On 29 Sep 2021, at 17:27, George Tasioulis wrote:
\- What do you think about their suggestion to add a second ROA with maxLength value of /32 – what are the implication?
anyone attacker that fakes an announcement of your ASN and $attacked_prefix, gets automatic, cryptographic origin verification, for free!
so, avoid. -n.
