Technical Considerations for Internet Service Blocking and Filtering
RFC 7754, “Technical Considerations for Internet Service Blocking and Filtering”, is an Informational document published in March 2016 by R. Barnes, A. Cooper, O. Kolkman, D. Thaler, E. Nordmark. The canonical text is published by the RFC Editor.
Abstract
The Internet is structured to be an open communications medium. This openness is one of the key underpinnings of Internet innovation, but it can also allow communications that may be viewed as undesirable by certain parties. Thus, as the Internet has grown, so have mechanisms to limit the extent and impact of abusive or objectionable communications. Recently, there has been an increasing emphasis on "blocking" and "filtering", the active prevention of such communications. This document examines several technical approaches to Internet blocking and filtering in terms of their alignment with the overall Internet architecture. When it is possible to do so, the approach to blocking and filtering that is most coherent with the Internet architecture is to inform endpoints about potentially undesirable services, so that the communicants can avoid engaging in abusive or objectionable communications. We observe that certain filtering and blocking approaches can cause unintended consequences to third parties, and we discuss the limits of efficacy of various approaches.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 7754 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 7753 Port Control Protocol Extension for Port-Set Allocation
- RFC 7755 SIIT-DC: Stateless IP/ICMP Translation for IPv6 Data Center Environments
- RFC 7752 North-Bound Distribution of Link-State and Traffic Engineering Information Using BGP
- RFC 7756 Stateless IP/ICMP Translation for IPv6 Internet Data Center Environments : Dual Translation Mode
- RFC 7751 Kerberos Authorization Data Container Authenticated by Multiple Message Authentication Codes
- RFC 7757 Explicit Address Mappings for Stateless IP/ICMP Translation
- RFC 7750 Differentiated Service Code Point and Explicit Congestion Notification Monitoring in the Two-Way Active Measurement Protocol
- RFC 7758 Time Capability in NETCONF