> Beginning to wonder why, with work like DANE and certificates in DNS
> in the IETF, we need an RPKI and new hierarchical shared dependency
> system at all and can't just place ROAs in in-addr.arpa zone files
> that are DNSSEC-enabled.
let's wind the wayback machine to 1998
http://tools.ietf.org/html/draft-bates-bgp4-nlri-orig-verif-00
randy