Skip to main content

RPKI Validation Reconsidered
draft-ietf-sidr-rpki-validation-reconsidered-00

The information below is for an old version of the document.
Document Type
This is an older version of an Internet-Draft that was ultimately published as RFC 8360.
Expired & archived
Authors Geoff Huston , George G. Michaelson , Carlos M. Martínez , Tim Bruijnzeels , Andy Newton , Alain Aina
Last updated 2015-01-02 (Latest revision 2014-07-01)
RFC stream Internet Engineering Task Force (IETF)
Formats
Reviews
Additional resources Mailing list discussion
Stream WG state WG Document
Document shepherd (None)
IESG IESG state Expired
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This document reviews the certificate validation procedure specified in RFC6487 and highlights aspects of potentially acute operational fragility in the management of certificates in the RPKI in response to the movement of resources across registries, and the associated actions of Certification Authorities to maintain continuity of validation of certification of resources during this movement.

Authors

Geoff Huston
George G. Michaelson
Carlos M. Martínez
Tim Bruijnzeels
Andy Newton
Alain Aina

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)