CurrentPROPOSED STANDARDIETF stream

RFC 8630: Resource Public Key Infrastructure (RPKI) Trust Anchor Locator

In plain English — editorial summary, not part of the RFC

This document defines a Trust Anchor Locator (TAL) for the Resource Public Key Infrastructure (RPKI). The TAL allows Relying Parties in the RPKI to download the current Trust Anchor (TA) Certification Authority (CA) certificate from one or more locations and verify that the key of this self-signed certificate matches the key on the TAL. Thus, Relying Parties can be configured with TA keys but can allow these TAs to change the content of their CA certificate. In particular, it allows TAs to change the set of IP Address Delegations and/or Autonomous System Identifier Delegations included in the extension(s) (RFC 3779) of their certificate. This document obsoletes the previous definition of the TAL as provided in RFC 7730 by adding support for Uniform Resource Identifiers (URIs) (RFC 3986) that use HTTP over TLS (HTTPS) (RFC 7230) as the scheme.

Document record

Document ID
RFC8630
Published
August 2019
Authors
G. Huston; S. Weiler; G. Michaelson; S. Kent; T. Bruijnzeels
Status
PROPOSED STANDARD
Stream
IETF
Area
ops
Pages
11
Also known as
Obsoletes:
RFC 7730

Standards lineage

This document is one revision in a chain of 3 RFCs, each formally replacing the one before it.

  1. RFC 6490 (2012)
  2. RFC 7730 (2016)
  3. RFC 8630 (2019)

Read the full history of Resource Public Key Infrastructure (RPKI) Trust Anchor Locator

Related documents

Ranked automatically by shared keywords, IETF area and stream — not by editorial selection.

Also filed under

About this page

The document record above — title, authors, date, status, stream, area, relationships, DOI and errata — is imported verbatim from the public RFC Editor index. The “in plain English” section is editorial: written by The metasystema editorial team, not part of the RFC. Where the two differ, the RFC text governs.

Last checked against the RFC Editor index on . RFCs are never revised after publication; changes are issued as new documents.

Data sources · Editorial policy · Report a correction · What is an RFC?

canonical URL: /rfc/8630-resource-public-key-infrastructure-rpki-trust-anchor-locator