RFC 8893

Resource Public Key Infrastructure (RPKI) Origin Validation for BGP Export, September 2020

File formats:

icon for HTML icon for text file icon for v3pdf icon for XML
Status:
PROPOSED STANDARD
Updates:
RFC 6811
Authors:
R. Bush
R. Volk
J. Heitz
Stream:
IETF
Source:
sidrops (ops)

Cite this RFC: TXT  |  XML

DOI:  10.17487/RFC8893

Discuss this RFC: Send questions or comments to sidrops@ietf.org

Other actions: Submit Errata  |  Find IPR Disclosures from the IETF


Abstract

A BGP speaker may perform Resource Public Key Infrastructure (RPKI) origin validation not only on routes received from BGP neighbors and routes that are redistributed from other routing protocols, but also on routes it sends to BGP neighbors. For egress policy, it is important that the classification use the 'effective origin AS' of the processed route, which may specifically be altered by the commonly available knobs, such as removing private ASes, confederation handling, and other modifications of the origin AS. This document updates RFC 6811.


For the definition of Status, see RFC 2026.

For the definition of Stream, see RFC 4844.


Download PDF Reader