<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.43 (Ruby 3.4.9) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-ietf-opsawg-rfc5706bis-08" category="bcp" consensus="true" submissionType="IETF" obsoletes="5706" updates="2360" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.34.1 -->
  <front>
    <title abbrev="Operations &amp; Management Considerations">Guidelines for Considering Operations and Management in IETF Specifications</title>
    <seriesInfo name="Internet-Draft" value="draft-ietf-opsawg-rfc5706bis-08"/>
    <author fullname="Benoit Claise">
      <organization>Everything OPS &amp; Arrcus</organization>
      <address>
        <email>benoit@everything-ops.net</email>
      </address>
    </author>
    <author fullname="Joe Clarke">
      <organization>Cisco</organization>
      <address>
        <email>jclarke@cisco.com</email>
      </address>
    </author>
    <author fullname="Adrian Farrel">
      <organization>Old Dog Consulting</organization>
      <address>
        <email>adrian@olddog.co.uk</email>
      </address>
    </author>
    <author fullname="Samier Barguil">
      <organization>Nokia</organization>
      <address>
        <email>samier.barguil_giraldo@nokia.com</email>
      </address>
    </author>
    <author fullname="Carlos Pignataro">
      <organization>Blue Fern Consulting</organization>
      <address>
        <email>carlos@bluefern.consulting</email>
        <uri>https://bluefern.consulting</uri>
      </address>
    </author>
    <author fullname="Ran Chen">
      <organization>ZTE</organization>
      <address>
        <email>chen.ran@zte.com.cn</email>
      </address>
    </author>
    <date year="2026" month="September" day="24"/>
    <area>Operations and Management</area>
    <workgroup>Operations and Management Area Working Group</workgroup>
    <keyword>management</keyword>
    <keyword>operations</keyword>
    <keyword>operations and management</keyword>
    <keyword>ops considerations</keyword>
    <abstract>
      <?line 91?>

<t>New Protocols and Protocol Extensions are best designed with due
   consideration of the functionality needed to operate and manage them.
   Retrofitting operations and management considerations is suboptimal.
   The purpose of this document is to provide guidance to authors and
   reviewers on what operational and management aspects should be
   addressed when writing documents in the IETF Stream that document a specification for New Protocols or Protocol Extensions or describe their use.</t>
      <t>This document obsoletes RFC 5706, replacing it completely and updating
   it with new operational and management techniques and mechanisms. It also
   updates RFC 2360 to obsolete mandatory MIB creation. Finally, it introduces a
   requirement to include an "Operational Considerations" section in new RFCs in
   the IETF Stream that define New Protocols or Protocol Extensions or describe their use (including relevant YANG
   Models), while providing an escape clause if no new considerations are identified.</t>
    </abstract>
  </front>
  <middle>
    <?line 107?>

<section anchor="sec-intro">
      <name>Introduction</name>
      <t>Often, when New Protocols or Protocol Extensions are developed, not
   enough consideration is given to how they will be deployed,
   operated, and managed. Retrofitting operations and management
   mechanisms is often hard and architecturally unpleasant, and certain
   protocol design choices may make deployment, operations, and
   management particularly difficult or insecure.
   To ensure deployability, the operational environment and manageability
   must be considered during design.</t>
      <t>This document provides guidelines to help Protocol Designers and Working
   Groups (WGs) consider the operations and management functionality for
   their New Protocol or Protocol Extension at an early phase in the design
   process.</t>
      <t>This document obsoletes <xref target="RFC5706"/> and updates its content
   with new operational and management considerations. It also
   introduces a requirement to include an "Operational Considerations"
   section in new RFCs in the IETF Stream that define New Protocols or
   Protocol Extensions or describe their use (including relevant YANG
   Data Models). This section must cover both operational and management considerations.</t>
      <t>Additionally, this document updates Section <xref target="RFC2360" section="2.14" sectionFormat="bare"/> of RFC 2360 <xref target="BCP22"/> on "Guide for Internet Standards Writers"
   to obsolete references to mandatory MIBs and instead focus on documenting holistic manageability and operational
   considerations as described in <xref target="sec-doc-req-ietf-spec"/>. The update is provided in <xref target="sec-2360-update"/>.
   Further, this document removes outdated
   references and aligns with current practices, protocols, and
   technologies used in operating and managing devices, networks, and
   services. Refer to <xref target="sec-changes-since-5706"/> for more details.</t>
      <section anchor="sec-this-doc">
        <name>This Document</name>
        <t>This document provides a set of guidelines for considering
   operations and management in an IETF technical specification
   with an eye toward being flexible while also striving for
   interoperability.</t>
        <t>Entirely New Protocols may require significant consideration of expected
   operations and management, while Protocol Extensions to existing, widely
   deployed protocols may have established de facto operations and
   management practices that are already well understood. This document does
   not mandate a comprehensive inventory of all operational considerations.
   Instead, it guides authors to focus on key aspects that are essential for
   the technology's deployability, operation, and maintenance.</t>
        <t>Suitable operational and management approaches may vary for different areas, WGs,
   and protocols in the IETF. This document does not prescribe
   a fixed solution or format in dealing with operational and management
   aspects of IETF protocols. However, these aspects should be
   considered for any New Protocol or Protocol Extension.</t>
        <t>A WG may decide that its protocol does not need interoperable
   operational and management or a standardized Data Model, but this should be a
   deliberate and documented decision, not the result of omission. This document
   provides some guidelines for those considerations.</t>
        <t>This document recognizes a distinction between management and operational
   considerations, although the two are closely related. However, for New
   Protocols or Protocol Extensions only an "Operational Considerations" section is required.
   This section is intended to address both management and operational aspects.
   Operational considerations pertain to the deployment and functioning of protocols
   within a network, regardless of whether a management protocol is in active use.
   Management considerations focus on the use of management technologies, such as
   management protocols and the design of management Data Models. Both topics should
   be described within the "Operational Considerations" section.</t>
        <t>It is possible that the operational considerations will require significant amounts of text and need to be presented in
   a separate document. This saves the protocol specification from becoming overwhelmed or bloated. In this case the
   Operational Considerations section may contain just a short overview description of the material and a reference to
   other documents that contain the details, but those references must be normative.</t>
      </section>
      <section anchor="sec-audience">
        <name>Audience</name>
        <t>The guidelines are intended to be useful to authors
   writing protocol specifications.
   They outline what to consider for operations, management, and deployment, how to document
   those aspects, and how to present them in a consistent format.
