Contact Verification and Validation for NIS2

Contact Verification and Validation for NIS2

Why is it necessary to validate a contact?
Some domain extensions require additional validation of contact data before completing their registration. Currently, this requirement is mandatory for .PT domains and is part of the measures established by DNS.pt, the entity responsible for this extension, as well as the European NIS2 regulation.

To register and manage a .PT domain, it is necessary to use a contact whose data has been correctly validated.


What is the difference between validation and verification?
Although both concepts are related, they do not mean exactly the same thing.

Validation consists of confirming that the data associated with a contact is correct, complete, and can be used for domain management.

Verification consists of proving that the contact means provided actually belong to the contact holder and can be used to communicate with them.

To complete the process, it will be necessary to:

  • Verify the email address.
  • Verify the phone number.
  • Validate the contact data associated with the domain.

Once both verifications are completed and the contact data is confirmed, it will be considered verified.

For practical purposes, in this guide we will use the term verified contact to refer to those contacts that have correctly completed the entire validation and verification process.


Email verification
Email verification confirms that the provided address is valid and under the control of the contact holder.

When verification is requested, a message will be sent to the email address associated with the contact. This message will include a link that must be opened to complete the process.

By accessing the link:

  • The email address will be verified.
  • The contact data will be confirmed (validation of contact data is done in a single step).
  • The corresponding part of the validation will be completed.

For security reasons, verification email sending is limited to a maximum of five requests per contact per day.


Phone verification
In addition to email, it will be necessary to verify the phone number associated with the contact.

Two methods are available:

  • Receiving a code via SMS.
  • Receiving a code via automatic call, especially useful for landlines.

Once the code is received, simply enter it to confirm that the number truly belongs to the contact holder.

If the code does not arrive correctly, a new send can be requested. For security reasons, the number of requests is limited to a maximum of five sends per contact per day.



How to know if a contact is validated?
Each contact has a validation status that makes it easy to know if it can be used to register domains that require this requirement.

The possible statuses are:


Validated
The contact has correctly completed all necessary verifications and can be used to register and manage domains that require prior validation, such as .PT domains.

Pending validation
Some of the required verifications still need to be completed before the contact can be used for this type of domain.

Validation is valid for three years from the date it is correctly completed.




.PT domain registration and transfers
When requesting the registration or transfer of a .PT domain, only contacts that have previously correctly completed the validation process can be used. If the selected contact is pending validation, the corresponding verifications must be completed first before the domain registration can be finalized.

For this reason, it is recommended to have at least one validated contact before starting the acquisition of a .PT domain.


Modification of validated contacts
Once a contact has been validated, its data is protected to ensure that the validated information remains the same as what was verified during the process. For this reason, validated contacts cannot be modified. If different data needs to be used, a new contact must be created and the corresponding validation process must be completed again.

Changes to .PT domains
.PT domains are subject to specific requirements established by DNS.pt. Therefore, some changes related to contacts or domain ownership may require different procedures than those used for other extensions.

Ownership identifies the person or entity that owns the domain.

Ownership changes for .PT domains are directly regulated by DNS.pt and must be carried out following the procedure established by that entity. Depending on each case, DNS.pt may request confirmation from the involved parties or additional documentation to properly accredit the ownership change.

If you need to make an ownership change on a .PT domain, we recommend checking the current requirements of DNS.pt before starting the process.

For already created contacts, it may not be possible to complete the purchase because it is necessary to validate it from the DNS.pt platform.


When is it necessary to perform verification from the dns.pt platform?
As the owner or future owner of a domain, you must have your data/contacts validated when:
  • You are going to accept ownership of a domain.
  • You change the contact data associated with the domain.
  • Your data has expired or has not yet been verified/validated.

Steps to verify:

Access the reserved area

  1. Go to www.pt.pt.
  2. Click on "Reserved Area".
  3. Log in with your credentials: username and password.

Verify your entity's contacts

  1. Within the panel, go to the "Entities" tab.
  2. Click on "My Entity".
  3. On the entity page, scroll down to find "Contact List".
  4. Review the contact status:
    • Thumbs up icon: contact already verified.
    • Thumbs down icon: contact pending verification.

Verify pending email or phone

  1. If the contact appears with a thumbs down, click on "here" next to the contact.
  2. In the window that opens, click "Request confirmation code".
  3. You will receive a code at the corresponding email or phone.
  4. Enter the code in the "Confirmation Code" field.
  5. Click "Save".
    • Related Articles

    • Domain Operations: Modify contact details

      From your dashboard cdmon you can easily and easily modify your domain contact details. To do this you have to access domain management from the "Basic list of services" by clicking on the option Domain. On the domain management screen you have to ...
    • Types of WHOIS data from a domain: Technical contact

      The technical contact is the person who must be contacted regarding technical issues with the domain. In addition, this person is usually responsible for managing the domain's DNS. Depending on the extension, here is how you can check the technical ...
    • Modify the administrative contact of a .es domain of another registrar

      You must have reached this page because your .es domain does not have your email address in the administrative contact. If you are the domain holder or the person who manages it, you can request the amendment of the email of the administrative ...
    • Modify the administrative contact of a generic domain (gTLD) from another provider

      The administrative contact of the domain is responsible for approving/cancel the transfer of domains. So that you can accept/cancell the transfer, with the mail we send you, your email address must be associated with the administrative contact of the ...
    • The importance of verifying the mail account of the holder of a domain

      Due to the new Registrar Accreditation Agreement (RAA 2013) signed with the international domain regulatory body (ICANN), when making a new registration, a domain transfer, or a modification of data for an already registered domain, you must verify ...