RPKI BGP

Secure BGP

7

, ( ISP) , , , -. BGP (Border Gateway Protocol, ) , .

, . BGP BGP. , .

RPKI, BGP.


BGP?

BGP , . . .

IP-. AS (Autonomous System - ) , . AS (Number), BGP , .

ASN (Autonomous System Number) , . , AS 1.0.0.0/8, .


BGP

BGP ISP. : , - , . , , , .

, , , . :

  • AS , 1.0.0.0/8
  • AS 1.0.0.0/8
  • AS 1.0.0.0/8

BGP . AS.

AS . , . BGP .

, ASN . BGP, .

:

  • , 1.0.0.0/8
  • AS 1.0.0.0/8
  • AS 1.2.3.0/24

1.2.3.0/24 , 1.2.3.0 .


RPKI?

RPKI (Resource Public Key Infrastructure) - BGP, , . BGP . , .

RPKI PKI - RFC6480. .


RPKI ?

BGP . - BGP, . .

. . BGP . :

  • Amazon - 53 BGP DNS Amazon .
  • Google - BGP , .
  • Mastercard, Visa - 36 .
  • YouTube - YouTube .

RPKI?

BGP :

.

RPKI . IPv4 IPv6. RPKI . HTTP -.

, RPKI , , . RPKI BGP, .

.


RPKI?

RIR (Regional Internet Registry) RPKI. IANA (Internet Assigned Numbers Authority) ICANN (Internet Corporation for Assigned Names and Numbers), IPv4 IPv6.

IANA IP RIR. RIR IP , . . RIR :

 RIR

ROA

ROA (Route Origin Authorization - ). ROA :

  • .
  • AS, .
ROA

, AS65005 1.0.0.0/8 1.0.0.0/12, ROA AS65005, , .

ROA RIR.


RPKI?

"P" RPKI , ROA (public) . , ASN.

ROA . - , ROA :

  • ROA .
  • .

ROA, . . BGP :

  • - ROA . AS .
  • - ROA. AS .
  • - ROA .
RPKI

, .

RIR - . AS. , RPKI, .

( ). ROA. RPKI , - .

. :

  • RPKI - , RPKI (IRR) .
  • - , ASN.
  • BGP BGP - BGP (, ) , RPKI.

RPKI BGP . RPKI.


50% Merion Academy