Iprojekthi ye-OpenBSD yazisa ukukhutshwa kokuqala okuphathekayo kwe-rpki-client

Abaphuhlisi be-OpenBSD ipapashiwe ukhupho lokuqala lukawonke-wonke loshicilelo oluphathwayo lwephakheji rpki-umthengi ngomiliselo lwendlela ye-RPKI (uVimba
Iziseko ezingundoqo zoLuntu) zeRP (Amaqela anxulumeneyo), esetyenziselwa ukugunyazisa umthombo wezibhengezo ze-BGP. I-RPKI ikuvumela ukuba ubone ukuba isibhengezo BGP sivela kumnini womnatha okanye hayi, nto leyo, usebenzisa isiseko esingundoqo yoluntu lweenkqubo ezizimeleyo kunye needilesi IP, umxokelelwane trust yakhiwe, nto leyo eyakhiwe ukusuka IANA ukuba ababhali beengingqi (RIRs). ), ababoneleli (LIRs) kunye nabasebenzisi bokugqibela beedilesi. Ikhowudi ipapashwa phantsi kwelayisensi ye-BSD.

Inkqubo rpki-umthengi yenza kube nokwenzeka ukuthumela isicelo kwindawo yokugcina ye-RPKI kwaye ivelise into ye-VRP (i-Roa eqinisekisiweyo ye-ROA) eqinisekisa umthombo wendlela (i-ROA, i-Route Origin Authorization) kwifomathi yezicwangciso zepakethi yomzila. I-OpenBGPD ΠΈ INTAKA, kunye nakwi CSV okanye iifomati zeJSON ezisetyenziselwa ezinye iindlela zokupakisha. Ukufikelela kwindawo yokugcina, sebenzisa usetyenziso openrsync, efumana zonke iziqinisekiso ze-X.509, izibonisi, kunye neeCRL. Emva koko
Umxhasi we-rpki ujonga isatifikethi ngasinye esinxulunyaniswa ne-ROA, sakha kwaye siqinisekisa lonke ikhonkco lentembeko, ngelixa ngaxeshanye kuhlolwa ii-CRL zokurhoxiswa kwesatifikethi okunokwenzeka.

umthombo: opennet.ru