RFC 8893: Resource Public Key Infrastructure (RPKI) Origin Validation for BGP Export
RFC 8893Title: Resource Public Key Infrastructure (RPKI) Origin Validation for BGP ExportAuthor: R. Bush,R. Volk,J. HeitzStatus: Standards TrackStream: IETFDate: September 2020Updates: RFC 6811URL: https://www.rfc-editor.org/info/rfc8893DOI: 10.17487/RFC8893
A BGP speaker may perform Resource Public Key Infrastructure (RPKI) origin validation not only on routes received from BGP neighbors and routes that are redistributed from other routing protocols, but also on routes it sends to BGP neighbors. For egress policy, it is important that the classification use the ‘effective origin AS’ of the processed route, which may specifically be altered by the commonly available knobs, such as removing private ASes, confederation handling, and other modifications of the origin AS.