"/>, the only organization permitted to assign Node Numbers was the Internet Assigned Numbers Authority (IANA) which assigned Node Numbers via the IANA "CBHE Node Numbers" registry. This means that all ipn URIs created prior to the addition of Allocator Identifiers are assumed to have Node Number allocations that comply with the IANA "CBHE Node Numbers" registry.</t>
          <t>The presumption that, unless otherwise specified, Node Numbers are allocated by IANA from a specific registry is formalized in this update to the ipn URI scheme by designating IANA as the Default Allocator, and by assigning the Allocator Identifier zero (0) in the <xref target="iana-allocator-identifiers">'ipn' Scheme URI Allocator Identifiers registry</xref> to the Default Allocator.  In any case where an encoded ipn URI does not explicitly include an Allocator Identifier, an implementation <bcp14>MUST</bcp14> assume that the Node Number has been allocated by the Default Allocator.</t>
          <t>A new IANA "'ipn' Scheme URI Default Allocator Node Numbers" registry is defined to control the allocation of Node Numbers values by the Default Allocator.  This new registry inherits behaviours and existing assignments from the IANA "CBHE Node Numbers" registry, and reserves some other values as defined in the <xref target="special-node-numbers">Special Node Numbers</xref> section below.</t>
        </section>
      </section>
      <section anchor="node-numbers">
        <name>Node Numbers</name>
        <t>A Node Number identifies a node that hosts a resource in the context of an Allocator. A Node Number is an unsigned integer. A single Node Number assigned by a single Allocator <bcp14>MUST</bcp14> refer to a single node.</t>
        <t>All Node Number assignments, by all Allocators, <bcp14>MUST</bcp14> be in the range 0 to 2^32-1.</t>
        <t>It is <bcp14>RECOMMENDED</bcp14> that Node Number zero (0) not be assigned by an Allocator to avoid confusion with the <xref target="null-uri">Null ipn URI</xref>.</t>
        <section anchor="fqnn">
          <name>Fully-qualified Node Numbers</name>
          <t>One of the advantages of ipn URIs is the ability to easily split the identity of a particular service from the node upon which the service exists.  For example a message received from one particular ipn URI may require a response to be sent to a different service on the same node that sent the original message.  Historically the identifier of the sending node has been colloquially referred to as the "node number" or "node identifier".</t>
          <t>To avoid future confusion, when referring to the identifier of a particular node the term "Fully-qualified Node Number" (FQNN) <bcp14>MUST</bcp14> be used to refer to the combination of the Node Number component and Allocator Identifier component of an ipn URI that uniquely identifies a particular node.  In other words, an FQNN is the unique identifier of a particular node that supports services identified by ipn URIs.</t>
          <t>In the examples in this document, FQNNs are written as (Allocator Identifier, Node Number), e.g., <tt>(977000,100)</tt> is the FQNN for a node assigned Node Number 100 by an Allocator with Allocator Identifier 977000.</t>
        </section>
      </section>
      <section anchor="special-node-numbers">
        <name>Special Node Numbers</name>
        <t>Some special-case Node Numbers are defined by the Default Allocator, see <xref target="iana-node-numbers">'ipn' Scheme URI Default Allocator Node Numbers registry</xref>.</t>
        <section anchor="the-zero-node-number">
          <name>The Zero Node Number</name>
          <t>The Default Allocator assigns the use of Node Number zero (0) solely for identifying the <xref target="null-uri">Null ipn URI</xref>.</t>
          <t>This means that any ipn URI with a zero (0) Allocator Identifier and a zero (0) Node Number, but a non-zero Service Number component is invalid.  Such ipn URIs <bcp14>MUST NOT</bcp14> be composed, and processors of such ipn URIs <bcp14>MUST</bcp14> consider them as the Null ipn URI.</t>
        </section>
        <section anchor="localnode-uri">
          <name>LocalNode ipn URIs</name>
          <t>The Default Allocator reserves Node Number 2^32-1 (0xFFFFFFFFF) to specify resources on the local node, rather than on any specific individual node.</t>
          <t>This means that any ipn URI with a zero (0) Allocator Identifier and a Node Number of 2^32-1 refers to a service on the local bundle node. This form of ipn URI is termed a "LocalNode ipn URI".</t>
        </section>
        <section anchor="private-use">
          <name>Private Use Node Numbers</name>
          <t>The Default Allocator provides a range of Node Numbers that are reserved for "Private Use", as defined in <xref target="RFC8126"/>.</t>
          <t>Any ipn URI with a zero (0) Allocator Identifier and a Node Number reserved for "Private Use" is not guaranteed to be unique beyond a single administrative domain.  An administrative domain, as used here, is defined as the set of nodes that share a unique allocation of FQNNs from the "Private Use" range.  These FQNNs can be considered to be functionally similar to "Private Address Space" IPv4 addresses, as defined in <xref target="RFC1918"/>.</t>
          <t>Because of this lack of uniqueness, any implementation of a protocol using ipn URIs that resides on the border between administrative domains must have suitable mechanisms in place to prevent protocol units using such "Private Use" Node Numbers to cross between different administrative domains.</t>
        </section>
      </section>
      <section anchor="service-numbers">
        <name>Service Numbers</name>
        <t>A Service Number is an unsigned integer that identifies a particular service operating on a node.  A service in this case is some logical function that requires its own resource identifier to distinguish it from other functions operating on the same node.</t>
      </section>
    </section>
    <section anchor="textual-encoding-of-ipn-uris">
      <name>Textual Encoding of ipn URIs</name>
      <t>All ipn scheme URIs comply with <xref target="RFC3986"/>, and are therefore represented by scheme identifier, and a scheme-specific part.  The scheme identifier is: <tt>ipn</tt>, and the scheme-specific parts are represented as a sequence of numeric components separated with the '<tt>.</tt>' character.  It is formally defined in <xref target="text-syntax">Appendix A</xref>, and can be informally considered as:</t>
      <artwork><![CDATA[
ipn:[<allocator-identifier>.]<node-number>.<service-number>
]]></artwork>
      <t>To keep the text representation concise, the follow rules apply:</t>
      <ol spacing="normal" type="1"><li>
          <t>All leading <tt>0</tt> characters <bcp14>MUST</bcp14> be omitted. A single '<tt>0</tt>' is valid.</t>
        </li>
        <li>
          <t>If the Allocator Identifier is zero (0), then the <tt>&lt;allocator-identifier&gt;</tt> and '<tt>.</tt>' <bcp14>MAY</bcp14> be omitted.</t>
        </li>
        <li>
          <t>If the Allocator Identifier is zero (0), and the Node Number is 2^32-1, i.e., the URI is a <xref target="localnode-uri">LocalNode ipn URI</xref>, then the character '<tt>!</tt>' <bcp14>MAY</bcp14> be used instead of the digits <tt>4294967295</tt>, although both forms are valid encodings.</t>
        </li>
      </ol>
      <t>Examples of the textual representation of ipn URIs can be found in <xref target="text-examples">Appendix B</xref>.</t>
    </section>
    <section anchor="usage-of-ipn-uris-with-bpv7">
      <name>Usage of ipn URIs with BPv7</name>
