diff --git a/draft-ymbk-sidrops-rpki-has-no-identity.xml b/draft-ymbk-sidrops-rpki-has-no-identity.xml index 056f118..662c88a 100644 --- a/draft-ymbk-sidrops-rpki-has-no-identity.xml +++ b/draft-ymbk-sidrops-rpki-has-no-identity.xml @@ -104,7 +104,7 @@ The RPKI was designed and specified to sign certificates for use within the RPKI itself and to generate Route Origin Authorizations - (ROAs), , for use in routing. It's design + (ROAs), , for use in routing. Its design intentionally precluded use for attesting to real world identity as, among other issues, it would expose the Certification Authority (CA) to liability. @@ -148,7 +148,7 @@ and must go to great lengths to extract the supposedly relevant keys from the CA. - For some particular INR, say Bill's Bait and Sushi's Autonompus + For some particular INR, say Bill's Bait and Sushi's Autonomous System (AS) number, someone out on the net probably has the credentials to the CA account in which BB&S's INRs are registered. That could be the owner of BB&S, Roberto's Taco