A Profile for RPKI Signed Checklists
RFC 9323, “A Profile for RPKI Signed Checklists”, is a Proposed Standard document published in November 2022 by J. Snijders, T. Harrison, B. Maddison. The canonical text is published by the RFC Editor.
Abstract
This document defines a Cryptographic Message Syntax (CMS) protected content type for use with the Resource Public Key Infrastructure (RPKI) to carry a general-purpose listing of checksums (a 'checklist'). The objective is to allow for the creation of an attestation, termed an "RPKI Signed Checklist (RSC)", which contains one or more checksums of arbitrary digital objects (files) that are signed with a specific set of Internet Number Resources. When validated, an RSC confirms that the respective Internet resource holder produced the RSC.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 9323 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 9322 In Situ Operations, Administration, and Maintenance Loopback and Active Flags
- RFC 9324 Policy Based on the Resource Public Key Infrastructure without Route Refresh
- RFC 9321 Signature Validation Token
- RFC 9325 Recommendations for Secure Use of Transport Layer Security and Datagram Transport Layer Security
- RFC 9320 Deterministic Networking Bounded Latency
- RFC 9326 In Situ Operations, Administration, and Maintenance Direct Exporting
- RFC 9319 The Use of maxLength in the Resource Public Key Infrastructure
- RFC 9327 Control Messages Protocol for Use with Network Time Protocol Version 4