Follow up on implementation of Resource Certification (RPKI) for PI End User Resources

Dear colleagues, Over the last few weeks, we have been consulting the RIPE community on the practical implementation of providing Resource Certification (RPKI) for Provider Independent (PI) End Users. In about two weeks, we plan to start with the implementation and, based on the feedback that you have provided, we would like to offer the following two solutions: 1. A management interface for sponsoring LIRs in the LIR Portal Sponsoring LIRs will be able to issue access credentials for the RPKI Management interface to either themselves if they manage ROAs on behalf of the PI End User, or directly to the PI End User if they have requested to set up and maintain ROAs. 2. A form on the RIPE NCC website, allowing PI End Users to request access directly from the RIPE NCC PI End Users will be able to log in with their RIPE NCC Access account, enter the resources they would like a certificate for and authenticate against the INETNUM database object to prove they have authoritative control over the address space. If you have any feedback, please do not hesitate to respond to this message. Kind regards, Alex Band Product Manager RIPE NCC P.S. The RIPE NCC has explained the implementation options and associated cost at the following locations: http://www.ripe.net/ripe/mail/archives/ncc-services-wg/2013-March/002145.htm... http://www.ripe.net/ripe/mail/archives/ncc-services-wg/2013-March/002149.htm... http://www.ripe.net/ripe/mail/archives/ncc-services-wg/2013-March/002252.htm... http://www.ripe.net/ripe/mail/archives/ncc-services-wg/2013-March/002256.htm... http://www.ripe.net/ripe/mail/archives/ncc-services-wg/2013-October/002587.h...

On 18 November 2013 07:44, Alex Band <alexb@ripe.net> wrote:
Dear colleagues,
Over the last few weeks, we have been consulting the RIPE community on the practical implementation of providing Resource Certification (RPKI) for Provider Independent (PI) End Users. In about two weeks, we plan to start with the implementation and, based on the feedback that you have provided, we would like to offer the following two solutions:
1. A management interface for sponsoring LIRs in the LIR Portal
Sponsoring LIRs will be able to issue access credentials for the RPKI Management interface to either themselves if they manage ROAs on behalf of the PI End User, or directly to the PI End User if they have requested to set up and maintain ROAs.
2. A form on the RIPE NCC website, allowing PI End Users to request access directly from the RIPE NCC
PI End Users will be able to log in with their RIPE NCC Access account, enter the resources they would like a certificate for and authenticate against the INETNUM database object to prove they have authoritative control over the address space.
Being a v4/v6/asn PI resource holder and not having access to the LIR Portal, I would prefer the second option. Thanks, -- Nat 07531 750292 http://natmorris.co.uk
participants (2)
-
Alex Band
-
Nat Morris