      <t>From the earliest days of experimentation with the Bundle Protocol there has been a need to identify the source and destination of a bundle.  The IRTF BPv6 experimental specification termed the logical source or destination of a bundle as an "Endpoint" identified by an "Endpoint Identifier" (EID). BPv6 EIDs are formatted as URIs. This definition and representation of EIDs was carried forward from the IRTF BPv6 specification to the IETF BPv7 specification. BPv7 additionally defined an IANA registry called the "Bundle Protocol URI Scheme Types" registry which identifies those URI schemes than might be used to represent EIDs.  The ipn URI scheme is one such URI scheme.</t>
      <t>This section identifies the behavior and interpretation of ipn scheme URIs that <bcp14>MUST</bcp14> be followed when using this URI scheme to represent EIDs in BPv7. An ipn URI used as a BPv7 or BPv6 EID is termed an "ipn EID".</t>
      <section anchor="uniqueness-constraints">
        <name>Uniqueness Constraints</name>
        <t>An ipn EID <bcp14>MUST</bcp14> identify a singleton endpoint. The bundle processing node that is the sole member of that endpoint <bcp14>MUST</bcp14> be the node identified by the <xref target="fqnn">Fully-qualified Node Number</xref> of the node.</t>
        <t>A single bundle processing node <bcp14>MAY</bcp14> have multiple ipn EIDs associated with it. However, all ipn EIDs that share any single FQNN <bcp14>MUST</bcp14> refer to the same bundle processing node.</t>
        <t>For example, <tt>ipn:977000.100.1</tt>, <tt>ipn:977000.100.2</tt>, and <tt>ipn:977000.100.3</tt> <bcp14>MUST</bcp14> all refer to services registered on the bundle processing node identified with FQNN <tt>(977000,100)</tt>. None of these EIDs could be registered on any other bundle processing node.</t>
      </section>
      <section anchor="the-null-endpoint">
        <name>The Null Endpoint</name>
        <t><xref section="3.2" sectionFormat="of" target="RFC9171"/> defines the concept of the 'null' endpoint, which is an endpoint that has no members and which is identified by a special 'null' EID.</t>
        <t>Within the ipn URI scheme, the 'null' EID is represented by the <xref target="null-uri">Null ipn URI</xref>.  This means that the URIs <tt>dtn:none</tt> (<xref section="4.2.5.1.1" sectionFormat="of" target="RFC9171"/>) and <tt>ipn:0.0</tt> both refer to the BPv7 'null' endpoint.</t>
      </section>
      <section anchor="bpv7-node-id">
        <name>BPv7 Node ID</name>
        <t><xref section="4.2.5.2" sectionFormat="of" target="RFC9171"/> introduces the concept of a "Node ID" that has the same format as an EID and that uniquely identifies a bundle processing node.</t>
        <t>Any ipn EID can serve as a "Node ID" for the bundle processing node identified by its <xref target="fqnn">Fully-qualified Node Number</xref>. That is, any ipn EID of the form ipn:A.B.C may be used as the Source Node ID of any bundle created by the bundle processing node identified by the FQNN <tt>(A,B)</tt>.</t>
      </section>
      <section anchor="localnode-ipn-eids">
        <name>LocalNode ipn EIDs</name>
        <t>When a <xref target="localnode-uri">LocalNode ipn URI</xref> is used as a BPv7 or BPv6 EID, it is termed a "LocalNode ipn EID".</t>
        <t>Because a LocalNode ipn EID only has meaning on the local bundle node, any such EID <bcp14>MUST</bcp14> be considered 'non-routeable'. This means that any bundle using a LocalNode ipn EID as a bundle source or bundle destination <bcp14>MUST NOT</bcp14> be allowed to leave the local node.  Equally, all externally received bundles featuring LocalNode EIDs as a bundle source or bundle destination <bcp14>MUST</bcp14> be discarded as invalid.</t>
        <t>LocalNode ipn EIDs <bcp14>SHOULD NOT</bcp14> be present in any other part of a bundle that is transmitted off of the local node. For example, a LocalNode ipn EID <bcp14>SHOULD NOT</bcp14> be used as a Bundle Protocol Security <xref target="RFC9172"/> security source EID for a bundle transmitted from the local bundle node, because such a source EID would have no meaning at a downstream bundle node.</t>
      </section>
      <section anchor="private-use-ipn-eids">
        <name>Private Use ipn EIDs</name>
        <t>Bundles destined for EIDs that use an ipn URI with a <xref target="fqnn">Fully-qualified Node Number</xref> that is within the "Private Use" range of the <xref target="default-allocator">Default Allocator</xref> are not universally unique, and therefore are only valid within the scope of the current administrative domain.  This means that any bundle using a Private Use ipn EID as a bundle source or bundle destination <bcp14>MUST NOT</bcp14> be allowed to cross administrative domains.  All implementations that could be deployed as a gateway between administrative domains <bcp14>MUST</bcp14> be sufficiently configurable to ensure that this is enforced, and operators <bcp14>MUST</bcp14> ensure correct configuration.</t>
        <t>Private Use ipn EIDs <bcp14>SHOULD NOT</bcp14> be present in any other part of a bundle that is destined for another administrative domain when the lack of uniqueness prevents correct operation. For example, a Private Use ipn EID <bcp14>SHOULD NOT</bcp14> be used as a Bundle Protocol Security <xref target="RFC9172"/> security source EID for a bundle, when the bundle is destined for a different administrative domain.</t>
      </section>
      <section anchor="well-known-service-numbers">
        <name>Well-known Service Numbers</name>
        <t>It is convenient for BPv7 services that have a public specification and wide adoption to be identified by a pre-agreed default Service Number, so that unless extra configuration is applied, such services can be sensibly assumed to be operating on the well-known Service Number on a particular node.</t>
        <t>If a different service uses the number, or the service uses a different number, BPv7 will continue to operate, but some configuration may be required to make the individual service operational.</t>
        <t>A new IANA "'ipn' Scheme URI Well-known Service Numbers for BPv7" registry is defined for the registration of well-known BPv7 Service Numbers, see <xref target="iana-service-numbers">'ipn' Scheme URI Well-known Service Numbers for BPv7 registry</xref>.  This registry records the assignments of Service Numbers for well-known services, and also explicitly reserves ranges for both experimentation and private use.</t>
      </section>
      <section anchor="administrative-endpoints">
        <name>Administrative Endpoints</name>
        <t>The service identified by a Service Number of zero (0) <bcp14>MUST</bcp14> be interpreted as the Administrative Endpoint of the node, as defined in <xref section="3.2" sectionFormat="of" target="RFC9171"/>.</t>
        <t>Non-zero Service Numbers <bcp14>MUST NOT</bcp14> be used to identify the Administrative Endpoint of a bundle node in an ipn EID.</t>
      </section>
    </section>
    <section anchor="encoding-ipn-uris-with-bpv7">
      <name>Encoding ipn URIs with BPv7</name>
      <t><xref section="4.2.5.1" sectionFormat="of" target="RFC9171"/> requires that any URI scheme used to represent BPv7 EIDs <bcp14>MUST</bcp14> define how the scheme-specific part of the URI scheme is encoded with CBOR <xref target="RFC8949"/>. To meet this requirement, this section describes the CBOR encoding and decoding approach for ipn EIDs. The formal definition of these encodings is presented in <xref target="cbor-encoding">Appendix C</xref>.</t>
      <t>While there is a single, canonical, textual representation of an ipn URI, there may exist multiple encodings for that URI. For example, <xref section="2.1" sectionFormat="of" target="RFC3986"/> defines a percent-encoding mechanism for a URI text string. Alternatively, <xref section="3.4.5.3" sectionFormat="of" target="RFC8949"/> allows for the encoding of URIs as CBOR text strings identified with a CBOR tag value of 32.</t>
