NSDI 26 - cc-pipe: Breaking Systemic Bottlenecks in RPKI Data Supply Chain with Concurrent and... @UsenixOrg
NSDI 26 - cc-pipe: Breaking Systemic Bottlenecks in RPKI Data Supply Chain with Concurrent and...  @UsenixOrg
Uploaded June 2026 | Updated September 2026, 3 weeks ago
NSDI '26 - cc-pipe: Breaking Systemic Bottlenecks in RPKI Data Supply Chain with Concurrent and Conflict-Free Pipelines

Chenhui Yu, Computer Network Information Center, Chinese Academy of Sciences; School of Computer Science and Technology, University of Chinese Academy of Sciences; Yanbiao Li, Computer Network Information Center, Chinese Academy of Sciences; School of Computer Science and Technology, University of Chinese Academy of Sciences; Hangzhou Institute for Advanced Study, University of Chinese Academy of Sciences; Hui Zou, Yuxuan Chen, Shiyi Liu, and Gaogang Xie, Computer Network Information Center, Chinese Academy of Sciences; School of Computer Science and Technology, University of Chinese Academy of Sciences

While the Resource Public Key Infrastructure (RPKI) is essential for securing BGP, the high latency, limited scalability, and vulnerabilities in the data supply chain severely undermine its security guarantees and impede network operations. Within this supply chain, existing research identifies the Relying Party (RP) validation process as the primary performance bottleneck. This bottleneck originates from the standard monolithic architecture, which enforces strong consistency but incurs high latency. Previous work has pursued incremental optimizations within this architecture, yet achieving substantial gains remains difficult.

Based on extensive measurements, we identify inherent blocking within the paradigm as the root cause. To address this, we propose cc-pipe, a novel pipeline architecture that breaks the fundamental consistency—latency trade-off. By leveraging a predictive conflict graph, cc-pipe enables low-latency incremental data dissemination while preserving strong consistency guarantees. Evaluation with real-world deployment demonstrates that cc-pipe reduces average latency by up to 73.3% across all data with negligible router overhead. It also delivers significant scalability under projected future workloads, as well as robust resilience to misbehaving publication points.

View the full NSDI '26 program at usenix.org/conference/nsdi26/technical-sessions
NSDI 26 - cc-pipe: Breaking Systemic Bottlenecks in RPKI Data Supply Chain with Concurrent and...NSDI 26 - Who Watches the Watchers? On the Reliability of Softwarizing Cloud Application ManagementNSDI 26 - SLATE: Service Layer Traffic EngineeringPEPR 26 - Scaling Privacy Threat Modeling: From Architects to DevelopersNSDI 26 - FAST: An Efficient Scheduler for All-to-All GPU CommunicationNSDI 26 - Express Lane to Efficiency and Reliability: Multi-Dimensional Control in Meta’s Express..NSDI 26 - CascadeNet: Generating Network Traffic with High-Fidelity Temporal PatternsPEPR 26 - Privacy Review for Non-ManiacsSREcon24 Europe/Middle East/Africa - I Can OIDC You Clearly Now: How We Made Static Credentials a...NSDI 26 - Come Hell or Still Water: Alleviating Tail Latency in Cloud Block StoreVehicleSec 25 - You Can Drive But You Cannot Hide: Detection of Hidden Cellular GPS Vehicle...USENIX Security 25 - GPUHammer: Rowhammer Attacks on GPU Memories are Practical
USENIX |

NSDI '26 - cc-pipe: Breaking Systemic Bottlenecks in RPKI Data Supply Chain with Concurrent and...

SHARE TO X SHARE TO REDDIT SHARE TO FACEBOOK WALLPAPER