    This document is intended to offer a flexible set of
   guiding principles applicable to various circumstances. It provides a framework for WGs
   to ensure that operational considerations are an integral part of the protocol design process, and
   its use should not be misinterpreted as imposing new hurdles on work in other areas.</t>
        <t>Protocol Designers should consider which operations and management
   needs are relevant to their protocol, document how those needs could
   be addressed, and suggest (preferably standard) management protocols
   and Data Models that could be used to address those needs. This is
   similar to a WG that considers which security threats are relevant to
   their protocol, documents (in the required Security Considerations section,
   per Guidelines for Writing RFC Text on Security Considerations <xref target="BCP72"/>)
   how threats should be mitigated, and then suggests appropriate standard
   protocols that could mitigate the threats.</t>
        <t>It is not the intention that a protocol specification document should be held up waiting for operations and management solutions, or for supporting tooling, to be developed.  This is particularly the case when a protocol extension is proposed, but the base protocol is missing operations or management solutions.  However, it is the intent that new documents should clearly articulate the operations and management of that new work to fill any such gaps. Some operational and tooling guidance can only be determined through deployment experience. In such cases, authors should document what is reasonably foreseeable at design time.</t>
        <t>A core principle of this document is to encourage early-on discussions rather than mandating any specific solution.
   It does not impose a specific management or operational solution,
   imply that a formal Data Model is needed, or imply that using a specific management
   protocol is mandatory. Specifically, this document does not require developing solutions to accommodate
   identified operational considerations within the document that specifies
   a New Protocol or Protocol Extension itself.</t>
        <t>If Protocol Designers conclude that the technology can be
   managed solely by using Proprietary Interfaces or that it does
   not need any structured or standardized Data Model, this might be fine,
   but it is a decision that should be explicit in an operational considerations discussion
   -- that this is how the protocol will need to be operated and managed.
   Protocol Designers should avoid deferring operations and manageability to a later
   phase of the development of the specification.</t>
        <t>When a WG considers operations and management functionality for a
   protocol, the document should contain enough information for readers
   to understand how the protocol will be deployed, operated, and managed. The considerations
   do not need to be comprehensive and exhaustive; focus should be on key aspects. The WG
   should expect that considerations for operations and management may
   need to be updated in the future, after further operational
   experience has been gained.</t>
        <t>The Ops Directorate (OpsDir) can use this document to inform their reviews. A list of guidelines and a
   checklist of questions to consider, which a reviewer can use to evaluate whether the protocol and
   documentation address common operations and management needs, is provided in <xref target="CHECKLIST"/>.</t>
        <t>Similarly, the Performance Metrics Directorate <xref target="PERFMETRDIR"/> can use this document,
   together with the guidelines in <xref target="RFC6390"/>, to inform reviews of the performance management aspects
   of a New Protocol or Protocol Extension.</t>
        <t>This document is also of interest to the broader community, who wants to understand, contribute to,
   and review Internet-Drafts, taking operational considerations into account.</t>
      </section>
    </section>
    <section anchor="sec-terms">
      <name>Terminology</name>
      <t>This document does not describe interoperability requirements, and, except in <xref target="sec-doc-req-ietf-spec"/>, does not use the capitalized keywords defined in BCP 14.</t>
      <t>This section defines key terms used throughout the document to ensure clarity and consistency. Some terms are drawn from existing RFCs and IETF Internet-Drafts, while others are defined here for the purposes of this document. Where appropriate, references are provided for further reading or authoritative definitions.</t>
      <ul spacing="normal">
        <li>
          <t>Cause: See <xref target="RFC9940"/>.</t>
        </li>
        <li>
          <t>CLI: Command Line Interface. A human-oriented interface, typically
    a Proprietary Interface, to hardware or software devices
    (e.g., hosts, routers, or operating systems). The commands, their syntax,
    and the precise semantics of the parameters may vary considerably
    between different vendors, between products from the same
    vendor, and even between different versions or releases of a single
    product. No attempt at standardizing CLIs has been made by the IETF.</t>
        </li>
        <li>
          <t>Data Model: A set of mechanisms for representing, organizing, storing,
    and handling data within a particular type of data store or repository.
    This usually comprises a collection of data structures such as lists, tables,
    relations, etc., a collection of operations that can be applied to the
    structures such as retrieval, update, summation, etc., and a collection of
    integrity rules that define the legal states (set of values) or changes of
    state (operations on values). A Data Model may be derived by mapping the
    contents of an Information Model or may be developed ab initio. Further
    discussion of Data Models can be found in <xref target="RFC3444"/>, <xref target="sec-interop"/>,
    and <xref target="sec-mgmt-info"/>.</t>
        </li>
        <li>
          <t>Fault: See <xref target="RFC9940"/>.</t>
        </li>
        <li>
          <t>Fault Management: The process of interpreting Fault notifications and other alerts
    and alarms, isolating Faults, correlating them, and deducing underlying
    Causes. See <xref target="sec-fm-mgmt"/> for more information.</t>
        </li>
        <li>
          <t>Information Model: An abstraction and representation of the
    entities in a managed environment, their properties, attributes
    and operations, and the way that they relate to each other. The model is
    independent of any specific software usage, protocol,
    or platform <xref target="RFC3444"/>. See Sections <xref format="counter" target="sec-interop"/> and <xref format="counter" target="sec-im-design"/> for
    further discussion of Information Models.</t>
        </li>
        <li>
          <t>Network Device: A device that implements one or more network
    protocols and participates in network operations. This term
    encompasses a broad range of implementations, including conventional
    network infrastructure equipment (e.g., routers and switches), end
    hosts, Internet of Things (IoT) devices, virtual network functions, and containerized
    workloads. In this document, the term is used generically to mean
    any managed entity implementing the protocol under consideration.</t>
        </li>
        <li>
          <t>New Protocol and Protocol Extension: These terms are used in this document
    to identify entirely new protocols, new versions of existing
    protocols, and extensions to protocols.
    The application of New Protocols and Protocol Extensions to different
    scenarios, and their use in delivering services, procedures, mechanisms,
    or applications, falls within the scope of this definition.</t>
        </li>
        <li>
          <t>OAM: Operations, Administration, and Maintenance <xref target="RFC6291"/>
            <xref target="RFC10014"/> is the term given to the
    combination of:  </t>
          <ol spacing="normal" type="1"><li>
              <t>Operation activities that are undertaken to keep the
network running as intended. They include monitoring of the network.</t>
            </li>
            <li>
              <t>Administration activities that keep track of resources in the
network and how they are used. They include the bookkeeping necessary
to track networking resources.</t>
            </li>
            <li>
              <t>Maintenance activities focused on facilitating repairs and upgrades.