      <section anchor="ipn-eid-cbor-encoding">
        <name>ipn EID CBOR Encoding</name>
        <t>Generic URI approaches to encoding ipn EIDs are unlikely to be efficient because they do not consider the underlying structure of the ipn URI scheme. Since the creation of the ipn URI scheme was motivated by the need for concise identification and rapid processing, the encoding of ipn EIDs maintains these properties.</t>
        <t>Fundamentally, <xref target="RFC9171"/> ipn EIDs are represented as a sequence of identifiers. In the text syntax, the numbers are separated with the '<tt>.</tt>' delimiter; in CBOR, this ordered series of numbers can be represented by an array. Therefore, when encoding ipn EIDs for use with BPv7, the scheme-specific part of an ipn URI <bcp14>MUST</bcp14> be represented as a CBOR array of either two (2) or three (3) elements. Each element of the array <bcp14>MUST</bcp14> be encoded as a single CBOR unsigned integer.</t>
        <t>The structure and mechanisms of the two-element and three-element encodings are described below, and examples of the different encodings are provided in <xref target="cbor-examples">Appendix D</xref>.</t>
        <section anchor="two-encode">
          <name>Two-Element Scheme-Specific Encoding</name>
          <t>In the two-element scheme-specific encoding of an ipn EID, the first element of the array is an encoding of the <xref target="fqnn">Fully-qualified Node Number</xref> and the second element of the array is the ipn EID Service Number.</t>
          <t>The FQNN encoding <bcp14>MUST</bcp14> be a 64 bit unsigned integer constructed in the following way:</t>
          <ol spacing="normal" type="1"><li>
              <t>The least significant 32 bits <bcp14>MUST</bcp14> represent the Node Number associated with the ipn EID.</t>
            </li>
            <li>
              <t>The most significant 32 bits <bcp14>MUST</bcp14> represent the Allocator Identifier associated with the ipn EID.</t>
            </li>
          </ol>
          <t>For example the ipn EID of <tt>ipn:977000.100.1</tt> has an FQNN of <tt>(977000,100)</tt> which would be encoded as <tt>0xEE86800000064</tt>.  The resulting two-element array <tt>[0xEE86800000064, 0x01]</tt> would be encoded in CBOR as the 11 octet value <tt>0x821B000EE8680000006401</tt>.</t>
          <t>The two-element scheme-specific encoding provides for backwards compatibility with the encoding provided in <xref section="4.2.5.1.2" sectionFormat="of" target="RFC9171"/>. When used in this way, the encoding of the FQNN replaces the use of the "Node Number" that was specified in RFC9171. When the Node Number is allocated by the <xref target="default-allocator">Default Allocator</xref>, the encoding of the FQNN and the RFC9171 encoding of the "Node Number" are identical.</t>
        </section>
        <section anchor="three-encode">
          <name>Three-Element Scheme-Specific Encoding</name>
          <t>In the three-element scheme-specific encoding of an ipn EID, the first element of the array is the Allocator Identifier, the second element of the array is the Node Number, and the third element of the array is the Service Number.</t>
          <t>For example, the ipn EID of <tt>ipn:977000.100.1</tt> would result in the three-element array of <tt>[977000,100,1]</tt> which would be encoded in CBOR as the 9 octet value <tt>0x831A000EE868186401</tt>.</t>
          <t>The three-element scheme-specific encoding allows for a more efficient representation of ipn EIDs using smaller Allocator Identifiers.</t>
          <t>When encoding an ipn EID using the <xref target="default-allocator">Default Allocator</xref> with this encoding scheme, the first element of the array <bcp14>MUST</bcp14> be the value zero (0). In this case using the two-element encoding will result in a more concise CBOR representation, and it is <bcp14>RECOMMENDED</bcp14> that implementations do so.</t>
        </section>
      </section>
      <section anchor="ipn-eid-cbor-decoding">
        <name>ipn EID CBOR Decoding</name>
        <t>The presence of different scheme-specific encodings does not introduce any decoding ambiguity.</t>
        <t>An ipn EID CBOR decoder can reconstruct an ipn EID using the following logic. In this description, the term <tt>enc_eid</tt> refers to the CBOR encoded ipn EID, and the term <tt>ipn_eid</tt> refers to the decoded ipn EID.</t>
        <artwork align="left" type="pseudocode"><![CDATA[
if enc_eid.len() == 3
{
  ipn_eid.allocator_identifier := enc_eid[0];
  ipn_eid.node_number := enc_eid[1];
  ipn_eid.service_number := enc_eid[2];
}
else if enc_eid.len() == 2
{
  ipn_eid.allocator_identifier := enc_eid[0] >> 32;
  ipn_eid.node_number := enc_eid[0] & (2^32-1);
  ipn_eid.service_number := enc_eid[1];
}
]]></artwork>
      </section>
      <section anchor="ipn-eid-matching">
        <name>ipn EID Matching</name>
        <t>Regardless of whether the two-element or three-element scheme-specific encoding is used, ipn EID matching <bcp14>MUST</bcp14> be performed on the decoded EID information itself. Different encodings of the same ipn EID <bcp14>MUST</bcp14> be treated as equivalent when performing EID-specific functions.</t>
        <t>For example, the ipn EID of <tt>ipn:977000.100.1</tt> can be represented as either the two-element encoding of <tt>0x821B000EE8680000006401</tt> or the three-element encoding of <tt>0x831A000EE868186401</tt>. While message integrity and other syntax-based checks may treat these values differently, any EID-based comparisons <bcp14>MUST</bcp14> treat these values the same - as representing the ipn EID <tt>ipn:977000.100.1</tt>.</t>
      </section>
    </section>
    <section anchor="special-considerations">
      <name>Special Considerations</name>
      <t>The ipn URI scheme provides a compact and hierarchical mechanism for identifying services on network nodes. There is a significant amount of utility in the ipn URI scheme approach to identification. However, implementers should take into consideration the following observations on the use of the ipn URI scheme.</t>
      <section anchor="scheme-compatibility">
        <name>Scheme Compatibility</name>
        <t>The ipn scheme update that has been presented in this document preserves backwards compatibility with any ipn URI scheme going back to the provisional definition of the ipn scheme in the experimental Compressed Bundle Header Encoding <xref target="RFC6260"/> specification in 2011. This means that any ipn URI that was valid prior to the publication of this update remains a valid ipn URI.</t>
        <t>Similarly, the <xref target="two-encode">two-element scheme-specific encoding</xref> is also backwards compatible with the encoding of ipn URIs provided in <xref target="RFC9171"/>. Any existing RFC9171-compliant implementation will produce an ipn URI encoding in compliance with this specification.</t>
        <t>The introduction of optional non-default Allocator Identifiers and a three-element scheme-specific encoding does not make this ipn URI scheme update forwards compatible. Existing software for which support of this update is desired <bcp14>MUST</bcp14> be updated to be able to process non-default Allocator Identifiers and three-element scheme-specific encodings. It is <bcp14>RECOMMENDED</bcp14> that BPv7 implementations upgrade to process these new features to benefit from the scalability provided by Allocator Identifiers and the encoding efficiencies provided by the three-element encoding.</t>
      </section>
      <section anchor="encoding-interoperability">
        <name>Encoding Interoperability</name>
