Re: [sidr] using RPKI keys to sign RPSL data

2013-08-28 Thread Geoff Huston
Could we not use the work done in RFC2725? I suspect that the delta is remarkably small, and a quick scan right now conforms that impression for me (that the delta is not great). Geoff On 28/08/2013, at 1:52 PM, Stephen Kent wrote: > I am sympathetic to the concerns that Randy has cited. I

Re: [sidr] using RPKI keys to sign RPSL data

2013-08-28 Thread Murphy, Sandra
Speaking as a regular ol' member >I am sympathetic to the concerns that Randy has cited. In particular, I >am uncomfortable >with the ability of a signer to enumerate an unconstrained list of >object types that >are signed. We need to consider the semantic of each object that can be >covered by

Re: [sidr] key management drafts

2013-08-28 Thread Stephen Kent
Sandy, I support draft-ietf-sidr-rtr-keying, but it is clearly not ready. It contains quite a few notes from Sean, embedded in the text, that need to be resolved. It also needs to be updated to cite EST as an RFC. I'll send comments to Sean directly. I am not supportive of draft-ietf-sidr-bg