They also involve corrective and preventive measures to make the
managed network run more effectively.</t>
            </li>
          </ol>
          <t>
The broader concept of "operations and management" that is the
 subject of this document encompasses OAM, in addition to other
 management and provisioning tools and concepts. This is
 sometimes known as "OAM and Management" or "O&amp;M" as
 explained in <xref target="RFC6291"/>.</t>
        </li>
        <li>
          <t>Operator: A person or organization responsible for deploying and managing
    systems, services, or networks that run or rely on a protocol implementation.
    This includes, but is not limited to,
    network operators, cloud service administrators, IoT device fleet
    managers, home network administrators, and DNS/NTP server
    administrators. The term "operator" is used throughout this document
    in this broad sense unless the context explicitly requires a narrower
    scope.</t>
        </li>
        <li>
          <t>Performance Metrics: See <xref target="RFC7799"/>.</t>
        </li>
        <li>
          <t>Probable Root Cause: See <xref target="I-D.ietf-nmop-network-incident-yang"/>.</t>
        </li>
        <li>
          <t>Problem: See <xref target="RFC9940"/>.</t>
        </li>
        <li>
          <t>Proprietary Interface: An interface to manage a network element
    that is not standardized. As such, the user interface, syntax, and
    semantics typically vary significantly between implementations.
    Examples of proprietary interfaces include CLI,
    management web portal and Browser User Interface (BUI),
    Graphical User Interface (GUI), and vendor-specific application
    programming interface (API).</t>
        </li>
        <li>
          <t>Protocol Designer: An individual, a group of
    people, or an IETF WG involved in the development and specification
    of New Protocols or Protocol Extensions.</t>
        </li>
        <li>
          <t>Technical Document:
    This includes any document that describes the
    design, specification, implementation, or deployment of a new Protocol or Protocol Extensions.</t>
        </li>
      </ul>
    </section>
    <section anchor="sec-doc-req-ietf-spec">
      <name>Documentation Requirements for IETF Specifications</name>
      <t>Although this document is not a protocol specification, the key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "NOT RECOMMENDED", "MAY", and "OPTIONAL" are used for emphasis in this section and are to be interpreted as described in BCP 14 <xref target="RFC2119"/> <xref target="RFC8174"/> when, and only when, they appear in all capitals, as shown here.</t>
      <section anchor="sec-oper-manag-considerations">
        <name>"Operational Considerations" Section</name>
        <t>All Internet-Drafts that document a technical specification for a New Protocol
   or Protocol Extension or describe their use MUST include an "Operational Considerations" section
   if it is the intention that they will be advanced for publication as IETF RFCs.
   Internet-Drafts that do not document technical specifications, such as process, policy, or administrative
   Internet-Drafts, are not required to include such a section.</t>
        <t>After evaluating the operational (<xref target="sec-oper-consid"/>) and manageability (<xref target="sec-mgmt-consid"/>) aspects of a New
   Protocol or Protocol Extension, the resulting practices and
   requirements should be documented
   in an "Operational Considerations" section within the
   specification. Since protocols are intended for operational deployment and
   management within real networks, it is expected that such considerations
   will be present.</t>
        <t>It is also recommended that operational and manageability considerations
   be addressed early in the protocol design process. Consequently, early
   revisions of Internet-Drafts are highly encouraged to include an "Operational
   Considerations" section.</t>
        <t>An "Operational Considerations" section should include a discussion of
   the management and operations topics raised in this document.
   When one or more of these topics is not relevant, it would be helpful
   to include a brief statement explaining why it is not
   relevant or applicable for the New Protocol or Protocol Extension.
   Of course, additional relevant operational and manageability topics
   should be included as well. A concise checklist of key questions is
   provided in <xref target="sec-checklist"/>.</t>
        <t>The section is always present. What it contains depends on the case:</t>
        <ul spacing="normal">
          <li>
            <t>Where the New Protocol or Protocol Extension raises operational and
manageability considerations, the section discusses the relevant
topics raised in this document.</t>
          </li>
          <li>
            <t>Where one or more of those topics is not relevant, the section
briefly explains why.</t>
          </li>
          <li>
            <t>Where there are no new operations or manageability requirements at
all, the section contains the statement in <xref target="sec-null-sec"/>, followed
by a brief rationale.</t>
          </li>
          <li>
            <t>Where the considerations are already described in other parts of the
same document, the section summarizes them and points to the relevant
sections rather than repeating the material.</t>
          </li>
          <li>
            <t>Where the considerations require significant text and are presented in
a separate document, the section contains a short overview and a
normative reference to that document, as described in
<xref target="sec-this-doc"/>.</t>
          </li>
        </ul>
        <t>For New Protocol or Protocol Extension specifications that contain
  Data Models (e.g., YANG) and other schema artifacts (JSON schema, YAML, CDDL, etc.), such artifacts
  may be consumed out of the RFCs that specify them. As such, it is recommended
  that operational aspects for a Data Model (and similar artifacts) are
  documented as part of the model itself. Such considerations should not be
  duplicated in the narrative part of a specification that includes such artifacts.</t>
        <t>For example:</t>
        <ul empty="true">
          <li>
            <t>Readers may refer to the following non-exhaustive list for examples of specifications, covering various areas,
with adequate documentation of operational considerations, including manageability: <xref target="RFC9953"/>,
<xref target="I-D.ietf-suit-mti"/>, <xref target="RFC9937"/>, <xref target="RFC7574"/>, <xref target="RFC9877"/>, and <xref target="RFC9552"/>.
Given the various available transport alternatives, <xref target="RFC9953"/> discusses co-existence with
those and clarifies some key deployment aspects such as redirection, forwarding loop prevention, and error handling.
Also, <xref target="I-D.ietf-ippm-ioam-integrity-yang"/> is an example of a document that follows
the above guidance by documenting operational aspects as part of the YANG module itself.</t>
          </li>
        </ul>
        <t>For architecture documents, an "Operational Considerations" section is expected only where the architecture introduces new operational considerations with normative implications for downstream protocol designs. When included, it should focus on describing the intended deployment environment, assumptions about network operations, potential impacts on existing operational practices, and any high-level requirements that future protocol designs should address. It is not expected to detail specific configuration parameters or management interfaces unless they are integral to the architecture itself. If the architecture document does not introduce new operational considerations, the exemption statement in <xref target="sec-null-sec"/> applies.</t>
      </section>
      <section anchor="sec-null-sec">
        <name>"Operational Considerations" Section Boilerplate When No New Considerations Exist</name>
        <t>After a Protocol Designer has considered the manageability
   requirements of a New Protocol or Protocol Extension, they may determine that no
   management functionality or operational best-practice clarifications are
   needed. It would be helpful to
   reviewers, those who may update or write extensions to the protocol in the
   future, and those deploying the protocol, to know the rationale
   for the decisions on the protocol's manageability at the
   time of its design.</t>
        <t>If there are no new manageability or deployment considerations, the "Operational Considerations" section
   MUST contain the following simple statement, followed by a brief explanation of
   why that is the case.</t>
        <artwork><![CDATA[
  "There are no new operations or manageability requirements introduced
    by this document.

