Sriram,

>A newer ROA competes with an older ROA if the newer ROA points to a

   different ASN, contains the same or a more specific prefix, and is

   issued by a different CA.

For DDoS mitigation service, (as an example) a /16 prefix owner may create (well in advance)

two new ROAs for more specific /17s (covered by the /16 prefix).

The new ROAs would have a different ASN – the ASN of the DDoS mitigation service provider.

The CA remains the same.

(The prefix owner already has a /16 ROA with its own ASN for its normal route announcement.)

The idea is that in the event of a DDoS attack, the mitigation service provider will be able to

announce the more specifics immediately and attract the attack traffic away from the victim.

Would you consider these two new ROAs as competing ROAs? Or, is there a different name for them?

because the CA is the same for both ROAs, they are not competing, based on the revised definition that you cited above.

Steve
_______________________________________________
sidr mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/sidr

Reply via email to