        <t>Care must be taken when deploying implementations that default to using the three-element encoding in networks that include implementations that only support the two-element <xref target="RFC9171"/> encoding. Because the existing implementations will reject bundles that use the three-element encoding as malformed, correct forwarding of semantically valid bundles will fail.  Mitigation for this issue depends on the nature of the interoperability required by the deployment. Techniques can include:</t>
        <ul spacing="normal">
          <li>
            <t>A configuration option indicating when an implementation must use the two-element encoding for all ipn EIDs when processing bundles destined to a given endpoint:  This would be suitable when adding a newer implementation to a network of existing implementations.</t>
          </li>
          <li>
            <t>Selective bundle encapsulation, whereby bundles that are known to originate from implementations that do not support the three-element encoding are tunnelled across regions of the network that require the three-element encoding:  This would utilize specially configured 'gateway nodes' to perform the tunnel encapsulation and decapsulation, and would be suitable when joining an existing network to a larger network.</t>
          </li>
        </ul>
        <t>Techniques that do not mitigate the problem include:</t>
        <ul spacing="normal">
          <li>
            <t>Heuristic determination of the correct encoding to use when responding to a bundle by examining the incoming bundle:  It is not possible to determine whether the two-element encoding is required by the destination when composing a new bundle in response to the receipt of a bundle, such as a status report, because ipn EIDs assigned by the Default Allocator use the two-element encoding, whether the implementation supports the three-element encoding or not.</t>
          </li>
          <li>
            <t>Transcoding bundles at intermediate nodes: <xref target="RFC9171"/> requires the bundle primary block be immutable, and even if ipn EIDs in the primary block do not require rewriting, other blocks including the payload block may include ipn EIDs of which the transcoding node is unaware.  Additionally, bundle blocks may be covered by <xref target="RFC9172"/> bundle security blocks or bundle integrity blocks, making them immutable.</t>
          </li>
        </ul>
      </section>
      <section anchor="late-binding">
        <name>Late Binding</name>
        <t><xref target="RFC9171"/> mandates the concept of "late binding" of an EID, whereby the address of the destination of a bundle is resolved from its identifier hop-by-hop as it transits a DTN.  This per-hop binding of identifiers to addresses underlines the fact that EIDs are purely names, and should not carry any implicit or explicit information concerning the current location or reachability of an identified node and service.  This removes the need to rename a node as its location changes.</t>
        <t>The concept of "late binding" is preserved in this ipn URI scheme. Elements of an ipn URI <bcp14>SHOULD NOT</bcp14> be regarded as carrying information relating to location, reachability, or other addressing/routing concern.</t>
        <t>An example of incorrect behaviour would be to assume that a given Allocator assigns Node Numbers derived from link-layer addresses and to interpret the Node Number component of an ipn URI directly as a link-layer address. No matter the mechanism an Allocator uses for the assignment of Node Numbers, they remain just numbers, without additional meaning.</t>
      </section>
    </section>
    <section anchor="security-considerations">
      <name>Security Considerations</name>
      <t>This section updates the security considerations from <xref section="4.2.5.1.2" sectionFormat="of" target="RFC9171"/> to account for the inclusion of Allocator Identifiers in the ipn URI scheme when used with BPv7.</t>
      <section anchor="reliability-and-consistency">
        <name>Reliability and consistency</name>
        <t>None of the BPv7 endpoints identified by ipn EIDs are guaranteed to be reachable at any time, and the identity of the processing entities operating on those endpoints is never guaranteed by the Bundle Protocol itself. Verification of the signature provided by the Block Integrity Block targeting the bundle's primary block, as defined by Bundle Protocol Security <xref target="RFC9172"/>, is required for this purpose.</t>
      </section>
      <section anchor="malicious-construction">
        <name>Malicious construction</name>
        <t>Malicious construction of a conformant ipn URI is limited to the malicious selection of Allocator Identifiers, Node Numbers, and Service Numbers. That is, a maliciously constructed ipn EID could be used to direct a bundle to an endpoint that might be damaged by the arrival of that bundle or, alternatively, to declare a false source for a bundle and thereby cause incorrect processing at a node that receives the bundle. In both cases (and indeed in all bundle processing), the node that receives a bundle should verify its authenticity and validity before operating on it in any way.</t>
      </section>
      <section anchor="back-end-transcoding">
        <name>Back-end transcoding</name>
        <t>The limited expressiveness of URIs of the ipn scheme effectively eliminates the possibility of threat due to errors in back-end transcoding.</t>
      </section>
      <section anchor="local-and-private-use-ipn-eids">
        <name>Local and Private Use ipn EIDs</name>
        <t>Both <xref target="localnode-uri">LocalNode</xref> and <xref target="private-use">Private Use</xref> ipn URIs present a risk to the stability of deployed BPv7 networks.  If either type of ipn URI are allowed to propagate beyond the domain in which they are valid, then the required uniqueness of ipn URIs no longer holds, and this fact can be abused by a malicious node to prevent the correct functioning of the network as a whole.</t>
        <t>See <xref target="localnode-ipn-eids">LocalNode ipn EIDs</xref> and <xref target="private-use-ipn-eids">Private Use ipn EIDs</xref> for required behaviours to mitigate against this form of abuse.</t>
      </section>
      <section anchor="sensitive-information">
        <name>Sensitive information</name>
        <t>Because ipn URIs are used only to represent the numeric identities of resources, the risk of disclosure of sensitive information due to interception of these URIs is minimal. Examination of ipn URIs could be used to support traffic analysis; where traffic analysis is a plausible danger, bundles should be conveyed by secure convergence-layer protocols that do not expose endpoint IDs.</t>
      </section>
      <section anchor="semantic-attacks">
        <name>Semantic attacks</name>
        <t>The simplicity of ipn URI scheme syntax minimizes the possibility of misinterpretation of a URI by a human user.</t>
      </section>
    </section>
    <section anchor="iana">
      <name>IANA Considerations</name>
      <t>The following sections detail requests to IANA for the creation of two new registries, and the renaming of an existing registry.</t>
      <t>IANA is requested to update the reference to the 'ipn' scheme is the "Uniform Resource Identifier (URI) Schemes" registry to this document.</t>
      <t>IANA is requested to add the new registries, and relocate the existing registries under the "Uniform Resource Identifier (URI) Schemes" protocol registry.</t>
      <section anchor="iana-allocator-identifiers">
        <name>'ipn' Scheme URI Allocator Identifiers registry</name>