    [Brief rationale goes here]"
]]></artwork>
        <t>The presence of such a
   section would indicate to the reader that due
   consideration has been given to manageability and operations.</t>
        <t>When the specification is a Protocol Extension, and the base protocol
   already addresses the relevant operational and manageability
   considerations, it is helpful to reference the considerations section
   of the base document.</t>
      </section>
      <section anchor="sec-placement-sec">
        <name>Placement of the "Operational Considerations" Section</name>
        <t>It is recommended that the section be
   placed immediately before the Security Considerations section.
   Reviewers interested in this section will find it easily, and this
   placement could simplify the development of tools to detect its
   presence.</t>
      </section>
      <section anchor="sec-changes-since-5706">
        <name>Changes Since RFC 5706</name>
        <t>The following changes have been made to the guidelines published in  <xref target="RFC5706"/>:</t>
        <ul spacing="normal">
          <li>
            <t>Change intended status from Informational to Best Current Practice</t>
          </li>
          <li>
            <t>Indicate that this document updates RFC 2360 and add the relevant updated text</t>
          </li>
          <li>
            <t>Move the "Operational Considerations" checklist in <xref section="A" sectionFormat="of" target="RFC5706"/> to a Checklist <xref target="CHECKLIST"/> maintained in GitHub</t>
          </li>
          <li>
            <t>Add a concise "Operational Considerations Checklist" appendix (<xref target="sec-checklist"/>) with key questions that should be addressed in protocol specifications</t>
          </li>
          <li>
            <t>Add a requirement for an "Operational Considerations" section in all new RFCs that document a technical specification for a New Protocol or Protocol Extension or describe their use in the IETF Stream, along with specific guidance on its content.</t>
          </li>
          <li>
            <t>Update the operational and manageability-related technologies to reflect over 15 years of advancements  </t>
            <ul spacing="normal">
              <li>
                <t>Provide focus and details on YANG-based standards, deprioritizing MIB Modules.</t>
              </li>
              <li>
                <t>Add a "YANG Data Model Considerations" section</t>
              </li>
              <li>
                <t>Update the "Available Management Technologies" landscape</t>
              </li>
            </ul>
          </li>
          <li>
            <t>Add an "Operational and Management Tooling Considerations" section</t>
          </li>
        </ul>
      </section>
      <section anchor="sec-2360-update">
        <name>Update to RFC 2360</name>
        <t>This document replaces this text from Section <xref target="RFC2360" section="2.14" sectionFormat="bare"/> of RFC 2360 <xref target="BCP22"/>:</t>
        <blockquote>
          <t>When relevant, each standard needs to discuss how to manage the
protocol being specified.  This management process should be
compatible with the current IETF Standard management protocol.  In
addition, a MIB must be defined within the standard or in a companion
document.  The MIB must be compatible with current Structure of
Management Information (SMI) and parseable using a tool such as
SMICng.  Where management or a MIB is not necessary this section of
the standard should explain the reason it is not relevant to the
protocol.</t>
        </blockquote>
        <t>with the following:</t>
        <blockquote>
          <t>When relevant, each standard needs to discuss how to manage the
protocol being specified. Refer to RFC XXXX for holistic manageability and operational
considerations.</t>
        </blockquote>
        <ul empty="true">
          <li>
            <t>Note to the RFC Editor: Please replace RFC XXXX with the RFC number to be assigned to this document.</t>
          </li>
        </ul>
      </section>
    </section>
    <section anchor="sec-oper-consid">
      <name>How Will the New Protocol or Protocol Extension Fit into the Current Environment?</name>
      <t>Designers of a New Protocol or Protocol Extension should carefully consider the operational
   aspects of real-world deployments, which can directly
   impact its success. Such aspects include
   interactions with existing solutions, upgrade or deployment paths,
   the ability to debug problems, ease of configuration,
   and a state diagram that operations
   staff can understand. This exercise
   need not be reflected directly in their document, but could help visualize how
   to apply the protocol in the environments where it will be deployed.
   <xref target="RFC5218"/> provides a more detailed discussion on what makes for a successful protocol.</t>
      <t>Not every operational consideration can be foreseen at design time. Some considerations reside in how a specification is applied and deployed rather than in the specification itself, and may only become apparent once operational experience has been gained.  In some cases, the relevant questions are not even known in advance. Authors should document what is reasonably foreseeable without speculating, and should expect that operational considerations may need to be revisited as deployment experience accumulates.</t>
      <t>For example:</t>
      <ul empty="true">
        <li>
          <t>BGP flap damping <xref target="RFC2439"/> was designed to block high-frequency route flaps. Some BGP implementations were memory-constrained and elected not to support this function. Others found a conflict where path exploration caused false flap damping resulting in loss of reachability. As a result, flap damping was often not enabled network-wide, contrary to the intentions of the original designers. This behavior emerged only from operational experience at scale, and little text written at design time would have changed the outcome.</t>
        </li>
      </ul>
      <section anchor="sec-install">
        <name>Installation and Initial Setup</name>
        <t>Anything that can be configured can be misconfigured.
   <xref section="3.8" sectionFormat="of" target="RFC1958"/> ("Architectural Principles of the Internet")
   states:</t>
        <blockquote>
          <t>Avoid
   options and parameters whenever possible. Any options and parameters
   should be configured or negotiated dynamically rather than manually.</t>
        </blockquote>
        <t>The New Protocol or Protocol Extension should be able to operate "out of the box".
   To simplify configuration, Protocol Designers should
   specify reasonable defaults, including default modes and
   parameters. For example, define
   default values for modes, timers, default state of logical control
   variables, default transports, and so on.</t>
        <t>Protocol Designers should explain the background of the chosen default
   values and provide the rationale.
