[Sidrops] Re: Call for WG Adoption of draft-snij-sidrops-constraining-rpki-trust-anchors

Carlos Martinez-Cagnazzo <carlos@xt6labs.io> Tue, 27 January 2026 15:07 UTC

Return-Path: <carlos@cgm-consulting.net>
X-Original-To: sidrops@mail2.ietf.org
Delivered-To: sidrops@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 4BDCEADC0344 for <sidrops@mail2.ietf.org>; Tue, 27 Jan 2026 07:07:53 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -1.88
X-Spam-Level:
X-Spam-Status: No, score=-1.88 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.017, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=cgm-consulting-net.20230601.gappssmtp.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id C8DVCBYDpdEq for <sidrops@mail2.ietf.org>; Tue, 27 Jan 2026 07:07:50 -0800 (PST)
Received: from mail-dy1-x1329.google.com (mail-dy1-x1329.google.com [IPv6:2607:f8b0:4864:20::1329]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 211A0ADC0323 for <sidrops@ietf.org>; Tue, 27 Jan 2026 07:07:50 -0800 (PST)
Received: by mail-dy1-x1329.google.com with SMTP id 5a478bee46e88-2ae2eb49b4bso13153647eec.0 for <sidrops@ietf.org>; Tue, 27 Jan 2026 07:07:49 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cgm-consulting-net.20230601.gappssmtp.com; s=20230601; t=1769526469; x=1770131269; darn=ietf.org; h=in-reply-to:from:references:to:content-language:subject:reply-to :user-agent:mime-version:date:message-id:from:to:cc:subject:date :message-id:reply-to; bh=EO83SZvPg6cqWwyr7Ad3WDO1cm42tL1yekGWSDRHi6w=; b=wQ+/fpguHcFBhrm5ETS149UxSYVm/ZdgTp+Pxlc0WIz3rWS/KEf2u33xQncTPBxM0o uLtND42pCPsXL9lWJHXFUQAQpRU4oRVhj0yfT/TjAhvBmxxCfVdtbfHkAvn850l0HTIR apBZdOFLR/0Jxzsx7Otq/IBi2tCmBk18XfdIf2LPdJY/qT0ijGpAILuGqgOTTby6m0rj c60/vPUi7OunDcUma8D3r002EX3weQbL0bUX/7PW+/XJL4UZP7eY4k14y+2PYe9bQbl9 VGWYCtxw2CPrYwjsgy0Lti6aZM7XN90ojq9nP8O+wW8JbQ8nuY0YPdnU/+vquF+7roZD 94bw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1769526469; x=1770131269; h=in-reply-to:from:references:to:content-language:subject:reply-to :user-agent:mime-version:date:message-id:x-gm-gg:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=EO83SZvPg6cqWwyr7Ad3WDO1cm42tL1yekGWSDRHi6w=; b=NBFgErI+pKvxMhFR6DsF6R1XHXYhHricoEAspjiSRV9JGotAMmha1jmMZRbCag7Lry lQjT5PsW4nDOmLDhkFJwTV2DFXmLSvMXFvInATg6b/dl2dtpIFV63xCVyVMi38wT/PdH 8aaTKpptY5nyT62SN5ZxgUP6yv+rLhFA011gp0xK1aKrMk7QXwqXj2KFD79CWFaFw1xv PbTH2ha420Ni9joY5vQc9CbSKjS7v8WI5sWEFSsypdgMLpQNq3KSQckRpTIbMFut2ZQg OJx2V/P6iNBImiPvpnNvVyGIlvcm6dWm5PAjcSPO/I47WTfVQmHIYL9izwTacOQ2HpfU JYAA==
X-Forwarded-Encrypted: i=1; AJvYcCVfKctxrw6HrP5rfl19ke0U+1FgwA9kI2jaWeNqlTSJi1mn28/zoce5SpuHWZbaAC8RV4yziAtR@ietf.org
X-Gm-Message-State: AOJu0Yx0Wnt/vlpsW1TTfTqKxxZSA0i5dBsyRQGvahgokznLCX5vs1A4 EgeyysvLdjmAg3S6mYqvUZfM0/EGt8+Ugu3jTA6JytoQaWY+w+6CqBdg7BtmBkiJCuU=
X-Gm-Gg: AZuq6aJqYzID31uuZIvr3qtTxSoZTI7pXGazFH0mCCV4QgPobe70if/SFVeGbuvSQ5k QSUF2cJBR/TqsDM9Qc4zx2+SXWji5r3P2Y4ifMzD28C+YhW3PUgX7RzbK0wrRDY+AENf2VVV0Mg i4BGsrUeEUcVYaaQjxWCxde8rN9LwdHzjTx4s5zgdjHAY97UOawjak3NWBTt02Ytd3qlV8GFYlE B/vc0AGVM+HzHwbvyrdBwGg0kdiufuuMR2tlhLmNwx64HUsn5n+gn9vbpdYCb/qSWLjMTWWYT3P ssihMp1cQBZqtUwQycMFpzre+JDON65skaLMtGz1X4NCxTJChsulG27FzI9wfEae97VfydmvvuP 6yFppMiNPHWj8u4puN3dOro8bkpDdYSlHEtkyThNiNjmdP7j43cnlW5CqaTXfKxoxgyLeaQ0eVt 1NNTKRQ+USTREE91LdY3drldCIg4dhcjrzSTxJESpTyXUqBg3fwUtJuaRYNbeSpNWEGHzxxk/M5 LQ=
X-Received: by 2002:a05:7300:e607:b0:2b4:5153:42c4 with SMTP id 5a478bee46e88-2b78d9d77f4mr1583669eec.27.1769526468627; Tue, 27 Jan 2026 07:07:48 -0800 (PST)
Received: from [192.168.90.199] (r186-52-109-0.dialup.adsl.anteldata.net.uy. [186.52.109.0]) by smtp.gmail.com with ESMTPSA id 5a478bee46e88-2b73a6e9933sm19752589eec.13.2026.01.27.07.07.47 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Tue, 27 Jan 2026 07:07:47 -0800 (PST)
Content-Type: multipart/alternative; boundary="------------aBAbUWXhJtyITjOkke6pvvug"
Message-ID: <69149d7c-f362-4335-9648-99da107bc1f1@xt6labs.io>
Date: Tue, 27 Jan 2026 12:07:45 -0300
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
Content-Language: en-US
To: Luigi Iannone <ggx@gigix.net>, SIDRops IETF <sidrops@ietf.org>
References: <5C5B8F40-6E19-4082-89C0-3DDC0AB6364A@gigix.net>
From: Carlos Martinez-Cagnazzo <carlos@xt6labs.io>
In-Reply-To: <5C5B8F40-6E19-4082-89C0-3DDC0AB6364A@gigix.net>
Message-ID-Hash: LV55HFS4BONKZUTGN7M2FAI7D7LWS46N
X-Message-ID-Hash: LV55HFS4BONKZUTGN7M2FAI7D7LWS46N
X-MailFrom: carlos@cgm-consulting.net
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-sidrops.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Reply-To: carlos@xt6labs.io
Subject: [Sidrops] Re: Call for WG Adoption of draft-snij-sidrops-constraining-rpki-trust-anchors
List-Id: A list for the SIDR Operations WG <sidrops.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/sidrops/LsD0S1wrCin9iK7vwF1dMAAftN4>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidrops>
List-Help: <mailto:sidrops-request@ietf.org?subject=help>
List-Owner: <mailto:sidrops-owner@ietf.org>
List-Post: <mailto:sidrops@ietf.org>
List-Subscribe: <mailto:sidrops-join@ietf.org>
List-Unsubscribe: <mailto:sidrops-leave@ietf.org>

