Re: Cloudflare's rpki.json file is missing IPv4 ROAs longer than /24

2024-09-18 Thread Alex Band
> On 18 Sep 2024, at 15:48, Job Snijders via NANOG wrote: > > On Wed, Sep 18, 2024 at 07:33:37AM -0400, Steven Wallace wrote: >> Internet2 uses Cloudflare’s https://rpki.cloudflare.com/rpki.json as >> an alternate source for RPKI-ROA information. We recently discovered >> that this file omits I

Re: Cloudflare's rpki.json file is missing IPv4 ROAs longer than /24

2024-09-18 Thread Job Snijders via NANOG
On Wed, Sep 18, 2024 at 07:33:37AM -0400, Steven Wallace wrote: > Internet2 uses Cloudflare’s https://rpki.cloudflare.com/rpki.json as > an alternate source for RPKI-ROA information. We recently discovered > that this file omits IPv4 ROAs longer than /24. It would be helpful if > it included all RO

Re: Cloudflare's rpki.json file is missing IPv4 ROAs longer than /24

2024-09-18 Thread Bryton Herdes via NANOG
Looking into this, will message you > On Sep 18, 2024, at 8:21 AM, Steven Wallace wrote: > > Greeting, > > Internet2 uses Cloudflare’s https://rpki.cloudflare.com/rpki.json as an > alternate source for RPKI-ROA information. We recently discovered that this > file omits IPv4 ROAs longer than

Re: Cloudflare's rpki.json file is missing IPv4 ROAs longer than /24

2024-09-18 Thread Ca By
On Wed, Sep 18, 2024 at 6:21 AM Steven Wallace wrote: > Greeting, > > Internet2 uses Cloudflare’s https://rpki.cloudflare.com/rpki.json as an > alternate source for RPKI-ROA information. We recently discovered that this > file omits IPv4 ROAs longer than /24. It would be helpful if it included >

Cloudflare's rpki.json file is missing IPv4 ROAs longer than /24

2024-09-18 Thread Steven Wallace
Greeting, Internet2 uses Cloudflare’s https://rpki.cloudflare.com/rpki.json as an alternate source for RPKI-ROA information. We recently discovered that this file omits IPv4 ROAs longer than /24. It would be helpful if it included all ROAs. Interestingly, Cloudflare’s web-based validator does

Re: RFC 9234 route leak prevention in the wild!

2024-09-18 Thread Douglas Fischer
Em qui., 5 de set. de 2024 às 14:35, Jon Lewis escreveu: > > This may well be intentional > In addition to their own intention, they should ask if the other side agrees with that. I don't remember which research paper compiled this. But the top 5 ASNs targeted by the no_export_to BGP communities