Considerations around Transport Header Confidentiality, Network Operations, and the Evolution of Internet Transport Protocols
RFC 9065, “Considerations around Transport Header Confidentiality, Network Operations, and the Evolution of Internet Transport Protocols”, is an Informational document published in July 2021 by G. Fairhurst, C. Perkins. The canonical text is published by the RFC Editor.
Abstract
To protect user data and privacy, Internet transport protocols have supported payload encryption and authentication for some time. Such encryption and authentication are now also starting to be applied to the transport protocol headers. This helps avoid transport protocol ossification by middleboxes, mitigate attacks against the transport protocol, and protect metadata about the communication. Current operational practice in some networks inspect transport header information within the network, but this is no longer possible when those transport headers are encrypted.
This document discusses the possible impact when network traffic uses a protocol with an encrypted transport header. It suggests issues to consider when designing new transport protocols or features.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 9065 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 9064 Considerations in the Development of a QoS Architecture for CCNx- Like Information-Centric Networking Protocols
- RFC 9066 Distributed Denial-of-Service Open Threat Signaling Signal Channel Call Home
- RFC 9063 Host Identity Protocol Architecture
- RFC 9067 A YANG Data Model for Routing Policy
- RFC 9062 Framework and Requirements for Ethernet VPN Operations, Administration, and Maintenance
- RFC 9068 JSON Web Token Profile for OAuth 2.0 Access Tokens
- RFC 9061 A YANG Data Model for IPsec Flow Protection Based on Software- Defined Networking
- RFC 9060 Secure Telephone Identity Revisited Certificate Delegation