The era of free IPv4 address allocations has ended and the grey market in IPv4 addresses is now emerging. This paper argues that one cannot and should not try to regulate who sells addresses and at what price, but one does need to provide some proof of ownership in the form of resource certification. In this paper we identify key requirements of resource certification, gained from both theoretical analysis and operational history. We further argue these requirements can be achieved by making use of the existing reverse DNS hierarchy, enhanced with DNS Security. Our analysis compares reverse DNS entries and BGP routing tables and shows this is both feasible and achievable today; an essential requirement as the grey market is also emerging today and solutions are needed now, not years in the future.
[1]
Jon Postel,et al.
Internet Registry IP Allocation Guidelines
,
1996,
RFC.
[2]
Daniel Massey,et al.
Dynamics of Prefix Usage at an Edge Router
,
2011,
PAM.
[3]
Scott Rose,et al.
DNS Security Introduction and Requirements
,
2005,
RFC.
[4]
Paul Vixie,et al.
Classless IN-ADDR.ARPA delegation
,
1998,
RFC.
[5]
Xin Liu,et al.
Bootstrapping Accountability in the Internet We Have
,
2011,
NSDI.
[6]
Xin Liu,et al.
Internet Protocol Made Accountable
,
2009,
HotNets.