Internet Engineering Task Force (IETF) G. Huston Request for Comments: 6485 APNIC Category: Standards Track February 2012 ISSN: 2070-1721The Profile for Algorithms and Key Sizes for Use in the Resource Public Key Infrastructure (RPKI)
Huston Standards Track [Page 1]
RFC 6485 RPKI Algorithm Profile February 2012 1. IntroductionThis document specifies:
1.1. Terminology
The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "MAY", and "OPTIONAL" in this document are to be interpreted as described in [RFC2119].
2. Algorithms
Two cryptographic algorithms are used in the RPKI:
Huston Standards Track [Page 2]
RFC 6485 RPKI Algorithm Profile February 2012
NOTE: The exception to the above hashing algorithm is the use of SHA-1 [SHS] when Certification Authorities (CAs) generate authority and subject key identifiers [RFC6487].
3. Asymmetric Key Pair Formats
The RSA key pairs used to compute the signatures MUST have a 2048-bit modulus and a public exponent (e) of 65,537.
3.1. Public Key Format
The subject's public key is included in subjectPublicKeyInfo [RFC5280]. It has two sub-fields: algorithm and subjectPublicKey. The values for the structures and their sub-structures follow:
Huston Standards Track [Page 3]
RFC 6485 RPKI Algorithm Profile February 2012 3.2. Private Key FormatLocal policy determines the private key format.
4. Signature Format
The structure for the certificate's signature field is as specified in Section 1.2 of [RFC4055]. The structure for the CMS SignedData's signature field is as specified in [RFC3370].
5. Additional Requirements
It is anticipated that the RPKI will require the adoption of updated key sizes and a different set of signature and hash algorithms over time, in order to maintain an acceptable level of cryptographic security to protect the integrity of signed products in the RPKI. This profile should be replaced to specify such future requirements, as and when appropriate.
6. Security Considerations
The Security Considerations of [RFC4055], [RFC5280], and [RFC6487] apply to certificates and CRLs. The Security Considerations of [RFC5754] apply to signed objects. No new security threats are introduced as a result of this specification.
7. Acknowledgments
The author acknowledges the reuse in this document of material originally contained in working drafts of the RPKI Certificate Policy [RFC6484] and the resource certificate profile [RFC6487] documents. The co-authors of these two documents, namely Stephen Kent, Derrick Kong, Karen Seo, Ronald Watro, George Michaelson, and Robert Loomans, are acknowledged, with thanks. The constraint on key size noted in this profile is the outcome of comments from Stephen Kent and review comments from David Cooper. Sean Turner has provided additional review input to this document.
Huston Standards Track [Page 4]
RFC 6485 RPKI Algorithm Profile February 2012 9. Normative References[RFC2119] Bradner, S., "Key words for use in RFCs to Indicate
Huston Standards Track [Page 5]
RFC 6485 RPKI Algorithm Profile February 2012
Author's Address