   In many cases, as
   technology changes, the documented values might make less and less
   sense. It is helpful to understand whether defaults are based on
   best current practice and are expected to change as technologies
   advance, or whether they have a more universal value that should not
   be changed lightly. For example, the default interface speed might
   change over time as network speeds increase,
   and cryptographic algorithms might be expected to change
   over time as older algorithms are "broken".</t>
        <t>Default values should generally favor the conservative side over the
   "optimizing performance" side (e.g., the initial Round-Trip Time (RTT) and
   Round-Trip Time Variance (RTTVAR) values of a TCP connection <xref target="RFC6298"/>).</t>
        <t>For parameters that can vary (e.g., speed-dependent), instead of using a
   constant, set the default value as a function of the
   variable to reduce the
   risk of problems caused by technology advancement.</t>
        <t>It must always be possible for an operator to retrieve the actual value in use,
   to determine that the element is running at a known
   default. This is important for troubleshooting, auditing, and ensuring
   consistent behavior across implementations.</t>
        <t>For example:</t>
        <ul empty="true">
          <li>
            <t>Where protocols involve cryptographic keys, Protocol Designers should
   consider not only key generation and validation mechanisms but also the
   format in which private keys are stored, transmitted, and restored.
   Designers should specify any expected consistency checks
   (e.g., recomputing an expanded key from the seed) that help verify
   correctness and integrity. Additionally, guidance should be given on
   data retention, restoration limits, and cryptographic module
   interoperability when importing/exporting private key material. Refer to <xref target="RFC9881"/> for an example of how such considerations are incorporated.</t>
          </li>
        </ul>
      </section>
      <section anchor="sec-migration">
        <name>Migration Path</name>
        <t>If the New Protocol or Protocol Extension is a new version of an existing one, or if it is
   replacing another technology, the Protocol Designer should consider
   how deployments should transition to the New Protocol or Protocol
   Extension. This should include coexistence with previously deployed
   protocols and/or previous versions of the same protocol, management of
   incompatibilities between versions, translation between versions,
   and consideration of potential side effects. A key question is:
   Are older protocols or versions disabled, or do they coexist
   with the New Protocol or Protocol Extension in the network?</t>
        <t>Many protocols benefit from being incrementally deployable, either from topology, temporal, or feature-set perspectives --
   operators may deploy some aspects of a protocol before deploying
   it fully, or may deploy to only some nodes in a network before applying
   to all nodes in the network. In those cases, the operational considerations should
   also specify whether the New Protocol or Protocol Extension requires any changes to
   the existing infrastructure, particularly the network.
   If so, the protocol specification should describe the nature of those
   changes, where they are required, and how they can be introduced in
   a manner that facilitates deployment. Where possible, backward-compatible approaches
   should be preferred over non-backward-compatible ones, since they typically provide a
   smoother migration path with lower cost and impact on existing deployments.</t>
        <t>Security operations (<xref target="sec-impact-secops"/>) are important to ensure the stability and security of networks. Good security operation practices should be encouraged when migrating to a New Protocol or Protocol Extension. For example, patching (i.e., installing new versions that have fixes for security vulnerabilities) is fundamental for security operations, and can be made much easier if Protocol Designers consider supporting cheap and fast connection hand-offs and reconnections.</t>
        <t>When Protocol Designers are considering how deployments should transition to the New Protocol or Protocol Extension, impacts to current techniques employed by operators should be documented and mitigations included, where possible, so that consistent security operations and management can be achieved. Note that transitioning between security mechanisms can be challenging, but it is not desirable to take an easier approach if that leaves data in an open or less-protected
state during the transition.
   Refer to <xref target="RFC8170"/> for a detailed discussion on transition versus coexistence.</t>
      </section>
      <section anchor="sec-other">
        <name>Requirements on Other Protocols and Functional Components</name>
        <t>Protocol Designers should consider the requirements that the New
   Protocol might put on other protocols and functional components and
   should also document the requirements from other protocols and
   functional components that have been considered in designing the New
   Protocol.</t>
        <t>These considerations should generally remain illustrative to avoid
   creating restrictions or dependencies, or potentially impacting the
   behavior of existing protocols, or restricting the extensibility of
   other protocols, or assuming other protocols will not be extended in
   certain ways. If restrictions or dependencies exist, they should be
   stated.</t>
        <t>Where a New Protocol or Protocol Extension depends on another protocol or component to function correctly, that dependency is a normative property of the specification and belongs in its main body rather than only in the "Operational Considerations" section, so that implementers and operators can identify it easily. For example, if correct operation relies on an accurate time source (such as NTP <xref target="RFC5905"/>), the specification should state that requirement, and the acceptable means of satisfying it, explicitly.</t>
        <t>Another example:</t>
        <ul empty="true">
          <li>
            <t>The design of the Resource ReSerVation Protocol (RSVP)
   <xref target="RFC2205"/> required each router to look at the RSVP PATH message and,
   if the router understood RSVP, add its own address to the message to
   enable automatic tunneling through non-RSVP routers. But in reality,
   routers cannot look at an otherwise normal IP packet and potentially
   take it off the fast path! The initial designers overlooked that a
   new "deep-packet inspection" requirement was being put on the
   functional components of a router. The "router alert" option
   (<xref target="RFC2113"/>, <xref target="RFC2711"/>) was finally developed to solve this problem,
   for RSVP and other protocols that require the router to take some
   packets off the fast-forwarding path. Yet, Router Alert has its own
   problems in impacting router performance and security. Refer to <xref target="RFC9805"/> for
   deprecation of the IPv6 Router Alert Option for New Protocols and
   Section <xref target="RFC7126" section="4.8" sectionFormat="bare"/> of RFC 7126 <xref target="BCP186"/> for threats and advice related to IPv4 Router Alert.</t>
          </li>
        </ul>
      </section>
      <section anchor="sec-impact">
        <name>Impact on Network Operation</name>
        <t>The introduction of a New Protocol or Protocol Extension may
   have an impact on the operation of existing networks, as well as on the
   hosts, devices, and systems that implement or depend on the protocol.
   As discussed in <xref section="2.1" sectionFormat="of" target="RFC6709"/>
   major extensions may have characteristics leading to a risk of
   operational
   problems. Protocol
   Designers should outline such operational impacts (which may be positive),
   including scaling benefits or concerns, and interactions with other protocols.
   Protocol Designers should describe the scenarios in which the New
   Protocol or its extensions are expected to be applicable or
   beneficial. This includes any relevant deployment environments,
   network topologies, usage constraints such as limited domains
   <xref target="RFC8799"/>, or use cases that justify or constrain adoption.
