RFC 3972 · PROPOSED STANDARD · 2005

Cryptographically Generated Addresses

Overview

RFC 3972, “Cryptographically Generated Addresses”, is a Proposed Standard document published in March 2005 by T. Aura. It has since been updated by RFC 4581, RFC 4982. The canonical text is published by the RFC Editor.

Abstract

This document describes a method for binding a public signature key to an IPv6 address in the Secure Neighbor Discovery (SEND) protocol. Cryptographically Generated Addresses (CGA) are IPv6 addresses for which the interface identifier is generated by computing a cryptographic one-way hash function from a public key and auxiliary parameters. The binding between the public key and the address can be verified by re-computing the hash value and by comparing the hash with the interface identifier. Messages sent from an IPv6 address can be protected by attaching the public key and auxiliary parameters and by signing the message with the corresponding private key. The protection works without a certification authority or any security infrastructure. [STANDARDS-TRACK]

Abstract as published in the RFC, via rfc-editor.org.

What “Proposed Standard” means

An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.

Read this RFC

The canonical text of RFC 3972 is hosted at rfc-editor.org. Available in TXT,HTML.

Relationships to other RFCs
Updated by
RFC 4581 RFC 4982
Other RFCs from 2005

Who Is Online

In total there are 55 users online: 0 registered, 49 guests and 6 bots.

Most users ever online was 1,226 on 13 Jun 2026, 3:56 am.

Bots: AhrefsBot Applebot Majestic Other Bot SemrushBot Sogou

Users active in the past 15 minutes. Total registered members: 354