rpki

Function

The rpki command starts Resource Public Key Infrastructure (RPKI) and then displays the RPKI view or displays the RPKI view directly.

The undo rpki command deletes all RPKI configurations.

By default, RPKI is disabled in the system.

Format

rpki

undo rpki

Parameters

None

Views

System view

Default Level

2: Configuration level

Task Name and Operations

Task Name Operations
rpki write

Usage Guidelines

Usage Scenario

Attackers can steal user data by advertising routes that are more specific than those advertised by carriers. RPKI can address this issue by validating the origin ASs of BGP routes and apply the BGP origin AS validation result to route selection. To start RPKI and enter the RPKI view, run the rpki command.

Example

# Start RPKI and enter the RPKI view.
<HUAWEI> system-view
[~HUAWEI] rpki
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >