BGP Prefix Origin AS Validation with RPKI

Hello Ahmedlmad

The validity of routes is something that is dynamic, and it can change. Checking the validity of routes on an online tool without any additional action is useful, but information can become out of date. For this reason, by configuring the routers to dynamically check upon the validity of the routes allows for them to get real-time updates to information.

If for some reason a route becomes invalid by not passing the RPKI check, then it can reject the route, log the issue and send alerts to any network monitoring service, and determine alternative routes for the same destinations.

As for the typo in the lesson, you are correct, that should indeed be bgp 12. I’ll let Rene know to make the change.

The reason why this prefix is not found is because it has no route origin authorizations (ROAs) in the Routinator server. You are correct however in the fact that this is not explained further in the lesson. I will ask Rene to clarify this point and to consider modifying the lesson to include this information.

I hope this has been helpful!

Laz

1 Like