>> iana issues a boa for 0/0 > This appears to be a very fanciful notion to me.
it was iana's first intent, and, from an ops pov, dead obvious. see rfc 3330. >> i announce 0/0 to a bunch of my downstreams >> in case any of them do validation, i have to issue a roa for 0/0 >> where do i publish it? > wherever you want - assuming that some relying party has chosen to use > the certificate you issue as a TA. i just don't think i want to be authoritative for 0/0. and i do not think we want a hundred or two roas for 0/0 in the public rpki. boas are not a path that is prudent to follow. randy _______________________________________________ sidr mailing list [email protected] https://www.ietf.org/mailman/listinfo/sidr