   For example, a New Protocol or Protocol Extension that doubles the number of active,
   reachable addresses in a network might have implications for the
   scalability of interior gateway protocols, and such impacts should
   be evaluated accordingly. Per Section <xref target="RFC2360" section="2.15" sectionFormat="bare"/> of RFC 2360 <xref target="BCP22"/>, New Protocol or Protocol Extension specifications
   should establish the limitations on the scale of use and limits on the resources used.</t>
        <t>If the protocol specification requires changes to end hosts or network
   infrastructure, it should indicate whether safeguards exist to protect
   both end hosts and devices and the broader network from potential
   overload. Moreover, per Section <xref target="RFC2360" section="2.16" sectionFormat="bare"/> of RFC 2360 <xref target="BCP22"/>, New Protocol
   or Protocol Extension specifications should address any possible destabilizing events,
   and means by which the protocol resists or recovers from them. For instance, a congestion control algorithm must
   comply with <xref target="BCP133"/> to prevent congestion collapse and ensure
   network stability.</t>
        <t>A protocol could send active monitoring packets on the wire. Without careful
   consideration, active monitoring might achieve high accuracy at the cost of
   generating an excessive number of monitoring packets.</t>
        <t>Protocol Designers should consider the potential impact on the
   behavior of other protocols in the network and on the traffic levels
   and traffic patterns that might change, including specific types of
   traffic, such as multicast. Also, consider the need to install new
   components that are added to the network as a result of changes in
   the configuration, such as servers performing auto-configuration
   operations.</t>
        <t>Protocol Designers should also consider the impact on infrastructure
   applications such as the DNS <xref target="RFC1034"/>, the
   registries, or the size of routing tables.</t>
        <t>For example:</t>
        <ul empty="true">
          <li>
            <t>Some SMTP <xref target="RFC5321"/> server deployments use a reverse DNS lookup to filter
   out incoming connection requests: when Berkeley installed a new spam filter that used reverse DNS lookup,
   their mail server stopped functioning because of overload of the DNS
   cache resolver.</t>
          </li>
        </ul>
        <t>The impact of New Protocols or Protocol Extensions, and the results
of new OAM tools developed for them,
must be considered with respect to
traffic delivery performance and ongoing manageability. For
example, it must be noted whether the New Protocol, Protocol Extension,
or OAM tools cause increased delay or jitter in real-time traffic
applications, or increased response time in client-server
applications. Further, if the additional traffic caused by OAM tools
and data collection could result in the management plane becoming
overwhelmed, then this must be called out, and suitable mechanisms to
rate limit the OAM traffic must be considered. Potential options include: document the limitations, propose solution track(s), include an optional rate limiting feature in the specifications, or impose a rate limiting feature in the specifications.</t>
        <t>For example:</t>
        <ul empty="true">
          <li>
            <t>(1) In Bidirectional Forwarding Detection (BFD) for MPLS <xref target="RFC5884"/> it is
possible to configure very rapid BFD transmissions (of the order of
3ms) on a very large number of parallel Label Switched Paths (LSPs)
with the result that the management systems and end nodes may become
overwhelmed -- this can be protected by applying limits to
the number of LSPs that may be tested at once.</t>
            <t>(2) Notifications or logs from systems (through YANG or other means)
should be rate-limited so that they do not flood the receiving
management station.</t>
            <t>(3) The application of sophisticated encryption or filtering rules
needs to be considered in the light of the additional processing
they may impose on the hardware forwarding path for traffic.</t>
          </li>
        </ul>
        <t>New metrics may be required to assess traffic performance. Protocol Designers may refer to <xref target="RFC6390"/> for guidelines for considering new performance metrics.</t>
        <t>Protocol Designers should account for MTU constraints when designing protocols that carry management traffic or measurement data, including any reduction in effective payload size introduced by tunnel or encapsulation overhead. <xref target="RFC8899"/> specifies path MTU discovery for datagram transports, and <xref section="6.1" sectionFormat="of" target="RFC8900"/> gives recommendations for protocol developers on avoiding reliance on IP fragmentation.</t>
      </section>
      <section anchor="sec-impact-secops">
        <name>Impact on Security Operations</name>
        <t>Security Operations (SecOps) is a collaborative approach that combines security and operational teams to improve the ability of operators to protect and manage the network effectively and efficiently <xref target="SECOPS"/>. Security operators detect malicious activity and respond to threats and are a crucial part of defending against attacks alongside the management and operation of the network.</t>
        <t>Protocol Designers should consider the impacts of a New Protocol or Protocol Extension on Security Operations in networks that the protocol will be deployed in.</t>
        <t>Security operators extensively rely upon Indicators of Compromise (IoCs) <xref target="RFC9424"/>. The deployment of a New Protocol or Protocol Extension may change the type, locations, or availability of IoCs. Protocol Designers should outline such changes to ensure operators can manage and defend their networks, systems, and devices consistently.
