Re: [sidr] IPv4 examples for draft-ietf-sidr-bgpsec-pki-algs

Randy Bush <randy@psg.com> Thu, 12 January 2017 13:47 UTC

Return-Path: <randy@psg.com>
X-Original-To: sidr@ietfa.amsl.com
Delivered-To: sidr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B6E6F12963F for <sidr@ietfa.amsl.com>; Thu, 12 Jan 2017 05:47:26 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.1
X-Spam-Level:
X-Spam-Status: No, score=-10.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, RP_MATCHES_RCVD=-3.199, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kfE2cW-c8QOq for <sidr@ietfa.amsl.com>; Thu, 12 Jan 2017 05:47:25 -0800 (PST)
Received: from ran.psg.com (ran.psg.com [IPv6:2001:418:8006::18]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A9435129633 for <sidr@ietf.org>; Thu, 12 Jan 2017 05:47:25 -0800 (PST)
Received: from localhost ([127.0.0.1] helo=ryuu.psg.com) by ran.psg.com with esmtp (Exim 4.86_2) (envelope-from <randy@psg.com>) id 1cRfis-0005SK-Rr; Thu, 12 Jan 2017 13:47:23 +0000
Date: Thu, 12 Jan 2017 22:47:20 +0900
Message-ID: <m27f60ie53.wl-randy@psg.com>
From: Randy Bush <randy@psg.com>
To: Oliver Borchert <oliver.borchert@nist.gov>
In-Reply-To: <2459DA8D-593F-4B75-9C74-619DDBA907E4@nist.gov>
References: <2459DA8D-593F-4B75-9C74-619DDBA907E4@nist.gov>
User-Agent: Wanderlust/2.15.9 (Almost Unreal) Emacs/24.5 Mule/6.0 (HANACHIRUSATO)
MIME-Version: 1.0 (generated by SEMI-EPG 1.14.7 - "Harue")
Content-Type: text/plain; charset="US-ASCII"
Archived-At: <https://mailarchive.ietf.org/arch/msg/sidr/1-cwJLtHXLfWYEyOzTqVPgbFvpY>
Cc: sidr list <sidr@ietf.org>
Subject: Re: [sidr] IPv4 examples for draft-ietf-sidr-bgpsec-pki-algs
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidr/>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 12 Jan 2017 13:47:27 -0000

>         Validity
>             Not Before: Jan 10 19:55:44 2017 GMT
>             Not After : Oct 25 19:55:44 2290 GMT

ok, i blew it and gave no guidance in bgpsec-ops.  i guess this doc
would be as good a place as any.

of course that leaves open what lifetime to recommend.  we're not gonna
do oscp, but rather withdraw from the rpki.  so to keep from making too
much bgp noise, let me toss out O(year) to start the discussion.

i am still staring at the bgpsec message

randy