[OPSEC] I-D Action: draft-ietf-opsec-urpf-improvements-03.txt

internet-drafts@ietf.org Mon, 08 July 2019 23:38 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: opsec@ietf.org
Delivered-To: opsec@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 90CF6120390; Mon, 8 Jul 2019 16:38:29 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
Cc: opsec@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 6.98.3
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: opsec@ietf.org
Message-ID: <156262910951.976.18145887985303475096@ietfa.amsl.com>
Date: Mon, 08 Jul 2019 16:38:29 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/opsec/9pfSLTX9C_g8pKFM3AfATwuGv_Y>
Subject: [OPSEC] I-D Action: draft-ietf-opsec-urpf-improvements-03.txt
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.29
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/opsec/>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Jul 2019 23:38:41 -0000

A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Operational Security Capabilities for IP Network Infrastructure WG of the IETF.

        Title           : Enhanced Feasible-Path Unicast Reverse Path Filtering
        Authors         : Kotikalapudi Sriram
                          Doug Montgomery
                          Jeffrey Haas
	Filename        : draft-ietf-opsec-urpf-improvements-03.txt
	Pages           : 18
	Date            : 2019-07-08

Abstract:
   This document identifies a need for improvement of the unicast
   Reverse Path Filtering techniques (uRPF) (see BCP 84) for detection
   and mitigation of source address spoofing (see BCP 38).  The strict
   uRPF is inflexible about directionality, the loose uRPF is oblivious
   to directionality, and the current feasible-path uRPF attempts to
   strike a balance between the two (see BCP 84).  However, as shown in
   this draft, the existing feasible-path uRPF still has shortcomings.
   This document describes an enhanced feasible-path uRPF technique,
   which aims to be more flexible (in a meaningful way) about
   directionality than the feasible-path uRPF.  It can potentially
   alleviate ISPs' concerns about the possibility of disrupting service
   for their customers, and encourage greater deployment of uRPF
   techniques.


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-opsec-urpf-improvements/

There are also htmlized versions available at:
https://tools.ietf.org/html/draft-ietf-opsec-urpf-improvements-03
https://datatracker.ietf.org/doc/html/draft-ietf-opsec-urpf-improvements-03

A diff from the previous version is available at:
https://www.ietf.org/rfcdiff?url2=draft-ietf-opsec-urpf-improvements-03


Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/