|
STANDARD
SIST EN 319 522-4-3 V1.1.1:2018
ETSI EN 319 522-4-3 V1.1.1 (2018-09) Electronic Signatures and Infrastructures (ESI); Electronic Registered Delivery Services; Part 4: Bindings;
Sub-part 3: Capability/requirements bindings
EUROPEAN STANDARD SIST EN 319 522-4-3 V1.1.1:2018
ETSI ETSI EN 319 522-4-3 V1.1.1 (2018-09)2
Reference DEN/ESI-0019522-4-3 Keywords e-delivery services, registered e-delivery services, registered electronic mail ETSI 650 Route des Lucioles F-06921 Sophia Antipolis Cedex - FRANCE
Tel.: +33 4 92 94 42 00
Fax: +33 4 93 65 47 16
Siret N° 348 623 562 00017 - NAF 742 C Association à but non lucratif enregistrée à la Sous-Préfecture de Grasse (06) N° 7803/88
Important notice The present document can be downloaded from: The present document may be made available in electronic versions and/or in print. The content of any electronic and/or print versions of the present document shall not be modified without the prior written authorization of ETSI. In case of any existing or perceived difference in contents between such versions and/or in print, the only prevailing document is the print of the Portable Document Format (PDF) version kept on a specific network drive within ETSI Secretariat. Users of the present document should be aware that the document may be subject to revision or change of status. Information on the current status of this and other ETSI documents is available at If you find errors in the present document, please send your comment to one of the following services: Copyright Notification No part may be reproduced or utilized in any form or by any means, electronic or mechanical, including photocopying and microfilm except as authorized by written permission of ETSI. The content of the PDF version shall not be modified without the written authorization of ETSI. The copyright and the foregoing restriction extend to reproduction in all media.
© ETSI 2018. All rights reserved.
DECTTM, PLUGTESTSTM, UMTSTM and the ETSI logo are trademarks of ETSI registered for the benefit of its Members. 3GPPTM and LTETM are trademarks of ETSI registered for the benefit of its Members and of the 3GPP Organizational Partners. oneM2M logo is protected for the benefit of its Members. GSM and the GSM logo are trademarks registered and owned by the GSM Association. SIST EN 319 522-4-3 V1.1.1:2018
ETSI ETSI EN 319 522-4-3 V1.1.1 (2018-09)3 Contents Intellectual Property Rights . 4 Foreword . 4 Modal verbs terminology . 4 1 Scope . 5 2 References . 5 2.1 Normative references . 5 2.2 Informative references . 5 3 Definitions and abbreviations . 6 3.1 Definitions . 6 3.2 Abbreviations . 6 4 Common Service Interface bindings - general concepts . 6 5 Capability metadata location, BDXL binding . 6 6 Capability metadata publishing, SMP binding . 7 7 Trust information bindings . 7 7.1 Introduction . 7 7.2 EU Trusted List . 8 7.3 Domain Trusted List . 9 7.4 Domain PKI. 9 7.5 Bilateral trust and other trust models . 10 History . 11
SIST EN 319 522-4-3 V1.1.1:2018
ETSI ETSI EN 319 522-4-3 V1.1.1 (2018-09)4 Intellectual Property Rights Essential patents IPRs essential or potentially essential to normative deliverables may have been declared to ETSI. The information pertaining to these essential IPRs, if any, is publicly available for ETSI members and non-members, and can be found in ETSI SR 000 314: "Intellectual Property Rights (IPRs); Essential, or potentially Essential, IPRs notified to ETSI in respect of ETSI standards", which is available from the ETSI Secretariat. Latest updates are available on the ETSI Web server (https://ipr.etsi.org/). Pursuant to the ETSI IPR Policy, no investigation, including IPR searches, has been carried out by ETSI. No guarantee can be given as to the existence of other IPRs not referenced in ETSI SR 000 314 (or the updates on the ETSI Web server) which are, or may be, or may become, essential to the present document. Trademarks The present document may include trademarks and/or tradenames which are asserted and/or registered by their owners. ETSI claims no ownership of these except for any which are indicated as being the property of ETSI, and conveys no right to use or reproduce any trademark and/or tradename. Mention of those trademarks in the present document does not constitute an endorsement by ETSI of products, services or organizations associated with those trademarks. Foreword This European Standard (EN) has been produced by ETSI Technical Committee Electronic Signatures and Infrastructures (ESI). The present document is part 4, sub-part 3 of a multi-part deliverable. Full details of the entire series can be found in part 1 [i.2].
National transposition dates Date of adoption of this EN: 23 August 2018 Date of latest announcement of this EN (doa): 30 November 2018 Date of latest publication of new National Standard or endorsement of this EN (dop/e):
31 May 2019 Date of withdrawal of any conflicting National Standard (dow): 31 May 2019
Modal verbs terminology In the present document "shall", "shall not", "should", "should not", "may", "need not", "will", "will not", "can" and "cannot" are to be interpreted as described in clause 3.2 of the ETSI Drafting Rules (Verbal forms for the expression of provisions). "must" and "must not" are NOT allowed in ETSI deliverables except when used in direct citation.
