On Mon, Jan 7, 2019 at 1:28 PM Toussaint OTTAVI t.ottavi@bc-109.com wrote:
I saw that Amazon now provides "Bring your Own IP" features : https://aws.amazon.com/fr/blogs/networking-and-content-delivery/introducing-...
Did someone already tried it ? Would it be suitable for AMPRNet announcement ? Is this feature available outside of the U.S ? Amazon seems to provide free account during one year. Are there any volunteers to try out ?
Hello Toussaint,
The Amazon BYOIP product relies on using RPKI ROAs to reliably verify the owner of the prefix is authorising AWS to announce it. Given there is no AMPRNET RPKI infrastructure, e.g. trust anchors this is unlikely. At work before Christmas I spoke to AWS about that product and they were proud to be using RPKI to validate prefix origination.
It would be neat for AMPR to have its own RPKI ROA signing built into the portal!
Kind regards,