Operational Security Requirements for Large Internet Service Provider IP Network Infrastructure
RFC 3871, “Operational Security Requirements for Large Internet Service Provider IP Network Infrastructure”, is an Informational document published in September 2004 by G. Jones. It has since been updated by RFC 8996. The canonical text is published by the RFC Editor.
Abstract
This document defines a list of operational security requirements for the infrastructure of large Internet Service Provider (ISP) IP networks (routers and switches). A framework is defined for specifying "profiles", which are collections of requirements applicable to certain network topology contexts (all, core-only, edge-only...). The goal is to provide network operators a clear, concise way of communicating their security requirements to vendors. This memo provides information for the Internet community.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 3871 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 3870 application/rdf+xml Media Type Registration
- RFC 3872 Management Information Base for Telephony Routing over IP
- RFC 3869 IAB Concerns and Recommendations Regarding Internet Research and Evolution
- RFC 3873 Stream Control Transmission Protocol Management Information Base
- RFC 3868 Signalling Connection Control Part User Adaptation Layer
- RFC 3874 A 224-bit One-way Hash Function: SHA-224
- RFC 3867 Payment Application Programmers Interface for v1.0 Internet Open Trading Protocol
- RFC 3875 The Common Gateway Interface Version 1.1