nanog mailing list archives

Re: Arin taking down raking


From: Randy Bush <randy () psg com>
Date: Fri, 04 Jun 2021 12:45:03 -0700

  1) unreachable publication point / CA == 'ok, see you in 30 mins on my
next cycle through the world' (no real changes)

yup.  much ado about nothing

  b) revoking some portion of their claimed resources in various forms of
CA == 'ideally a bunch of routes suddenly go unknown' == 'ok'
 iii) making a bunch of validatable changes to ROA/certs/content == 'worse
possible outcome, likely to make a bunch of routes invalid'

if the CA's pub point is available and the data have been modified,
which includes removal, then all sorts of wild things can happen.

but there is no need for arin to formally test that last as each of
the RIRs has untentionally done so at least once; sometimes for over
a day.

randy


Current thread: