Large communities indicating RPKI VALID status

Nigel Kukard nkukard at LBSD.net
Mon Apr 29 21:25:42 CEST 2024


Hi there Richard,

On 4/29/24 19:14, Richard Laager wrote:
> Perhaps I am naive, but I assumed one would validate RPKI on the eBGP edge and simply reject INVALID routes.
>
> Why would one want to accept INVALID at all?
>
> If we agree one would reject INVALID, then what is left to tag?

For my specific use case I wanted to add a community for VALID and 
UNKNOWN. I'm going to look into the non-transitive extended communities 
to see how this works out.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://trubka.network.cz/pipermail/bird-users/attachments/20240429/fb7d1208/attachment.htm>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature.asc
Type: application/pgp-signature
Size: 236 bytes
Desc: OpenPGP digital signature
URL: <http://trubka.network.cz/pipermail/bird-users/attachments/20240429/fb7d1208/attachment.sig>


More information about the Bird-users mailing list