Controlling Filtering Rules Using Distributed Denial-of-Service Open Threat Signaling Signal Channel
RFC 9133, “Controlling Filtering Rules Using Distributed Denial-of-Service Open Threat Signaling Signal Channel”, is a Proposed Standard document published in September 2021 by K. Nishizuka, M. Boucadair, T. Reddy.K, T. Nagata. The canonical text is published by the RFC Editor.
Abstract
This document specifies an extension to the Distributed Denial-of-Service Open Threat Signaling (DOTS) signal channel protocol so that DOTS clients can control their filtering rules when an attack mitigation is active.
Particularly, this extension allows a DOTS client to activate or deactivate existing filtering rules during a Distributed Denial-of-Service (DDoS) attack. The characterization of these filtering rules is conveyed by a DOTS client during an 'idle' time (i.e., no mitigation is active) by means of the DOTS data channel protocol.
What “Proposed Standard” means
An entry-level standards-track specification: stable, peer-reviewed and a solid basis for implementation, though it may still evolve before becoming an Internet Standard.
The canonical text of RFC 9133 is hosted at rfc-editor.org. Available in HTML,TXT,PDF,XML.
- RFC 9132 Distributed Denial-of-Service Open Threat Signaling Signal Channel Specification
- RFC 9134 RTP Payload Format for ISO/IEC 21122
- RFC 9131 Gratuitous Neighbor Discovery: Creating Neighbor Cache Entries on First-Hop Routers
- RFC 9135 Integrated Routing and Bridging in Ethernet VPN
- RFC 9136 IP Prefix Advertisement in Ethernet VPN
- RFC 9137 Considerations for Cancellation of IETF Meetings
- RFC 9138 Design Considerations for Name Resolution Service in Information- Centric Networking
- RFC 9127 YANG Data Model for Bidirectional Forwarding Detection