Hi,

If I am not mistaken there was a Randy's comment today at the mic indicating that an AS may consider a path origin validation as INVALID as compared to the peering AS just because the "RPKI may not be synchronized"

Is this at all possible ? Doesn't RPKI already have been enhanced sufficiently to avoid mis-detections even in the AS migration cases ?

Otherwise if this is a valid comment and if due to issues with RPKI sync ASes will even transiently be subject to wrong classifications of legitimate incoming paths I think there is a much bigger issue to worry about.

Many thx,
R.


_______________________________________________
sidr mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/sidr

Reply via email to