Amazon VPC IPAM now supports BGP route protection monitoring and delegated RPKI for BYOIP prefixes
Amazon VPC IPAM adds BGP route protection monitoring and delegated RPKI for BYOIP prefixes, enabling network administrators to centrally manage and automate route security across their organization
Amazon VPC IPAM now supports BGP route protection monitoring and delegated Resource Public Key Infrastructure (RPKI) management for Bring Your Own IP (BYOIP) prefixes. Network administrators can centrally monitor BGP route protection and automate Route Origin Authorization (ROA) management across their organization. Using BGP route monitoring, you can view RPKI validity status, ROA strength, and route overlap detection for all BYOIP prefixes across accounts and regions from a single dashboard. With Delegated RPKI, administrators perform a one-time setup with their Regional Internet Registry (ARIN, RIPE, APNIC, or LACNIC), after which IPAM automatically creates ROAs during BYOIP provisioning, renews them before expiration, and manages ROAs for on-premises prefixes. This feature is available within Amazon VPC IPAM in all commercial AWS Regions, excluding AWS GovCloud (US) Regions and China (Beijing, operated by Sinnet) and China (Ningxia, operated by NWCD).