        <t>IANA is requested to create a new registry entitled "'ipn' Scheme URI Allocator Identifiers".  The registration policy for this registry, using terms defined in <xref target="RFC8126"/>, is:</t>
        <table align="left" anchor="tab-ipn-allocator-identifiers-reg">
          <name>'ipn' Scheme URI Numbering Allocator Identifiers registration policies</name>
          <thead>
            <tr>
              <th align="center">Range</th>
              <th align="left">Registration Policy</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="center">0 .. 2^16-1</td>
              <td align="left">Expert Review, Single Allocator Identifiers only</td>
            </tr>
            <tr>
              <td align="center">2^16 .. 2^30-1</td>
              <td align="left">Expert Review</td>
            </tr>
            <tr>
              <td align="center">2^30 .. 2^31-1</td>
              <td align="left">Experimental Use</td>
            </tr>
            <tr>
              <td align="center">2^31 .. 2^32-1</td>
              <td align="left">Reserved, Future Expansion</td>
            </tr>
            <tr>
              <td align="center">&gt;= 2^32</td>
              <td align="left">Reserved</td>
            </tr>
          </tbody>
        </table>
        <t>Each entry in this registry associates one or more Allocator Identifiers with a single organization. Within the registry, the organization is identified using the "Name" and "Point of Contact" fields. It is expected that each identified organization publishes some listing of allocated node numbers - the pointer to which is listed in the "Reference" field of the registry.</t>
        <t>Note that the “Single Allocator Identifiers only” language in Registration Policy for this registry indicates that, within the indicated range, the allocation of a sequence of consecutive Allocator identifiers to a single organization is prohibited.  IANA is requested to note this in the registration policy for this registry.</t>
        <t>The initial values for the registry are:</t>
        <table align="left" anchor="tab-ipn-allocator-identifiers-vals">
          <name>'ipn' Scheme URI Allocator Identifiers initial values</name>
          <thead>
            <tr>
              <th align="left">Name</th>
              <th align="center">Range (dec)</th>
              <th align="center">Range (hex)</th>
              <th align="center">Range Length (Bits)</th>
              <th align="center">Reference</th>
              <th align="center">Point of Contact</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="left">
                <xref target="default-allocator">Default Allocator</xref></td>
              <td align="center">0</td>
              <td align="center">0x0</td>
              <td align="center">0</td>
              <td align="center">This document</td>
              <td align="center">IANA</td>
            </tr>
            <tr>
              <td align="left">Example Range</td>
              <td align="center">974848 .. 978943</td>
              <td align="center">0xEE000 .. 0xEEFFF</td>
              <td align="center">12 bits</td>
              <td align="center">This document</td>
              <td align="center">IANA</td>
            </tr>
          </tbody>
        </table>
        <t>The "Example Range" is assigned for use in examples in documentation and sample code.</t>
        <section anchor="guidance-for-designated-experts">
          <name>Guidance for Designated Experts</name>
          <t>Due to the nature of the CBOR encoding used for Allocator Identifiers with BPv7, Allocator Identifiers with a low value number are encoded more efficiently than larger numbers.  This makes low value Allocator Identifiers more desirable than larger Allocator Identifiers, and therefore care must be taken when assigning Allocator Identifier ranges to ensure that a single applicant is not granted a large swathe of highly desirable numbers at the expense of other applicants.  To this end, Designated Experts are strongly recommended to familiarize themselves with the CBOR encoding of unsigned integers in <xref target="RFC8949"/>.</t>
        </section>
      </section>
      <section anchor="iana-node-numbers">
        <name>'ipn' Scheme URI Default Allocator Node Numbers registry</name>
        <t>IANA is requested to rename the "CBHE Node Numbers" registry defined in <xref section="3.2.1" sectionFormat="of" target="RFC7116"/> to the "'ipn' Scheme URI Default Allocator Node Numbers" registry.</t>
        <t>The registration policy for this registry, using terms defined in <xref target="RFC8126"/>, is updated to be:</t>
        <table align="left" anchor="tab-ipn-node-numbers-reg">
          <name>'ipn' Scheme URI Default Allocator Node Numbers registration policies</name>
          <thead>
            <tr>
              <th align="center">Range</th>
              <th align="left">Registration Policy</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="center">0</td>
              <td align="left">Reserved for the <xref target="null-uri">Null ipn URI</xref></td>
            </tr>
            <tr>
              <td align="center">1 .. 2^14-1</td>
              <td align="left">Private Use</td>
            </tr>
            <tr>
              <td align="center">2^14 .. 2^32-2</td>
              <td align="left">Expert Review</td>
            </tr>
            <tr>
              <td align="center">2^32-1</td>
              <td align="left">Reserved for <xref target="localnode-uri">LocalNode ipn URIs</xref></td>
            </tr>
            <tr>
              <td align="center">&gt;= 2^32</td>
              <td align="left">Invalid</td>
            </tr>
          </tbody>
        </table>
        <t>As IANA is requested to only rename the registry, all existing registrations will remain.</t>
      </section>
      <section anchor="iana-service-numbers">
        <name>'ipn' Scheme URI Well-known Service Numbers for BPv7 registry</name>
        <t>IANA is requested to create a new registry entitled "'ipn' Scheme URI Well-known Service Numbers for BPv7" registry.  The registration policy for this registry, using terms defined in <xref target="RFC8126"/>, is:</t>
        <table align="left" anchor="tab-ipn-service-numbers-reg">
          <name>'ipn' Scheme URI Well-known Service Numbers for BPv7 registration policies</name>
          <thead>
            <tr>
              <th align="center">Range</th>
              <th align="left">Registration Policy</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="center">0</td>
              <td align="left">Reserved for the <xref target="administrative-endpoints">Administrative Endpoint</xref></td>
            </tr>
            <tr>
              <td align="center">1..127</td>
              <td align="left">Private Use</td>
            </tr>
            <tr>
              <td align="center">128..255</td>
              <td align="left">Standards Action</td>
            </tr>
            <tr>
              <td align="center">0x0100 .. 0x7FFF</td>
              <td align="left">Private Use</td>
            </tr>
            <tr>
              <td align="center">0x8000 .. 0xFFFF</td>
              <td align="left">Specification Required</td>
            </tr>
            <tr>
              <td align="center">2^16 .. 2^32-1</td>
              <td align="left">Private Use</td>
            </tr>
            <tr>
              <td align="center">&gt;= 2^32</td>
              <td align="left">Reserved for future expansion</td>
            </tr>
          </tbody>
        </table>
        <t>The initial values for the registry are:</t>
        <table align="left" anchor="tab-ipn-service-numbers-vals">
          <name>'ipn' Scheme URI Well-known Service Numbers for BPv7 initial values</name>
          <thead>
            <tr>
