tech · quantum risk
Is BGP RPKI Quantum Proof? Network Security & PQC
Verdict
BGP/RPKI security is not quantum-proof while ROAs and RPKI infrastructure use classical signatures. Quantum risk to routing is about integrity and path validation more than session confidentiality—still a real PKI migration problem for operators.
Overview
RPKI binds IP prefixes to AS numbers with signed ROAs. It reduces certain BGP hijack classes when operators enforce validation.
A cryptographically relevant quantum computer that breaks classical RPKI signatures could undermine routing authenticity assumptions—different threat model from TLS HNDL, same root cause: classical public-key crypto.
Network quantum programs at carriers and large enterprises should include RPKI/trust-anchor inventory alongside TLS and VPN.
Cryptographic profile
- Signatures: RPKI ROA signatures, Router and RPKI cache identities, Optional BGPsec where deployed
- Hash: Manifest and CRL-style objects in RPKI
- Public-key exposure: Internet routing trust anchors and ROAs are long-lived classical PKI objects.
What breaks
FAQ
Does RPKI encrypt my traffic?
No. It helps authenticate route origins; use TLS/VPN for confidentiality.
Is BGPsec widely quantum-ready?
Deployment and crypto agility vary—verify with your vendor and RIR guidance.
Key concepts (technical dictionary)
Terms used on this page — open a definition: