> Beginning to wonder why, with work like DANE and certificates in DNS > in the IETF, we need an RPKI and new hierarchical shared dependency > system at all and can't just place ROAs in in-addr.arpa zone files > that are DNSSEC-enabled.
let's wind the wayback machine to 1998 http://tools.ietf.org/html/draft-bates-bgp4-nlri-orig-verif-00 randy