draft-ietf-sidr-ghostbusters-10.txt   draft-ietf-sidr-ghostbusters-11.txt 
Network Working Group R. Bush Network Working Group R. Bush
Internet-Draft Internet Initiative Japan Internet-Draft Internet Initiative Japan
Intended status: Standards Track September 14, 2011 Intended status: Standards Track September 14, 2011
Expires: March 17, 2012 Expires: March 17, 2012
The RPKI Ghostbusters Record The RPKI Ghostbusters Record
draft-ietf-sidr-ghostbusters-10 draft-ietf-sidr-ghostbusters-11
Abstract Abstract
In the Resource Public Key Infrastructure (RPKI), resource In the Resource Public Key Infrastructure (RPKI), resource
certificates completely obscure names or any other information which certificates completely obscure names or any other information which
might be useful for contacting responsible parties to deal with might be useful for contacting responsible parties to deal with
issues of certificate expiration, maintenance, roll-overs, issues of certificate expiration, maintenance, roll-overs,
compromises, etc. This draft describes the RPKI Ghostbusters Record compromises, etc. This draft describes the RPKI Ghostbusters Record
containing human contact information which may be verified containing human contact information which may be verified
(indirectly) by a CA certificate. The data in the record are those (indirectly) by a CA certificate. The data in the record are those
skipping to change at page 4, line 17 skipping to change at page 4, line 17
It is assumed that the reader understands the RPKI, It is assumed that the reader understands the RPKI,
[I-D.ietf-sidr-arch], the RPKI Repository Structure, [I-D.ietf-sidr-arch], the RPKI Repository Structure,
[I-D.ietf-sidr-repos-struct], Signed RPKI Objects, [I-D.ietf-sidr-repos-struct], Signed RPKI Objects,
[I-D.ietf-sidr-signed-object], and vCards [RFC6350]. [I-D.ietf-sidr-signed-object], and vCards [RFC6350].
3. RPKI Ghostbusters Record Payload Example 3. RPKI Ghostbusters Record Payload Example
An example of an RPKI Ghostbusters Record payload with all properties An example of an RPKI Ghostbusters Record payload with all properties
populated is as follows: populated is as follows:
BEGIN:vCard BEGIN:VCARD
VERSION:4.0 VERSION:4.0
FN:Human's Name FN:Human's Name
ORG:Organizational Entity ORG:Organizational Entity
ADR;TYPE=WORK:;;42 Twisty Passage;Deep Cavern; WA; 98666;U.S.A. ADR;TYPE=WORK:;;42 Twisty Passage;Deep Cavern; WA; 98666;U.S.A.
TEL;TYPE=VOICE,MSG,WORK:+1-666-555-1212 TEL;TYPE=VOICE,MSG,WORK:+1-666-555-1212
TEL;TYPE=FAX,WORK:+1-666-555-1213 TEL;TYPE=FAX,WORK:+1-666-555-1213
EMAIL;TYPE=INTERNET:human@example.com EMAIL;TYPE=INTERNET:human@example.com
END:vCard END:VCARD
4. vCard Profile 4. vCard Profile
The goal in profiling the vCard is not to include as much information The goal in profiling the vCard is not to include as much information
as possible, but rather to include as few properties as possible as possible, but rather to include as few properties as possible
while providing the minimal necessary data to enable one to contact while providing the minimal necessary data to enable one to contact
the maintainer of the RPKI data which threatens the ROA[s] of the maintainer of the RPKI data which threatens the ROA[s] of
concern. concern.
The Ghostbusters vCard payload is a minimalist subset of the vCard as The Ghostbusters vCard payload is a minimalist subset of the vCard as
described in [RFC6350]. described in [RFC6350].
BEGIN - pro forma packaging which MUST be the first line in the BEGIN - pro forma packaging which MUST be the first line in the
vCard and MUST have the value "BEGIN:vCard" as described in vCard and MUST have the value "BEGIN:VCARD" as described in
[RFC6350]. [RFC6350].
VERSION - pro forma packaging which MUST be the second line in the VERSION - pro forma packaging which MUST be the second line in the
vCard and MUST have the value "VERSION:4.0" as described in 3.6.9 vCard and MUST have the value "VERSION:4.0" as described in 3.6.9
of [RFC6350]. of [RFC6350].
FN - the name, as described in 6.2.1 of [RFC6350], of a contactable FN - the name, as described in 6.2.1 of [RFC6350], of a contactable
person who responsible a the CA certificate. person who responsible a the CA certificate.
ORG - an organization as described in 6.6.4 of [RFC6350]. ORG - an organization as described in 6.6.4 of [RFC6350].
ADR - a postal address as described in 6.3 of [RFC6350]. ADR - a postal address as described in 6.3 of [RFC6350].
TEL - a voice and/or fax phone as described in 6.4.1 of [RFC6350]. TEL - a voice and/or fax phone as described in 6.4.1 of [RFC6350].
EMAIL - an Email address as described in 6.4.2 of [RFC6350] EMAIL - an Email address as described in 6.4.2 of [RFC6350]
END - pro forma packaging which MUST be the last line in the vCard END - pro forma packaging which MUST be the last line in the vCard
and MUST have the value "END:vCard" as described in [RFC6350]. and MUST have the value "END:VCARD" as described in [RFC6350].
Per [RFC6350], the BEGIN, VERSION, FN, and END properties MUST be Per [RFC6350], the BEGIN, VERSION, FN, and END properties MUST be
included in a record. To be useful, one or more of ADR, TEL, and included in a record. To be useful, one or more of ADR, TEL, and
EMAIL MUST be included. Other properties MUST NOT be included. EMAIL MUST be included. Other properties MUST NOT be included.
5. CMS Packaging 5. CMS Packaging
The Ghostbusters Record is a CMS signed-data object conforming to the The Ghostbusters Record is a CMS signed-data object conforming to the
Signed Object Template for the Resource Public Key Infrastructure, Signed Object Template for the Resource Public Key Infrastructure,
[I-D.ietf-sidr-signed-object]. [I-D.ietf-sidr-signed-object].
 End of changes. 5 change blocks. 
5 lines changed or deleted 5 lines changed or added

This html diff was produced by rfcdiff 1.41. The latest version is available from http://tools.ietf.org/tools/rfcdiff/