Consider the operators' requirement for digital forensics from the network or endpoints with critical information found in logs. Logging events schema and guidance for operators should be considered when designing a New Protocol or Protocol Extension to ensure operators have the information they need. <xref target="I-D.ietf-quic-qlog-main-schema"/> is an example of extensible structured logging.</t>
        <t>An increasing number of New Protocols and Protocol Extensions encrypt metadata that was previously available to passive inspection, such as QUIC <xref target="RFC9000"/>, TLS 1.3 <xref target="RFC9846"/>, Encrypted Client Hello <xref target="RFC9849"/>, and DNS over HTTPS (DoH) <xref target="RFC8484"/>. This creates a tension between the privacy goals of such protocols and the visibility that security operators have historically relied upon. Protocol Designers should acknowledge this tension and, where passive visibility is reduced, consider alternative diagnostic mechanisms, such as endpoint-based telemetry or logging, that preserve operators' ability to detect and respond to threats without undermining the protocol's privacy objectives.</t>
        <t>Tooling needed by security operators should be considered when designing and deploying a New Protocol or Protocol Extension. Operators may require new tooling or methods for managing network traffic in response to protocol changes to ensure consistent availability and performance of networks. Similarly, updating and augmenting existing forensic tools such as protocol dissectors is expected when a New Protocol is deployed, but having to completely rebuild such tooling would greatly reduce the effectiveness of security operators, so protocol extensibility should be considered. The absence of such tooling is not, by itself, a reason to delay publication of the specification. Indicators of compromise, and the means to detect exploitation, tend to evolve only as operational experience accumulates and as attacks emerge.  Detailed forensic and tooling guidance may therefore be developed after the protocol is specified and is expected to be refined over time (see also <xref target="sec-oper-mgmt-tooling"/>).</t>
        <t>For further information on the security operations considerations discussed in this section, refer to <xref target="I-D.parsons-opsawg-security-operations"/>.</t>
      </section>
      <section anchor="sec-oper-verify">
        <name>Verifying Correct Operation</name>
        <t>An important function that should be provided is guidance on how to
   verify the correct operation of a protocol. A Protocol Designer
   may suggest testing techniques for qualifying and quantifying the impact of the protocol on
   the network before it is partially or fully deployed, as well as testing techniques for
   identifying the effects that the protocol might have on the network after being
   deployed.</t>
        <t>Protocol Designers should consider techniques for testing the
   effect the protocol has had on the infrastructure by sending data
   through it and observing its behavior (also known as active
   monitoring). Protocol Designers should consider how the correct
   end-to-end operation of the New Protocol or Protocol Extension can be tested
   actively and passively, and how the correct data- or forwarding-plane
   function of each involved element can be verified to be working
   correctly with the New Protocol or Protocol Extension.</t>
        <t>Protocol Designers should consider how to test the correct end-to-end
   operation of the service or network, how to verify correct
   protocol behavior, and whether such verification is achieved by testing
   the service function and/or the forwarding function of
   each network element. This may be accomplished through the collection of status and
   statistical information gathered from devices.</t>
        <t>Having simple protocol status and health indicators on involved
   devices is a recommended means to check correct operation.</t>
      </section>
      <section anchor="sec-messages">
        <name>Message Formats</name>
        <t>Where protocol specifications result in messages (such as errors or warnings) being carried as text strings or output for consumption by human operators, consideration should be given to making it possible for implementations to be configured so that the messages can be viewed in the local language. In such cases, it is helpful to transmit a specific message code (i.e., a number) along with the message text, and to include a language tag (as described in <xref target="BCP47"/>) to enable correct identification and rendering in the appropriate language. Protocol specifications should not assume English as the default language.</t>
        <t>Further discussion of Internationalization issues may be found in <xref target="BCP166"/>.</t>
      </section>
    </section>
    <section anchor="sec-mgmt-consid">
      <name>How Will the Protocol Be Managed?</name>
      <t>The considerations of manageability should start from identifying the
   entities to be managed, as well as how the managed protocol is
   supposed to be installed, configured, and monitored.</t>
      <t>Considerations for management should describe what aspects of the system
   require management and the management functions that need to be
   supported. This includes identifying any assumptions or constraints
   relevant to management interactions, such as the types of interfaces or
   protocols required. These considerations should avoid dependence on a
   specific management deployment model and should remain applicable
   regardless of where management systems are located or how they are
   accessed.</t>
      <t>The management model should take into account factors such as:</t>
      <ul spacing="normal">
        <li>
          <t>What type of management entities will be involved (agents, network
management systems)?</t>
        </li>
        <li>
          <t>What is the possible architecture (client-server, manager-agent,
poll-driven or event-driven, auto-configuration, two-levels or
hierarchical)?</t>
        </li>
        <li>
          <t>What are the management operations (initial configuration, dynamic
configuration, alarm and exception reporting, logging, performance
monitoring, performance reporting, debugging)?</t>
        </li>
        <li>
          <t>How are these operations performed (locally, remotely, atomic
operation, scripts)? Are they performed immediately or are they
time scheduled, or event triggered?</t>
        </li>
      </ul>
      <t>Protocol Designers should consider how the New Protocol or Protocol Extension will be
   managed in different deployment scales. It might be sensible to use
   a local management interface to manage the New Protocol or Protocol Extension on a single
   device, but in a large network, remote management using a centralized
   server and/or using distributed management functionality might make
   more sense. Auto-configuration and default parameters might be
   possible for some New Protocols or Protocol Extensions.</t>
      <t>Management needs to be considered not only from the perspective of a
   device, but also from the perspective of network and service
   management. A service might be network and operational functionality
   derived from the implementation and deployment of a New Protocol or Protocol Extension.
   Often, an individual network element is unaware of the service being
   delivered.</t>
      <t>WGs should consider how to configure multiple related/co-operating
   devices and how to back off if one of those configurations fails or
   causes trouble. Network Configuration Protocol (NETCONF) <xref target="RFC6241"/>
   addresses this in a generic manner
   by allowing an operator to lock the configuration on multiple
   devices, perform the configuration settings/changes, check that they
   are OK (undo if not), and then unlock the devices.</t>
      <t>Techniques for debugging protocol interactions in a network must be
   part of the network management discussion. Implementation source
   code should be debugged before ever being added to a network, so
   asserts and memory dumps do not normally belong in management data
   models. However, debugging on-the-wire interactions is a protocol
   issue: while the messages can be seen by sniffing, it is enormously
   helpful if a protocol specification supports features that make
   debugging of network interactions and behaviors easier. There could
   be alerts issued when messages are received or when there are state
   transitions in the protocol state machine. However, the state
   machine is often not part of the on-the-wire protocol; the state
   machine explains how the protocol works so that an implementer can
   decide, in an implementation-specific manner, how to react to a
   received event.</t>
      <t>In a client/server protocol, it may be more important to instrument
   the server end of a protocol than the client end, since the
   performance of the server might impact more nodes than the
   performance of a specific client.</t>
      <t>A model of manageable objects, whether a MIB module or a YANG
   Device, Network, or Service Model (<xref target="sec-yang-dm"/>), describes what
   can be managed. It does not describe how to manage it. The 2002 IAB
   Network Management Workshop observed that MIB modules could often
   be characterized as a list of ingredients without a recipe
   <xref target="RFC3535"/>. A YANG module invites the same criticism when it is
   developed without regard for how it will be used operationally, and
   even a full set of Device, Network, and Service Models remains a
   list of ingredients until it is paired with guidance for how the
   protocol is monitored, configured, accounted for, measured, and
   secured. The subsections from <xref target="sec-fm-mgmt"/> through <xref target="sec-security-mgmt"/>
   provide that guidance, organized following
   the Fault, Configuration, Accounting, Performance, and Security (FCAPS) network management
   framework.</t>
      <section anchor="sec-mgmt-tech">
        <name>Available Management Technologies</name>
        <t>The IETF provides several standardized management protocols suitable for
   various operational purposes, for example as outlined in <xref target="RFC6632"/>.
