Re: [sidr] Questions about draft-huston-rpki-validation-01

2014-05-20 Thread Geoff Huston
On 20 May 2014, at 4:38 am, Christopher Morrow morrowc.li...@gmail.com wrote: On Thu, Apr 17, 2014 at 11:35 AM, Tim Bruijnzeels t...@ripe.net wrote: Certificate 1: {10.0.0.0/12, AS64501, AS64505, AS64509} (TA certificate) Certificate 2: {10.0.0.0/22, AS64501, AS64505, AS64511} Certificate

Re: [sidr] I-D Action: draft-ietf-sidr-rtr-keying-05.txt

2014-05-20 Thread Sean Turner
On May 13, 2014, at 12:23, Randy Bush ra...@psg.com wrote: Though I’m not sure that there is a huge distinction between disabling BGPSec and taking the router offline since disabling BGPSec would trigger neighbor session resets for capability renegotiation unless we’ve specified otherwise in

Re: [sidr] I-D Action: draft-ietf-sidr-rtr-keying-05.txt

2014-05-20 Thread Randy Bush
Though I’m not sure that there is a huge distinction between disabling BGPSec and taking the router offline since disabling BGPSec would trigger neighbor session resets for capability renegotiation unless we’ve specified otherwise in the protocol docs (doesn’t look like it in my quick skim),

Re: [sidr] WGLC: draft-ietf-sidr-bgpsec-reqs

2014-05-20 Thread Randy Bush
funny. datatracker does not show wglc for this document randy, trying to time that small fix for roque ___ sidr mailing list sidr@ietf.org https://www.ietf.org/mailman/listinfo/sidr

[sidr] I-D Action: draft-ietf-sidr-rtr-keying-06.txt

2014-05-20 Thread internet-drafts
A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the Secure Inter-Domain Routing Working Group of the IETF. Title : Router Keying for BGPsec Authors : Sean Turner Keyur Patel

Re: [sidr] I-D Action: draft-ietf-sidr-rtr-keying-06.txt

2014-05-20 Thread Sean Turner
SIDR Chairs, This version address all known outstanding comments. At this point, I’d like to request a WGLC but realize that this draft probably needs to progress with the other BGPsec drafts. spt On May 20, 2014, at 10:05, internet-dra...@ietf.org wrote: A New Internet-Draft is

Re: [sidr] WGLC: draft-ietf-sidr-bgpsec-reqs

2014-05-20 Thread Christopher Morrow
i didn't update the tracker... (i hadn't ever in the past). Did we circle down on an answer for the leak/persay language that everyone's happy with? If so I'd like to push out a pub request today. On Tue, May 20, 2014 at 9:52 AM, Randy Bush ra...@psg.com wrote: funny. datatracker does not show

Re: [sidr] WGLC: draft-ietf-sidr-bgpsec-reqs

2014-05-20 Thread Randy Bush
i didn't update the tracker... (i hadn't ever in the past). uh, that is between you and the datawhacker Did we circle down on an answer for the leak/persay language that everyone's happy with? If so I'd like to push out a pub request today. as far as i am aware, there is no issue with leak

Re: [sidr] WGLC: draft-ietf-sidr-bgpsec-reqs

2014-05-20 Thread Christopher Morrow
On Tue, May 20, 2014 at 10:38 AM, Randy Bush ra...@psg.com wrote: i didn't update the tracker... (i hadn't ever in the past). uh, that is between you and the datawhacker Did we circle down on an answer for the leak/persay language that everyone's happy with? If so I'd like to push out a pub

Re: [sidr] comments on draft-ietf-sidr-rfc6485bis

2014-05-20 Thread Sandra Murphy
Speaking as regular ol' member. On Apr 21, 2014, at 11:55 PM, Geoff Huston g...@apnic.net wrote: == Except that the signed object signature algorithm OID will be rsaEncryption which I think is still PKCS#1v1.5, but is not in section 5 of rfc4055. I am unsure what you

Re: [sidr] Questions about draft-huston-rpki-validation-01

2014-05-20 Thread Christopher Morrow
On Tue, May 20, 2014 at 8:10 AM, Geoff Huston gih...@gmail.com wrote: On 20 May 2014, at 4:38 am, Christopher Morrow morrowc.li...@gmail.com wrote: It's unclear to me what would happen if you split this into a prefix/asn per cert and just carried more certs in your purse. Why would I not