AS7606 ASPA Check - WAIA AP Internet Association Of Australia

WAIA-AP Internet Association of Australia🇦🇺 - ASPA check for AS7606: the upstream transit providers AS7606 has authorized in its RPKI Autonomous System Provider Authorization (ASPA) object, and the networks that list AS7606 as their provider. Routers that validate ASPA use these records to detect route leaks in BGP paths.

AS7606 has not published its own ASPA object, but 2 ASNs list it as an authorized upstream provider.

Listed as Upstream By
2 ASNs
Upstream Providers
-
Downstream Customers
2

Downstream Customers(2)

These ASNs list AS7606 as an authorized upstream provider.

ASNName
AS24039🇳🇴MARLINK-AS-NET-AP Marlink AS
AS216096🇦🇩SECUREPEAK Alex Terrats Ciberseguretat SLU
About ASPA - what it is and why AS7606 should publish one

ASPA (Autonomous System Provider Authorization) is a cryptographically signed RPKI object specified in the IETF draft-ietf-sidrops-aspa-profile that lets an AS declare which upstream networks are its authorized transit providers. Together with route origin validation (ROV), ASPA enables BGP route leak detection: routers can reject AS-paths in which a network appears as a provider without being authorized. Route leaks are a frequent cause of large routing incidents, and ROV alone cannot detect them because the origin of a leaked route is correct.

AS7606 (WAIA-AP Internet Association of Australia) has not published an ASPA object. Hops through it are therefore "unknown" to ASPA validation - not invalid, but not protected either. An ASPA object lists every transit provider of the network (or AS0 if it has none) and is created in the RIR's hosted RPKI where ASPA is supported, or in a delegated RPKI setup. For most networks the record is a short list of their upstream ASNs.

Create an ASPA object: RIPE Portal · ARIN RPKI · APNIC MyAPNIC · ipctl.io RPKI & ROA tools

Related Tools and Guides