              <th align="center">Value</th>
              <th align="left">Description</th>
              <th align="left">Reference</th>
            </tr>
          </thead>
          <tbody>
            <tr>
              <td align="center">0</td>
              <td align="left">The <xref target="administrative-endpoints">Administrative Endpoint</xref></td>
              <td align="left">
                <xref target="RFC9171"/>, This document</td>
            </tr>
            <tr>
              <td align="center">0xEEE0 .. 0xEEEF</td>
              <td align="left">Example Range</td>
              <td align="left">This document</td>
            </tr>
          </tbody>
        </table>
        <t>The "Example Range" is assigned for use in examples in documentation and sample code.</t>
        <section anchor="guidance-for-designated-experts-1">
          <name>Guidance for Designated Experts</name>
          <t>This registry is intended to record the default Service Numbers for well-known, interoperable services available and of use to the entire BPv7 community, hence all ranges not marked for Private Use <bcp14>MUST</bcp14> have a corresponding publicly available specification describing how one interfaces with the service.</t>
          <t>Services that are specific to a particular deployment or co-operation may require a registry to reduce administrative burden, but do not require an entry in this registry.</t>
        </section>
      </section>
    </section>
  </middle>
  <back>
    <references>
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="RFC9171">
          <front>
            <title>Bundle Protocol Version 7</title>
            <author fullname="S. Burleigh" initials="S." surname="Burleigh"/>
            <author fullname="K. Fall" initials="K." surname="Fall"/>
            <author fullname="E. Birrane, III" initials="E." surname="Birrane, III"/>
            <date month="January" year="2022"/>
            <abstract>
              <t>This document presents a specification for the Bundle Protocol, adapted from the experimental Bundle Protocol specification developed by the Delay-Tolerant Networking Research Group of the Internet Research Task Force and documented in RFC 5050.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9171"/>
          <seriesInfo name="DOI" value="10.17487/RFC9171"/>
        </reference>
        <reference anchor="RFC2119">
          <front>
            <title>Key words for use in RFCs to Indicate Requirement Levels</title>
            <author fullname="S. Bradner" initials="S." surname="Bradner"/>
            <date month="March" year="1997"/>
            <abstract>
              <t>In many standards track documents several words are used to signify the requirements in the specification. These words are often capitalized. This document defines these words as they should be interpreted in IETF documents. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="2119"/>
          <seriesInfo name="DOI" value="10.17487/RFC2119"/>
        </reference>
        <reference anchor="RFC8174">
          <front>
            <title>Ambiguity of Uppercase vs Lowercase in RFC 2119 Key Words</title>
            <author fullname="B. Leiba" initials="B." surname="Leiba"/>
            <date month="May" year="2017"/>
            <abstract>
              <t>RFC 2119 specifies common key words that may be used in protocol specifications. This document aims to reduce the ambiguity by clarifying that only UPPERCASE usage of the key words have the defined special meanings.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="8174"/>
          <seriesInfo name="DOI" value="10.17487/RFC8174"/>
        </reference>
        <reference anchor="RFC8126">
          <front>
            <title>Guidelines for Writing an IANA Considerations Section in RFCs</title>
            <author fullname="M. Cotton" initials="M." surname="Cotton"/>
            <author fullname="B. Leiba" initials="B." surname="Leiba"/>
            <author fullname="T. Narten" initials="T." surname="Narten"/>
            <date month="June" year="2017"/>
            <abstract>
              <t>Many protocols make use of points of extensibility that use constants to identify various protocol parameters. To ensure that the values in these fields do not have conflicting uses and to promote interoperability, their allocations are often coordinated by a central record keeper. For IETF protocols, that role is filled by the Internet Assigned Numbers Authority (IANA).</t>
              <t>To make assignments in a given registry prudently, guidance describing the conditions under which new values should be assigned, as well as when and how modifications to existing values can be made, is needed. This document defines a framework for the documentation of these guidelines by specification authors, in order to assure that the provided guidance for the IANA Considerations is clear and addresses the various issues that are likely in the operation of a registry.</t>
              <t>This is the third edition of this document; it obsoletes RFC 5226.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="26"/>
          <seriesInfo name="RFC" value="8126"/>
          <seriesInfo name="DOI" value="10.17487/RFC8126"/>
        </reference>
        <reference anchor="RFC8949">
          <front>
            <title>Concise Binary Object Representation (CBOR)</title>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <author fullname="P. Hoffman" initials="P." surname="Hoffman"/>
            <date month="December" year="2020"/>
            <abstract>
              <t>The Concise Binary Object Representation (CBOR) is a data format whose design goals include the possibility of extremely small code size, fairly small message size, and extensibility without the need for version negotiation. These design goals make it different from earlier binary serializations such as ASN.1 and MessagePack.</t>
              <t>This document obsoletes RFC 7049, providing editorial improvements, new details, and errata fixes while keeping full compatibility with the interchange format of RFC 7049. It does not create a new version of the format.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="94"/>
          <seriesInfo name="RFC" value="8949"/>
          <seriesInfo name="DOI" value="10.17487/RFC8949"/>
        </reference>
        <reference anchor="RFC5234">
          <front>
            <title>Augmented BNF for Syntax Specifications: ABNF</title>
            <author fullname="D. Crocker" initials="D." role="editor" surname="Crocker"/>
            <author fullname="P. Overell" initials="P." surname="Overell"/>
            <date month="January" year="2008"/>
            <abstract>
              <t>Internet technical specifications often need to define a formal syntax. Over the years, a modified version of Backus-Naur Form (BNF), called Augmented BNF (ABNF), has been popular among many Internet specifications. The current specification documents ABNF. It balances compactness and simplicity with reasonable representational power. The differences between standard BNF and ABNF involve naming rules, repetition, alternatives, order-independence, and value ranges. This specification also supplies additional rule definitions and encoding for a core lexical analyzer of the type common to several Internet specifications. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="68"/>
          <seriesInfo name="RFC" value="5234"/>
          <seriesInfo name="DOI" value="10.17487/RFC5234"/>
        </reference>
        <reference anchor="RFC8610">
          <front>
            <title>Concise Data Definition Language (CDDL): A Notational Convention to Express Concise Binary Object Representation (CBOR) and JSON Data Structures</title>
