RFC 7132 · INFORMATIONAL · 2014

Threat Model for BGP Path Security

Overview

RFC 7132, “Threat Model for BGP Path Security”, is an Informational document published in February 2014 by S. Kent, A. Chi. The canonical text is published by the RFC Editor.

Abstract

This document describes a threat model for the context in which External Border Gateway Protocol (EBGP) path security mechanisms will be developed. The threat model includes an analysis of the Resource Public Key Infrastructure (RPKI) and focuses on the ability of an Autonomous System (AS) to verify the authenticity of the AS path info received in a BGP update. We use the term "PATHSEC" to refer to any BGP path security technology that makes use of the RPKI. PATHSEC will secure BGP, consistent with the inter-AS security focus of the RPKI.

The document characterizes classes of potential adversaries that are considered to be threats and examines classes of attacks that might be launched against PATHSEC. It does not revisit attacks against unprotected BGP, as that topic has already been addressed in the BGP-4 standard. It concludes with a brief discussion of residual vulnerabilities.

Abstract as published in the RFC, via rfc-editor.org.

What “Informational” means

Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.

Read this RFC

The canonical text of RFC 7132 is hosted at rfc-editor.org. Available in TXT,HTML.

Other RFCs from 2014

Who Is Online

In total there are 31 users online: 0 registered, 26 guests and 5 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Bingbot Other Bot SemrushBot

Users active in the past 15 minutes. Total registered members: 354