The RPKI Repository Delta Protocol (RRDP), July 2017
- File formats:
- PROPOSED STANDARD
- T. Bruijnzeels
- sidr (rtg)
Discuss this RFC: Send questions or comments to the mailing list [email protected]
In the Resource Public Key Infrastructure (RPKI), Certificate Authorities (CAs) publish certificates, including end-entity certificates, Certificate Revocation Lists (CRLs), and RPKI signed objects to repositories. Relying Parties retrieve the published information from those repositories. This document specifies a new RPKI Repository Delta Protocol (RRDP) for this purpose. RRDP was specifically designed for scaling. It relies on an Update Notification File which lists the current Snapshot and Delta Files that can be retrieved using HTTPS (HTTP over Transport Layer Security (TLS)), and it enables the use of Content Distribution Networks (CDNs) or other caching infrastructures for the retrieval of these files.
For the definition of Status, see RFC 2026.
For the definition of Stream, see RFC 8729.