Hi all,

I believe this is valuable work. I support adopting this draft as a WG item.

/Carlos

On 19/1/26 9:46 AM, Luigi Iannone wrote:
> All,
>
> The authors have asked the SIDROPS WG to adopt the document 
> draft-snij-sidrops-constraining-rpki-trust-anchors 
> (https://datatracker.ietf.org/doc/draft-snij-sidrops-constraining-rpki-trust-anchors/)
>
> Title: Constraining RPKI Trust Anchors
>
> Abstract:
>   This document describes an approach for Resource Public Key
>    Infrastructure (RPKI) Relying Parties (RPs) to impose locally
>    configured Constraints on cryptographic products subordinate to Trust
>    Anchors (TAs).  The ability to constrain a Trust Anchor operator's
>    effective signing authority to a limited set of Internet Number
>    Resources (INRs) allows Relying Parties to enjoy the potential
>    benefits of assuming trust - within a bounded scope.  The specified
>    approach and configuration format allow RPKI operators to communicate
>    efficiently about observations related to Trust Anchor operations.
>
>
> This email formally opens the two weeks Call for Adoption.
>
> If you are supporting adoption, please state so.
> If you have concerns, please detail them.
>
> Please voice your opinion for the SIDROPS WG adoption of this document 
> by 2 February 2026.
> For the SIDROps WG Chairs,
> Luigi
>
> _______________________________________________
> Sidrops mailing list --sidrops@ietf.org
> To unsubscribe send an email tosidrops-leave@ietf.org

-- 
--
Carlos Martinez-Cagnazzo
XT6Labs.IO