%% You should probably cite rfc9691 instead of this I-D. @techreport{ietf-sidrops-signed-tal-16, number = {draft-ietf-sidrops-signed-tal-16}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-sidrops-signed-tal/16/}, author = {Carlos Martinez-Cagnazzo and George Michaelson and Tom Harrison and Tim Bruijnzeels and Rob Austein}, title = {{RPKI Signed Object for Trust Anchor Key}}, pagetotal = 24, year = 2024, month = may, day = 15, abstract = {A Trust Anchor Locator (TAL) is used by Relying Parties (RPs) in the Resource Public Key Infrastructure (RPKI) to locate and validate a Trust Anchor (TA) Certification Authority (CA) certificate used in RPKI validation. This document defines an RPKI signed object for a Trust Anchor Key (TAK), that can be used by a TA to signal the location(s) of the accompanying CA certificate for the current public key to RPs, as well as the successor public key and the location(s) of its CA certificate. This object helps to support planned key rollovers without impacting RPKI validation.}, }