Secure Device Install
RFC 8886, “Secure Device Install”, is an Informational document published in September 2020 by W. Kumari, C. Doyle. The canonical text is published by the RFC Editor.
Abstract
Deploying a new network device in a location where the operator has no staff of its own often requires that an employee physically travel to the location to perform the initial install and configuration, even in shared facilities with "remote-hands" (or similar) support. In many cases, this could be avoided if there were an easy way to transfer the initial configuration to a new device while still maintaining confidentiality of the configuration.
This document extends existing vendor proprietary auto-install to provide limited confidentiality to initial configuration during bootstrapping of the device.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 8886 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 8885 Proxy Mobile IPv6 Extensions for Distributed Mobility Management
- RFC 8887 A JSON Meta Application Protocol Subprotocol for WebSocket
- RFC 8884 Research Directions for Using Information-Centric Networking in Disaster Scenarios
- RFC 8883 ICMPv6 Errors for Discarding Packets Due to Processing Limits
- RFC 8889 Multipoint Alternate-Marking Method for Passive and Hybrid Performance Monitoring
- RFC 8882 DNS-Based Service Discovery Privacy and Security Requirements
- RFC 8890 The Internet is for End Users
- RFC 8881 Network File System Version 4 Minor Version 1 Protocol