nanog mailing list archives

Re: Understanding impact of RPKI and ROA on existing advertisements


From: Douglas Fischer <fischerdouglas () gmail com>
Date: Tue, 1 Nov 2022 12:56:46 -0300

If the route can exist on a FIB, can exist a ROA to that.

So, there is no reason to no create the ROAs.

Em ter., 1 de nov. de 2022 às 11:12, Samuel Jackson <bobin.public () gmail com>
escreveu:

Hello,
I am new to RPKI/ROA and still learning about RPKI. From all my reading on
ARIN's documents I am not able to answer some of my questions.
We have a public ARIN block and advertise smaller subnets from that to our
ISP's. We do not have any RPKI configs.
We need to setup ROA's to take another subnet from the ARIN block to AWS.
Reading ARIN's docs, it seems I need to get setup on their Hosted RPKI
service after which I can configure ROA's for the networks I am taking to
AWS.

My question is, will this impact my existing advertisements to my ISP's.
The current advertisements do not have ROA's.
Will having RPKI for my ARIN network, without ROA's for the existing
advertisements impact me?

Thanks for your help.

Ref:
https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/ec2-byoip.html
https://www.arin.net/resources/manage/rpki/roa_request/
https://www.arin.net/resources/manage/rpki/hosted/



-- 
Douglas Fernando Fischer
Engº de Controle e Automação

Current thread: