-01 published
This commit is contained in:
parent
5e4fc9d424
commit
d2f3603fd0
1 changed files with 29 additions and 22 deletions
|
|
@ -1,6 +1,6 @@
|
||||||
<?xml version="1.0" encoding="US-ASCII"?>
|
<?xml version="1.0" encoding="US-ASCII"?>
|
||||||
|
|
||||||
<!DOCTYPE rfc SYSTEM "rfc2629.dtd">
|
<!-- <!DOCTYPE rfc SYSTEM "rfc2629.dtd"> -->
|
||||||
|
|
||||||
<?rfc sortrefs="yes"?>
|
<?rfc sortrefs="yes"?>
|
||||||
<?rfc subcompact="no"?>
|
<?rfc subcompact="no"?>
|
||||||
|
|
@ -11,7 +11,8 @@
|
||||||
<?rfc subcompact="no"?>
|
<?rfc subcompact="no"?>
|
||||||
|
|
||||||
<rfc category="std" consensus="true"
|
<rfc category="std" consensus="true"
|
||||||
docName="draft-ietf-sidrops-rov-no-rr-00"
|
submissionType="IETF"
|
||||||
|
docName="draft-ietf-sidrops-rov-no-rr-01"
|
||||||
ipr="trust200902" updates="8481">
|
ipr="trust200902" updates="8481">
|
||||||
|
|
||||||
<front>
|
<front>
|
||||||
|
|
@ -176,18 +177,23 @@
|
||||||
</t>
|
</t>
|
||||||
|
|
||||||
<t>
|
<t>
|
||||||
When RPKI data cause one or more paths to be dropped, withdrawn,
|
When RPKI data cause one or more paths to be dropped due to ROV,
|
||||||
or merely not chosen as best path due to RPKI-based policy (ROV,
|
those paths MUST NOT be evaluated for best path, but MUST be saved
|
||||||
ASPA, etc.), those paths MUST be saved and marked (to not be used
|
(either separately or marked) so they may be reevaluated with
|
||||||
for best path evaluation etc.) so that later RPKI data can
|
respect to new RPKI data.
|
||||||
reevaluate those paths.
|
</t>
|
||||||
|
|
||||||
|
<t>
|
||||||
|
If new RPKI data arrive which invalidate the best path, and the
|
||||||
|
router did not keep all alternatives, then it MUST issue a route
|
||||||
|
refresh so those alternatives may be evaluated for best path.
|
||||||
</t>
|
</t>
|
||||||
|
|
||||||
<t>
|
<t>
|
||||||
Policy which may drop paths due to RPKI-based checks such as ROV,
|
Policy which may drop paths due to RPKI-based checks such as ROV,
|
||||||
ASPA, BGPsec, etc. MUST be run, and the dropped paths saved per
|
ASPA, BGPsec <xref target="RFC8205"/>, etc. MUST be run, and the
|
||||||
the above paragraph, before non-RPKI policies are run, as the
|
dropped paths saved per the above paragraph, before non-RPKI
|
||||||
latter may change path attributes.
|
policies are run, as the latter may change path attributes.
|
||||||
</t>
|
</t>
|
||||||
|
|
||||||
<t>
|
<t>
|
||||||
|
|
@ -207,17 +213,17 @@
|
||||||
|
|
||||||
<section anchor="ops" title="Operational Recommendations">
|
<section anchor="ops" title="Operational Recommendations">
|
||||||
|
|
||||||
<t>
|
|
||||||
Routers MUST either keep the full Adj-RIB-In or implement the
|
|
||||||
specification in <xref target="rib"/>.
|
|
||||||
</t>
|
|
||||||
|
|
||||||
<t>
|
<t>
|
||||||
Operators deploying ROV and/or other RPKI based policies SHOULD
|
Operators deploying ROV and/or other RPKI based policies SHOULD
|
||||||
ensure that the router implementation is not causing unnecessary
|
ensure that the router implementation is not causing unnecessary
|
||||||
Route Refresh requests to neighbors.
|
Route Refresh requests to neighbors.
|
||||||
</t>
|
</t>
|
||||||
|
|
||||||
|
<t>
|
||||||
|
Routers MUST either keep the full Adj-RIB-In or implement the
|
||||||
|
specification in <xref target="rib"/>.
|
||||||
|
</t>
|
||||||
|
|
||||||
<t>
|
<t>
|
||||||
If the router does not implement these recommendations, the
|
If the router does not implement these recommendations, the
|
||||||
operator SHOULD enable the vendor's knob to keep the full
|
operator SHOULD enable the vendor's knob to keep the full
|
||||||
|
|
@ -227,10 +233,10 @@
|
||||||
</t>
|
</t>
|
||||||
|
|
||||||
<t>
|
<t>
|
||||||
If the router has insufficient resources to support this, it
|
If the router has insufficient resources to support either of the
|
||||||
MUST not be used for Route Origin Validation. I.e. the knob in
|
two proposed options, it MUST not be used for Route Origin
|
||||||
<xref target="rib"/> should only be used in very well known and
|
Validation. I.e. the knob in <xref target="rib"/> should only be
|
||||||
controlled circumstances.
|
used in very well known and controlled circumstances.
|
||||||
</t>
|
</t>
|
||||||
|
|
||||||
<t>
|
<t>
|
||||||
|
|
@ -279,9 +285,9 @@
|
||||||
<section anchor="acks" title="Acknowledgements">
|
<section anchor="acks" title="Acknowledgements">
|
||||||
|
|
||||||
<t>
|
<t>
|
||||||
The authors wish to thank Ben Maddison, John Heasley, Nick
|
The authors wish to thank Ben Maddison, John Heasley, John
|
||||||
Hilliard, Ties de Kock. John Scudder, Matthias Waehlisch, and Saku
|
Scudder, Matthias Waehlisch, Nick Hilliard, Saku Ytti, and Ties de
|
||||||
Ytti.
|
Kock.
|
||||||
</t>
|
</t>
|
||||||
|
|
||||||
</section>
|
</section>
|
||||||
|
|
@ -303,6 +309,7 @@
|
||||||
<?rfc include="reference.RFC.6482.xml"?>
|
<?rfc include="reference.RFC.6482.xml"?>
|
||||||
<?rfc include="reference.RFC.6811.xml"?>
|
<?rfc include="reference.RFC.6811.xml"?>
|
||||||
<?rfc include="reference.RFC.7947.xml"?>
|
<?rfc include="reference.RFC.7947.xml"?>
|
||||||
|
<?rfc include="reference.RFC.8205.xml"?>
|
||||||
<?rfc include="reference.RFC.8481.xml"?>
|
<?rfc include="reference.RFC.8481.xml"?>
|
||||||
<?rfc include="reference.I-D.ietf-sidrops-8210bis.xml"?>
|
<?rfc include="reference.I-D.ietf-sidrops-8210bis.xml"?>
|
||||||
<?rfc include="reference.I-D.ietf-sidrops-aspa-verification.xml"?>
|
<?rfc include="reference.I-D.ietf-sidrops-aspa-verification.xml"?>
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue