[Sidrops] Re: ASPA validation of paths received from customers and providers

Randy Bush <randy@psg.com> Mon, 02 June 2025 21:13 UTC

Return-Path: <randy@psg.com>
X-Original-To: sidrops@mail2.ietf.org
Delivered-To: sidrops@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id E76862FECDFA for <sidrops@mail2.ietf.org>; Mon, 2 Jun 2025 14:13:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -4.401
X-Spam-Level:
X-Spam-Status: No, score=-4.401 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=psg.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5pCYsxlIqiTp for <sidrops@mail2.ietf.org>; Mon, 2 Jun 2025 14:13:48 -0700 (PDT)
Received: from ran.psg.com (ran.psg.com [IPv6:2001:418:3807::18]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 59BA02FECDF5 for <sidrops@ietf.org>; Mon, 2 Jun 2025 14:13:48 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=psg.com; s=rgnet-mail; h=Content-Type:MIME-Version:References:In-Reply-To:Subject:Cc: To:From:Message-ID:Date:Sender:Reply-To:Content-Transfer-Encoding:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=RJhuMrXTaTob6SyHb3seGM/511MNytcFNUwf3cPvfuM=; b=hH+CXCeRbUC/4m5DAyX03Xze+0 rUC15jHXa2X3AULFh5KrFZ0OEGZDZKyOa1roWA2PxuCFBILcuX8H3E68uE9luOSmBTbnLrE7YGm3S /RgcQr320frLRpouGKzqOFiiVHRMTnSlJFGbxYkWzBEfc94EWTxyw60sI1m+GlXFMRXy8LHUcSMx4 zLDDirSxzERhvwIHVsRYdlxBijXEMncHKqPfPIuRbYibOo77yiINKKzc6qGnh/JuRjwkhyxuex2OE DDHRWz9YqZMYO1Xgv7jsvOssp9+RFi7LGPLya+C20jEfkByRvTcO2OHVKrbeLixvaPo3RfJCuekTZ FMDvuw0g==;
Received: from localhost ([127.0.0.1] helo=ryuu.rg.net) by ran.psg.com with esmtp (Exim 4.97) (envelope-from <randy@psg.com>) id 1uMCTa-00000004BiK-2nHq; Mon, 02 Jun 2025 21:13:46 +0000
Date: Mon, 02 Jun 2025 14:13:47 -0700
Message-ID: <m2wm9tc0dw.wl-randy@psg.com>
From: Randy Bush <randy@psg.com>
To: Maria Matejka <maria.matejka@nic.cz>
In-Reply-To: <aD4P6WkuKWZsgddk@struhadlo.private.jmq.cz>
References: <aDhFek0kKlCyj8pq@struhadlo.private.jmq.cz> <DS0PR09MB105981A10DCA72C22221C82418466A@DS0PR09MB10598.namprd09.prod.outlook.com> <aDlVmigl8R_34g1w@anton.sobornost.net> <aDmMC4CQmXi6Rs1p@struhadlo.private.jmq.cz> <m2y0uecbqp.wl-randy@psg.com> <aD2bc3zFdyM-vgIW@struhadlo.private.jmq.cz> <m2ecw2c5kd.wl-randy@psg.com> <aD4EOMKW3KJYQ9RO@struhadlo.private.jmq.cz> <m27c1tdgs2.wl-randy@psg.com> <aD4P6WkuKWZsgddk@struhadlo.private.jmq.cz>
User-Agent: Wanderlust/2.15.9 (Almost Unreal) Emacs/27.2 Mule/6.0
MIME-Version: 1.0 (generated by SEMI-EPG 1.14.7 - "Harue")
Content-Type: text/plain; charset="US-ASCII"
Message-ID-Hash: G7EGVMNWSSJIPOLSGHBW346R2TNEPGXE
X-Message-ID-Hash: G7EGVMNWSSJIPOLSGHBW346R2TNEPGXE
X-MailFrom: randy@psg.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-sidrops.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: SIDR Operations WG <sidrops@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Sidrops] Re: ASPA validation of paths received from customers and providers
List-Id: A list for the SIDR Operations WG <sidrops.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/sidrops/Vs9Yx5x8T8qk5PsvcmUIjyP7oOY>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidrops>
List-Help: <mailto:sidrops-request@ietf.org?subject=help>
List-Owner: <mailto:sidrops-owner@ietf.org>
List-Post: <mailto:sidrops@ietf.org>
List-Subscribe: <mailto:sidrops-join@ietf.org>
List-Unsubscribe: <mailto:sidrops-leave@ietf.org>

maria,

> Ah, didn't understand that this way

i am happy to maintain my reputation of being too terse and explaining
poorly.

> then we are on the same page.
> 
> One should check on import, with prepending if applicable, to not
> import garbage. One should also check on export to ensure that local
> policy is consistent.

yeppers.  no garbage in, no garbage out.  only garbage is harmed in this
movie.  :)

thanks.

randy