            <author fullname="H. Birkholz" initials="H." surname="Birkholz"/>
            <author fullname="C. Vigano" initials="C." surname="Vigano"/>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <date month="June" year="2019"/>
            <abstract>
              <t>This document proposes a notational convention to express Concise Binary Object Representation (CBOR) data structures (RFC 7049). Its main goal is to provide an easy and unambiguous way to express structures for protocol messages and data formats that use CBOR or JSON.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8610"/>
          <seriesInfo name="DOI" value="10.17487/RFC8610"/>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="RFC7116">
          <front>
            <title>Licklider Transmission Protocol (LTP), Compressed Bundle Header Encoding (CBHE), and Bundle Protocol IANA Registries</title>
            <author fullname="K. Scott" initials="K." surname="Scott"/>
            <author fullname="M. Blanchet" initials="M." surname="Blanchet"/>
            <date month="February" year="2014"/>
            <abstract>
              <t>The DTNRG Research Group has defined the experimental Licklider Transmission Protocol (LTP) and the Compressed Bundle Header Encoding (CBHE) mechanism for the InterPlanetary Network ('ipn' URI scheme). Moreover, RFC 5050 defines values for the Bundle Protocol administrative record type. All of these fields are subject to a registry. For the purpose of its research work, the group has created ad hoc registries. As the specifications are stable and have multiple interoperable implementations, the group would like to hand off the registries to IANA for official management. This document describes the necessary IANA actions.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7116"/>
          <seriesInfo name="DOI" value="10.17487/RFC7116"/>
        </reference>
        <reference anchor="RFC5050">
          <front>
            <title>Bundle Protocol Specification</title>
            <author fullname="K. Scott" initials="K." surname="Scott"/>
            <author fullname="S. Burleigh" initials="S." surname="Burleigh"/>
            <date month="November" year="2007"/>
            <abstract>
              <t>This document describes the end-to-end protocol, block formats, and abstract service description for the exchange of messages (bundles) in Delay Tolerant Networking (DTN).</t>
              <t>This document was produced within the IRTF's Delay Tolerant Networking Research Group (DTNRG) and represents the consensus of all of the active contributors to this group. See http://www.dtnrg.org for more information. This memo defines an Experimental Protocol for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5050"/>
          <seriesInfo name="DOI" value="10.17487/RFC5050"/>
        </reference>
        <reference anchor="RFC4632">
          <front>
            <title>Classless Inter-domain Routing (CIDR): The Internet Address Assignment and Aggregation Plan</title>
            <author fullname="V. Fuller" initials="V." surname="Fuller"/>
            <author fullname="T. Li" initials="T." surname="Li"/>
            <date month="August" year="2006"/>
            <abstract>
              <t>This memo discusses the strategy for address assignment of the existing 32-bit IPv4 address space with a view toward conserving the address space and limiting the growth rate of global routing state. This document obsoletes the original Classless Inter-domain Routing (CIDR) spec in RFC 1519, with changes made both to clarify the concepts it introduced and, after more than twelve years, to update the Internet community on the results of deploying the technology described. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="122"/>
          <seriesInfo name="RFC" value="4632"/>
          <seriesInfo name="DOI" value="10.17487/RFC4632"/>
        </reference>
        <reference anchor="RFC1918">
          <front>
            <title>Address Allocation for Private Internets</title>
            <author fullname="Y. Rekhter" initials="Y." surname="Rekhter"/>
            <author fullname="B. Moskowitz" initials="B." surname="Moskowitz"/>
            <author fullname="D. Karrenberg" initials="D." surname="Karrenberg"/>
            <author fullname="G. J. de Groot" initials="G. J." surname="de Groot"/>
            <author fullname="E. Lear" initials="E." surname="Lear"/>
            <date month="February" year="1996"/>
            <abstract>
              <t>This document describes address allocation for private internets. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="5"/>
          <seriesInfo name="RFC" value="1918"/>
          <seriesInfo name="DOI" value="10.17487/RFC1918"/>
        </reference>
        <reference anchor="RFC3986">
          <front>
            <title>Uniform Resource Identifier (URI): Generic Syntax</title>
            <author fullname="T. Berners-Lee" initials="T." surname="Berners-Lee"/>
            <author fullname="R. Fielding" initials="R." surname="Fielding"/>
            <author fullname="L. Masinter" initials="L." surname="Masinter"/>
            <date month="January" year="2005"/>
            <abstract>
              <t>A Uniform Resource Identifier (URI) is a compact sequence of characters that identifies an abstract or physical resource. This specification defines the generic URI syntax and a process for resolving URI references that might be in relative form, along with guidelines and security considerations for the use of URIs on the Internet. The URI syntax defines a grammar that is a superset of all valid URIs, allowing an implementation to parse the common components of a URI reference without knowing the scheme-specific requirements of every possible identifier. This specification does not define a generative grammar for URIs; that task is performed by the individual specifications of each URI scheme. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="66"/>
          <seriesInfo name="RFC" value="3986"/>
          <seriesInfo name="DOI" value="10.17487/RFC3986"/>
        </reference>
        <reference anchor="RFC9172">
          <front>
            <title>Bundle Protocol Security (BPSec)</title>
            <author fullname="E. Birrane, III" initials="E." surname="Birrane, III"/>
            <author fullname="K. McKeever" initials="K." surname="McKeever"/>
            <date month="January" year="2022"/>
            <abstract>
              <t>This document defines a security protocol providing data integrity and confidentiality services for the Bundle Protocol (BP).</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9172"/>
          <seriesInfo name="DOI" value="10.17487/RFC9172"/>
        </reference>
        <reference anchor="RFC6260">
          <front>
            <title>Compressed Bundle Header Encoding (CBHE)</title>
            <author fullname="S. Burleigh" initials="S." surname="Burleigh"/>
            <date month="May" year="2011"/>
            <abstract>
              <t>This document describes a convention by which Delay-Tolerant Networking (DTN) Bundle Protocol (BP) "convergence-layer" adapters may represent endpoint identifiers in a compressed form within the primary blocks of bundles, provided those endpoint identifiers conform to the structure prescribed by this convention.</t>
              <t>Compressed Bundle Header Encoding (CBHE) compression is a convergence-layer adaptation. It is opaque to bundle processing. Therefore, it has no impact on the interoperability of different Bundle Protocol implementations, but instead affects only the interoperability of different convergence-layer adaptation implementations.</t>
