MPLS Transport Profile Security Framework
RFC 6941, “MPLS Transport Profile Security Framework”, is an Informational document published in April 2013 by L. Fang, B. Niven-Jenkins, S. Mansfield, R. Graveman. The canonical text is published by the RFC Editor.
Abstract
This document provides a security framework for the MPLS Transport Profile (MPLS-TP). MPLS-TP extends MPLS technologies and introduces new Operations, Administration, and Maintenance (OAM) capabilities, a transport-oriented path protection mechanism, and strong emphasis on static provisioning supported by network management systems. This document addresses the security aspects relevant in the context of MPLS-TP specifically. It describes potential security threats as well as mitigation procedures related to MPLS-TP networks and to MPLS-TP interconnection to other MPLS and GMPLS networks. This document is built on RFC 5920 ("Security Framework for MPLS and GMPLS Networks") by providing additional security considerations that are applicable to the MPLS-TP extensions. All the security considerations from RFC 5920 are assumed to apply.
This document is a product of a joint Internet Engineering Task Force (IETF) / International Telecommunication Union Telecommunication Standardization Sector (ITU-T) effort to include an MPLS Transport Profile within the IETF MPLS and Pseudowire Emulation Edge-to-Edge (PWE3) architectures to support the capabilities and functionality of a packet transport network.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 6941 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 6942 Diameter Support for the EAP Re-authentication Protocol
- RFC 6939 Client Link-Layer Address Option in DHCPv6
- RFC 6943 Issues in Identifier Comparison for Security Purposes
- RFC 6938 Deprecation of BGP Path Attributes: DPA, ADVERTISER, and RCID_PATH / CLUSTER_ID
- RFC 6944 Applicability Statement: DNS Security DNSKEY Algorithm Implementation Status
- RFC 6937 Proportional Rate Reduction for TCP
- RFC 6945 Definitions of Managed Objects for the Resource Public Key Infrastructure to Router Protocol
- RFC 6936 Applicability Statement for the Use of IPv6 UDP Datagrams with Zero Checksums