[106872] in North American Network Operators' Group
Re: Public shaming list for ISPs announcing other ISPs IP space by
daemon@ATHENA.MIT.EDU (Sandy Murphy)
Fri Aug 15 09:29:12 2008
To: danny@tcb.net, fergdawg@netzero.net
In-Reply-To: <E6CF3C3D-2D97-4A43-A8D7-EC086E6F70FC@tcb.net>
Date: Fri, 15 Aug 2008 09:27:42 -0400 (EDT)
From: sandy@tislabs.com (Sandy Murphy)
Cc: nanog@nanog.org
Errors-To: nanog-bounces@nanog.org
On Thu, 14 Aug 2008 23:44:50 -0600, Danny McPherson wrote:
>> Okay, I admit I haven't paid the closest attention to RPKI, but I
>> have to ask: Is this a two-way shared-key issue, or (worse) a case
>> where we need to rely on a central entity to be a key clearinghouse?
<snip>
>In short, the latter, which is precisely DRC's point.
Presuming that you meant to say that the RPKI is a centralized system,
I'd quibble that it is certainly a rooted system, but not centralized.
Like: DNS is rooted, but I'd not call it centralized.
The RPKI is hierarchical and distributed all over everywhere.
--Sandy