Simplified Local Internet Number Resource Management with the RPKI
RFC 8416, “Simplified Local Internet Number Resource Management with the RPKI”, is a Proposed Standard document published in August 2018 by D. Ma, D. Mandelberg, T. Bruijnzeels. The canonical text is published by the RFC Editor.
Abstract
The Resource Public Key Infrastructure (RPKI) is a global authorization infrastructure that allows the holder of Internet Number Resources (INRs) to make verifiable statements about those resources. Network operators, e.g., Internet Service Providers (ISPs), can use the RPKI to validate BGP route origin assertions. ISPs can also use the RPKI to validate the path of a BGP route. However, ISPs may want to establish a local view of exceptions to the RPKI data in the form of local filters and additions. The mechanisms described in this document provide a simple way to enable INR holders to establish a local, customized view of the RPKI, overriding global RPKI repository data as needed.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 8416 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 8415 Dynamic Host Configuration Protocol for IPv6
- RFC 8417 Security Event Token
- RFC 8414 OAuth 2.0 Authorization Server Metadata
- RFC 8418 Use of the Elliptic Curve Diffie-Hellman Key Agreement Algorithm with X25519 and X448 in the Cryptographic Message Syntax
- RFC 8413 Framework for Scheduled Use of Resources
- RFC 8419 Use of Edwards-Curve Digital Signature Algorithm Signatures in the Cryptographic Message Syntax
- RFC 8412 Software Inventory Message and Attributes for PA-TNC
- RFC 8420 Using the Edwards-Curve Digital Signature Algorithm in the Internet Key Exchange Protocol Version 2