              <t>This document is a product of the Delay-Tolerant Networking Research Group and has been reviewed by that group. No objections to its publication as an RFC were raised. This document defines an Experimental Protocol for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6260"/>
          <seriesInfo name="DOI" value="10.17487/RFC6260"/>
        </reference>
      </references>
    </references>
    <?line 490?>

<section anchor="text-syntax">
      <name>ipn URI Scheme Text Syntax</name>
      <t>The text syntax of an ipn URI <bcp14>MUST</bcp14> comply with the following ABNF <xref target="RFC5234"/> syntax, and reiterates the core ABNF syntax rule for DIGIT defined by that specification:</t>
      <artwork type="abnf" align="left"><![CDATA[
ipn-uri = "ipn:" ipn-hier-part

ipn-hier-part = fqnn "." service-number

fqnn = "!" / allocator-part

allocator-part = [allocator-identifier "."] node-number

allocator-identifier = number

node-number = number

service-number = number

number = "0" / non-zero-number

non-zero-number = (%x31-39 *DIGIT)

DIGIT = %x30-39
]]></artwork>
    </section>
    <section anchor="text-examples">
      <name>ipn URI Scheme Text Representation Examples</name>
      <t>This section provides some example ipn URIs in their textual representation.</t>
      <section anchor="using-the-default-allocator">
        <name>Using the Default Allocator</name>
        <t>Consider the ipn URI identifying Service Number 2 on Node Number 1 allocated by the <xref target="default-allocator">Default Allocator</xref> (0).</t>
        <t>The complete seven character representation of this URI would be as follows:</t>
        <artwork><![CDATA[
ipn:1.2
]]></artwork>
      </section>
      <section anchor="using-a-non-default-allocator">
        <name>Using a non-default Allocator</name>
        <t>Consider the ipn URI identifying Service Number 3 on Node Number 1 allocated by Allocator 977000.</t>
        <t>The complete 14 character representation of this URI would be as follows:</t>
        <artwork><![CDATA[
ipn:977000.1.3
]]></artwork>
      </section>
      <section anchor="the-null-ipn-uri">
        <name>The Null ipn URI</name>
        <t>The <xref target="null-uri">Null ipn URI</xref> is represented as:</t>
        <artwork><![CDATA[
ipn:0.0
]]></artwork>
      </section>
      <section anchor="a-localnode-ipn-uri">
        <name>A LocalNode ipn URI</name>
        <t>Consider the ipn URI identifying Service Number 7 on the local node.</t>
        <t>The complete seven character representation of this URI would be as follows:</t>
        <artwork><![CDATA[
ipn:!.7
]]></artwork>
      </section>
    </section>
    <section anchor="cbor-encoding">
      <name>ipn URI Scheme CBOR Encoding</name>
      <t>A BPv7 endpoint identified by an ipn URI, when encoded in Concise Binary Object Representation (CBOR) <xref target="RFC8949"/>, <bcp14>MUST</bcp14> comply with the following Concise Data Definition Language (CDDL) <xref target="RFC8610"/> specification:</t>
      <artwork type="cddl" align="left"><![CDATA[
eid = $eid .within eid-structure

eid-structure = [
  uri-code: uint,
  SSP: any
]

; ... Syntax for other uri-code values defined in RFC9171 ...

$eid /= [
  uri-code: 2,
  SSP: ipn-ssp2 / ipn-ssp3
]
ipn-ssp2 = [
  fqnn: uint,  ; packed value
  service-number: uint
]
ipn-ssp3 = [
  allocator-identifier: uint .lt 4294967296,
  node-number: uint .lt 4294967296,
  service-number: uint
]
]]></artwork>
      <t>Note: The <tt>node-number</tt> component will be the numeric representation of the concatenation of the Allocator Identifier and Node Number when the 2-element encoding scheme has been used.</t>
    </section>
    <section anchor="cbor-examples">
      <name>ipn URI Scheme CBOR Encoding Examples</name>
      <t>This section provides some example CBOR encodings of ipn EIDs.</t>
      <section anchor="using-the-default-allocator-1">
        <name>Using the Default Allocator</name>
        <t>Consider the ipn EID <tt>ipn:1.1</tt>. This textual representation of an ipn EID identifies Service Number 1 on Node Number 1 allocated by the <xref target="default-allocator">Default Allocator</xref> (0).</t>
        <t>The complete five octet encoding of this EID using the two-element scheme-specific encoding would be as follows:</t>
        <artwork><![CDATA[
82       # 2-Element Endpoint Encoding
   02    # uri-code: 2 (IPN URI scheme)
   82    # 2 Element ipn EID scheme-specific encoding
      01 # Node Number
      01 # Service Number
]]></artwork>
        <t>The complete six octet encoding of this EID using the three-element scheme-specific encoding would be as follows:</t>
        <artwork><![CDATA[
82       # 2-Element Endpoint Encoding
   02    # uri-code: 2 (IPN URI scheme)
   83    # 3 Element ipn EID scheme-specific encoding
      00 # Default Allocator
      01 # Node Number
      01 # Service Number
]]></artwork>
      </section>
      <section anchor="using-a-non-default-allocator-1">
        <name>Using a non-default Allocator</name>
        <t>Consider the ipn EID <tt>ipn:977000.1.1</tt>.  This textual representation of an ipn EID identifies Service Number 1 on Node Number 1 allocated by Allocator 977000.</t>
        <t>The complete thirteen octet encoding of this EID using the two-element scheme-specific encoding would be as follows:</t>
        <artwork><![CDATA[
82                        # 2-Element Endpoint Encoding
   02                     # uri-code: 2 (IPN URI scheme)
   82                     # 2 Element ipn EID scheme-specific encoding
      1B 000EE86800000001 # Fully-qualified Node Number
      01                  # Service Number
]]></artwork>
        <t>The complete ten octet encoding of this EID using the three-element scheme-specific encoding would be as follows:</t>
        <artwork><![CDATA[
82                # 2-Element Endpoint Encoding
   02             # uri-code: 2 (IPN URI scheme)
   83             # 3 Element ipn EID scheme-specific encoding
      1A 000EE868 # Allocator Identifier
      01          # Node Number
      01          # Service Number
]]></artwork>
      </section>
      <section anchor="the-null-endpoint-1">
        <name>The 'null' Endpoint</name>
        <t>The 'null' EID of <tt>ipn:0.0</tt> can be encoded in the following ways:</t>
        <t>The complete five octet encoding of the 'null' ipn EID using the two-element scheme-specific encoding would be as follows:</t>
        <artwork><![CDATA[
82       # 2-Element Endpoint Encoding
   02    # uri-code: 2 (IPN URI scheme)
   82    # 2 Element ipn EID scheme-specific encoding
      00 # Node Number
      00 # Service Number
]]></artwork>
        <t>The complete six octet encoding of the 'null'' ipn EID using the three-element scheme-specific encoding would be as follows:</t>
        <artwork><![CDATA[
82       # 2-Element Endpoint Encoding
   02    # uri-code: 2 (IPN URI scheme)
   83    # 3 Element ipn EID scheme-specific encoding
      00 # Default Allocator
      00 # Node Number
      00 # Service Number
]]></artwork>
      </section>
    </section>
    <section numbered="false" anchor="acknowledgments">
      <name>Acknowledgments</name>
      <t>The following DTNWG participants contributed technical material, use cases, and critical technical review for this URI scheme update: Scott Burleigh of the IPNGROUP, Keith Scott, Brian Sipos of the Johns Hopkins University Applied Physics Laboratory, Jorge Amodio of LJCV Electronics, and Ran Atkinson.</t>
      <t>Additionally, the authors wish to thank members of the CCSDS SIS-DTN working group at large who provided useful review and commentary on this document and its implications for the future of networked space exploration.</t>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
