SIDROPS Tuesday 16 March 1500
NRO RPKI Program for 2025 - Sofia Silva Berenguer
[Presentation:
https://datatracker.ietf.org/meeting/122/materials/slides-122-sidrops-nro-rpki-program-update-sofia-00]
no q's
2. ASPA-based AS Path verification examples - Sriram Kotikalapudi
[Presentation:
https://datatracker.ietf.org/meeting/122/materials/slides-122-sidrops-aspa-based-as-path-verification-examples-and-unit-tests-00]
Reported 4 implementations of the aspa-verification draft
no q's
RPKI Repository Problem Statement and Requirements - Yingying Su
[Presentation:
https://datatracker.ietf.org/meeting/122/materials/slides-122-sidrops-rpki-repository-problem-statement-and-requirements-00]
Discuss: Clarifying Question about the intent of the proposal.
Discussion noted that in the RPKI the subordinate subject determines
the publication point for these subordinate products, not the CA. It
was noted that the intent of this proposal was to faciliate some
level of mutual cooperation between PP repository operators.
YANG Data Model for RPKI to Router Protocol - Jishnu Roy
[Presentation:
https://datatracker.ietf.org/meeting/122/materials/slides-122-sidrops-yang-data-model-for-rpki-to-router-protocol-00]
Reported on updates to draft.
call for adoption planned post-IETF 122
comment of whether the Yang model should be AFI-distinguished or not
ASPA-based AS_PATH Verification for BGP Export - Jia Zhan
[Presentation:
https://datatracker.ietf.org/meeting/122/materials/slides-122-sidrops-aspa-based-as-path-verification-for-bgp-export-slides-122-sidrops-aspa-egress-01-00]
Propose ASPA verification on egress (as well as ingress)
Discuss: Does this practice need a RFC? The author thinks so! There
is also the question of the limited ability of the internals of an
AS to detect more than simple route leaks. The utility of this
proposal was not clear to a number of respondants.
RPKI Terminology - Tim Bruijnzeels
[Presentation:
https://datatracker.ietf.org/meeting/122/materials/slides-122-sidrops-07-rpki-terminology-00]
propose call for adoption "soon"
RDAP Extension for RPKI Registration Data - Andy Newton
[Presentation:
https://datatracker.ietf.org/meeting/122/materials/slides-122-sidrops-an-rdap-extension-for-rpki-registration-data-00]
Discuss: suggest to include the message digest of the object in the
RDAP report. Question about RIR delineation and the scope of the
RDAP tool. Initial focus on registration data. Discussion on the
scope of RDAP reports on RPKI data. Do RDAP servers pull in RPKI
data? Or should delegated points run their own RDAP server?
Source Address Validation Using Source Address Authorizations (SOAs)
Discussion about the lack of clarity and apparent operational
complexity in this proposal.
Using Forwarding Commitments (FCs) to Verify BGP AS_PATH - Yangfei
Guo
[Presentation:
https://datatracker.ietf.org/meeting/122/materials/slides-122-sidrops-using-forwarding-commitments-fcs-to-verify-bgp-as-path-00]
Tobias: This feels like this will be a massive amount of data in
the RPKI
Sriram: These are attesting in the upward direction what my
customers and prvides are? Is this only in one direction, or both?
Jeff Hass: Raises RPSL Autnum Policy Object as relevant to this
proposal.
Alexander: Partial Deployment?
RPKI Relying Party with Distributed Systems of Synchronization Nodes
Discuss: Only random task assignment is suitable for this
environment