SIST EN 319 522-4-3 V1.1.1:2018
ETSI ETSI EN 319 522-4-3 V1.1.1 (2018-09)5 1 Scope The present document provides the binding of the Common Service Interface information, whose semantics is defined in ETSI EN 319 522-2 [1] and whose format is defined in ETSI EN 319 522-3 [2] to the specific services provided by OASIS Business Metadata Service Location [3] and the OASIS Service Metadata Publishing [4]. Furthermore, the present document specifies how to establish trust between ERDSs by use of a Trusted List [5], including the EU Trusted List system used for qualified trust services under the Regulation (EU) No 910/2014 [i.1] using the Trusted List format defined by the corresponding Commission implementing decision (EU) 2015/1505 [i.3], and by means of a domain PKI. 2 References 2.1 Normative references References are either specific (identified by date of publication and/or edition number or version number) or non-specific. For specific references, only the cited version applies. For non-specific references, the latest version of the referenced document (including any amendments) applies. Referenced documents which are not found to be publicly available in the expected location might be found at https://docbox.etsi.org/Reference/. NOTE: While any hyperlinks included in this clause were valid at the time of publication, ETSI cannot guarantee their long term validity. The following referenced documents are necessary for the application of the present document. [1] ETSI EN 319 522-2: "Electronic Signatures and Infrastructures (ESI); Electronic Registered Delivery Services; Part 2: Semantic Contents". [2] ETSI EN 319 522-3: "Electronic Signatures and Infrastructures (ESI); Electronic Registered Delivery Services; Part 3: Formats". [3] OASIS: "Business Document Metadata Service Location Version 1.0", OASIS standard, August 2017. [4] OASIS: "Service Metadata Publishing (SMP) Version 1.0", OASIS standard, August 2017. [5] ETSI TS 119 612: "Electronic Signatures and Infrastructures (ESI); Trusted Lists". [6] W3C Recommendation (11 April 2013): "XML Signature Syntax and Processing Version 1.1". 2.2 Informative references References are either specific (identified by date of publication and/or edition number or version number) or non-specific. For specific references, only the cited version applies. For non-specific references, the latest version of the referenced document (including any amendments) applies. NOTE: While any hyperlinks included in this clause were valid at the time of publication, ETSI cannot guarantee their long term validity. The following referenced documents are not necessary for the application of the present document but they assist the user with regard to a particular subject area. [i.1] Regulation (EU) No 910/2014 of the European Parliament and of the Council of 23 July 2014 on electronic identification and trust services for electronic transactions in the internal market and repealing Directive 1999/93/EC. [i.2] ETSI EN 319 522-1: "Electronic Signatures and Infrastructures (ESI); Electronic Registered Delivery Services; Part 1: Framework and Architecture". SIST EN 319 522-4-3 V1.1.1:2018
ETSI ETSI EN 319 522-4-3 V1.1.1 (2018-09)6 [i.3] Commission Implementing Decision (EU) 2015/1505 of 8th September 2015 laying down technical specifications and formats relating to trusted lists pursuant to Article 22(5) of Regulation (EU) No 910/2014. 3 Definitions and abbreviations 3.1 Definitions For the purposes of the present document, the terms and definitions given in ETSI EN 319 522-1 [i.2] apply. 3.2 Abbreviations For the purposes of the present document, the abbreviations given in ETSI EN 319 522-1 [i.2] apply. 4 Common Service Interface bindings - general concepts This part specifies the binding for the common services to specific protocols. Semantics for common services shall be as defined in ETSI EN 319 522-2 [1] and formats shall be as defined in ETSI EN 319 522-3 [2]. Specifically:
• receiver identification service is bound to OASIS Business Document Metadata Service Location [3]; • capability discovery service is bound to OASIS Service Metadata Publisher [4]; • ERDS trust evaluation is bound to Trusted List [5] or to use of a domain PKI. 5 Capability metadata location, BDXL binding When metadata is used, the first step is to obtain the address where the sought metadata is located. This goes for both recipient metadata and metadata about ERDS capabilities, relevant for both the R-ERDS and intermediate ERDSs. This clause describes use of the OASIS Business Document Metadata Service Location Version 1.0 [3] (BDXL), commonly used with the OASIS Service Metadata Publishing (SMP) Version 1.0 [4] described in the next clause. BDXL is based on DNS (Domain Name Service), which is a common infrastructure for the Internet. From unique identification of an actor - the participant identifier in BDXL terms - for which metadata shall be accessed, a query string is constructed for DNS, returning a URI to the SMP publishing metadata for the identified actor. In the scope of the present document, the actor ide
...