How should ROA validation status influence routing decisions?

Master RIPE BGP Security with our comprehensive test. Understand the Border Gateway Protocol, explore multiple choice questions, and get ready for your exam with detailed hints and explanations.

Multiple Choice

How should ROA validation status influence routing decisions?

Explanation:
ROA validation status tells you whether a route’s origin AS is authorized to advertise that prefix under RPKI. When a route’s origin matches a ROA, it’s considered valid, trusted, and is typically accepted into the routing table. If there’s no ROA covering that prefix or the ROA data isn’t available, the status is Unknown/Not Found; how to handle those routes depends on local policy—often they’re accepted with caution or rejected to manage risk. If the origin is explicitly not authorized by any ROA for that prefix, the status is Invalid, and the route should be rejected to guard against potential hijacks. Thus, valid routes are trusted and usually accepted, Unknown/Not Found are handled by policy (often with caution or rejection), and Invalid routes are rejected.

ROA validation status tells you whether a route’s origin AS is authorized to advertise that prefix under RPKI. When a route’s origin matches a ROA, it’s considered valid, trusted, and is typically accepted into the routing table. If there’s no ROA covering that prefix or the ROA data isn’t available, the status is Unknown/Not Found; how to handle those routes depends on local policy—often they’re accepted with caution or rejected to manage risk. If the origin is explicitly not authorized by any ROA for that prefix, the status is Invalid, and the route should be rejected to guard against potential hijacks. Thus, valid routes are trusted and usually accepted, Unknown/Not Found are handled by policy (often with caution or rejection), and Invalid routes are rejected.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy