Written steps are the source of truth for this guide.
Videos and screenshots are supporting demonstrations. Follow the written steps and confirm the current screen, account, registry, and resource state before acting.
For the i.lease / idolist Resource Management workspace
This guide explains how to configure WHOIS admin contact mailbox information in each RIR system so i.lease can resolve ownership-confirmation recipient email from RDAP and send verification emails successfully.
How i.lease Resolves Recipient Email
- For supplier-managed offers, i.lease queries RIR RDAP using the prefix IP.
- i.lease only accepts an email from RDAP entity role
administrative/admin. - i.lease does not fall back to
abuse,technical,noc, orroutingroles. - If no valid admin email is exposed by RDAP, ownership-confirmation email cannot be sent.
Before You Start
- Identify the RIR of your target prefix: ARIN, RIPE, APNIC, LACNIC, or AFRINIC.
- Prepare a mailbox dedicated for WHOIS admin / ownership verification operations.
- Make sure mailbox is continuously monitored by your operations or legal team.
RIR Setup Paths and Steps (WHOIS Admin Contact)
1) ARIN
- Open ARIN Online: https://account.arin.net.
- Create or update a POC with a valid admin mailbox.
- Associate this POC as administrative contact on Org ID / network records.
- Wait for ARIN record propagation, then validate by RDAP.
2) RIPE
- Open RIPE Database Webupdates: https://apps.db.ripe.net.
- Create or update admin contact objects (person/role) with valid mailbox.
- Bind admin contact via
admin-conorganisationand/or resource objects (inetnum,inet6num,aut-num). - Confirm updated objects are visible, then validate by RDAP.
3) APNIC
- Open MyAPNIC: https://my.apnic.net.
- Create or update admin contact records with valid mailbox.
- Ensure related resources reference the admin contact through proper contact attributes (for example
admin-cwhere applicable). - Complete mailbox validation workflow if requested by APNIC.
- Validate by RDAP.
4) LACNIC
- Open MiLACNIC: https://milacnic.lacnic.net.
- Configure and validate administrative contact data with a valid mailbox.
- If resources are managed through NIR, apply updates via the corresponding NIR workflow.
- Validate by RDAP.
5) AFRINIC
- Open MyAFRINIC: https://my.afrinic.net.
- Update organisation/contact records and ensure administrative contact mailbox is published.
- If object-level update requires hostmaster handling, submit support request.
- Validate by RDAP.
RDAP Verification Checklist
- Query the RDAP endpoint with an IP from the target prefix.
- Check
entitiesandvcardArrayfor email fields. - Required by i.lease: entity contains role
administrative/adminwith a valid email. - If only
abuseor other non-admin roles have email, ownership confirmation will fail.
Common RDAP URLs
- ARIN:
https://rdap.arin.net/registry/ip/{ip} - RIPE:
https://rdap.db.ripe.net/ip/{ip} - APNIC:
https://rdap.apnic.net/ip/{ip} - LACNIC:
https://rdap.lacnic.net/rdap/ip/{ip} - AFRINIC:
https://rdap.afrinic.net/rdap/ip/{ip}
How i.lease Confirms Ownership After Email Is Sent
- Use ownership resend action for the offer if needed.
- Recipient clicks the confirmation link in email.
- i.lease checks token hash, expiration time, and confirmation state.
- When valid, i.lease marks offer as
ownership_confirmed=1and records confirmation timestamp. - For supplier-managed flow, offer can continue auto-approval logic after confirmation.
Troubleshooting
- No valid WHOIS admin email found: RDAP has no
administrative/adminmailbox. Update RIR admin contact and retry. - Link expired: resend ownership confirmation to generate a new token.
- Mailbox updated but RDAP still old: wait for registry propagation, then retry.
Operational Recommendation
Maintain one dedicated WHOIS admin mailbox policy per RIR account and review quarterly. This minimizes ownership-confirmation failures and prevents listing delays in supplier-managed onboarding.
