Routing policy

IRR & RPKI Policy

Routing security standards for Aristo Networks (AS216265).

Introduction

Filtering on our edge is generated from routing registry data and validated against RPKI. Nothing is accepted simply because it looks plausible. This page sets out what we expect from customers and peers, and what our routers do with announcements that do not match. Filters rebuild automatically on a schedule, so registering a prefix correctly is normally all that is needed for it to be accepted.

IRR Policy

Customers and peers must maintain up-to-date objects in a recognized IRR database (RIPE, RADB, ARIN, etc.). Our filters are generated automatically from IRR data and applied across our edge routers.

RPKI Policy

Aristo Networks fully supports RPKI route origin validation. All customer and peer announcements must have valid Route Origin Authorizations (ROAs). Invalids will be dropped, while unknowns are accepted but monitored.

Peering & Compliance

Compliance with these IRR and RPKI requirements is mandatory for all customers and peers. Non-compliant routes may be filtered automatically.