   Note that SNMP is no longer recommended for configuration (read-write)
   operations.  Better programmatic alternatives are discussed
   further in Section <xref format="counter" target="sec-interop"/>. This document formally deprecates the following recommendation from <xref target="BCP22"/>:</t>
        <blockquote>
          <t>a MIB must be defined within the standard or in a companion document.</t>
        </blockquote>
        <t>Data collection practice has evolved substantially since <xref target="RFC6632"/> was
   published. Designers should also consider mechanisms developed since,
   including the BGP Monitoring Protocol (BMP) <xref target="RFC7854"/>, subscription to
   YANG notifications <xref target="RFC8639"/> <xref target="RFC8641"/>, and the alarm management
   model <xref target="RFC8632"/>; <xref target="RFC9232"/> provides a framework relating these to
   one another.</t>
        <t>Readers seeking more in-depth definitions or explanations should consult
   the referenced materials.</t>
      </section>
      <section anchor="sec-interop">
        <name>Interoperability</name>
        <t>Management interoperability is critical for enabling information exchange
   and operations across diverse network devices and management applications,
   regardless of vendor, model, or software release. It facilitates the use
   of third-party applications and outsourced management services.</t>
        <t>While individual device management via Proprietary Interfaces may
   suffice for small deployments, large-scale networks comprising equipment
   from multiple vendors necessitate consistent, automated management.
   Relying on vendor- and model-specific interfaces for extensive deployments,
   such as hundreds of branch offices, severely impedes scalability and automation
   of operational processes. The primary goal of management interoperability is to
   enable the scalable deployment and lifecycle management of new network functions
   and services, while ensuring a clear understanding of their operational impact
   and total cost of ownership.</t>
        <t>Achieving universal agreement on a single management syntax and protocol is
   challenging. However, the IETF has significantly evolved its approach to
   network management, moving beyond Structure of Management Information
   version 2 (SMIv2) and SNMP. Modern IETF management solutions primarily
   leverage YANG <xref target="RFC7950"/> for Data Modeling and NETCONF <xref target="RFC6241"/> or
   RESTful Configuration Protocol (RESTCONF) <xref target="RFC8040"/> for protocol
   interactions. This shift, as further elaborated in <xref target="RFC6632"/>, emphasizes
   structured Data Models and programmatic interfaces to enhance automation and
   interoperability. Other protocols, such as IP Flow Information Export
   (IPFIX) <xref target="RFC7011"/> for flow accounting and syslog (System Logging
   Protocol) <xref target="RFC5424"/> for logging, continue to play specific roles in
   comprehensive network management.</t>
        <t>Interoperability must address both syntactic and semantic aspects. While syntactic variations
   across implementations can often be handled through adaptive processing, semantic differences pose a
   greater challenge, as the meaning of data is intrinsically tied to the managed entity.</t>
        <t>Information Models (IMs) enable and provide the foundation for semantic interoperability. An IM defines the
   conceptual understanding of managed information, independent of specific protocols or vendor
   implementations. This allows for consistent interpretation and correlation of data across different
   Data Models (and hence management protocols), such as a YANG Data Model and IPFIX Information Elements concerning the same
   event. For instance, an IM can standardize how error conditions are counted, ensuring that a counter
   has the same meaning whether collected via NETCONF or exported via IPFIX.</t>
        <t>Protocol Designers should consider developing an IM, when multiple Data Model (DM)
   representations (e.g., YANG and/or IPFIX) are required, to ensure lossless
   semantic mapping. IMs are also beneficial for complex or numerous DMs. As illustrated in <xref target="fig-im-dm"/>, an
   IM serves as a conceptual blueprint for designers and operators, from which concrete DMs are derived
   for implementers. <xref target="RFC3444"/> provides further guidance on distinguishing IMs from DMs.</t>
        <figure anchor="fig-im-dm">
          <name>Information Models (IMs) and Data Models (DMs)</name>
          <artset>
            <artwork type="svg" align="center"><svg xmlns="http://www.w3.org/2000/svg" version="1.1" height="144" width="464" viewBox="0 0 464 144" class="diagram" text-anchor="middle" font-family="monospace" font-size="13px" stroke-linecap="round">
                <path d="M 8,64 L 8,80" fill="none" stroke="black"/>
                <path d="M 96,48 L 96,80" fill="none" stroke="black"/>
                <path d="M 176,64 L 176,80" fill="none" stroke="black"/>
                <path d="M 232,32 L 248,32" fill="none" stroke="black"/>
                <path d="M 8,64 L 176,64" fill="none" stroke="black"/>
                <path d="M 232,96 L 248,96" fill="none" stroke="black"/>
                <polygon class="arrowhead" points="256,96 244,90.4 244,101.6" fill="black" transform="rotate(0,248,96)"/>
                <polygon class="arrowhead" points="256,32 244,26.4 244,37.6" fill="black" transform="rotate(0,248,32)"/>
                <g class="text">
                  <text x="100" y="36">IM</text>
                  <text x="336" y="36">conceptual/abstract</text>
                  <text x="440" y="36">model</text>
                  <text x="272" y="52">for</text>
                  <text x="328" y="52">designers</text>
                  <text x="376" y="52">&amp;</text>
                  <text x="424" y="52">operators</text>
                  <text x="12" y="100">DM</text>
                  <text x="100" y="100">DM</text>
                  <text x="180" y="100">DM</text>
                  <text x="328" y="100">concrete/detailed</text>
                  <text x="424" y="100">model</text>
                  <text x="296" y="116">for</text>
                  <text x="364" y="116">implementers</text>
                </g>
              </svg>
            </artwork>
            <artwork type="ascii-art" align="center"><![CDATA[
           IM               --> conceptual/abstract model
           |                    for designers & operators
+----------+---------+
|          |         |
DM         DM        DM     --> concrete/detailed model
                                   for implementers

]]></artwork>
          </artset>
        </figure>
        <t>Protocol Designers must identify the essential operational, configuration, state, and statistical
   information required for effective monitoring, control, and troubleshooting of New Protocols or Protocol Extensions.
   This includes defining relevant parameters, performance metrics, error indicators,
   and contextual data crucial for diagnostics and lifecycle management.</t>
        <t>To ensure interoperability, management protocol and Data Model standards should incorporate clear
   compliance clauses, specifying the expected level of support.</t>
      </section>
      <section anchor="sec-mgmt-info">
        <name>Management Information</name>
        <t>Languages used to describe an Information Model can influence the
   nature of the model. Using a particular data modeling language, such
   as YANG, influences the model to use certain types of structures, for
   example, hierarchical trees, groupings, and reusable types.
   YANG, as described in <xref target="RFC6020"/> and <xref target="RFC7950"/>, provides advantages
   for expressing network information, including clear separation of
   configuration data and operational state, support for constraints and
   dependencies, and extensibility for evolving requirements. Its ability
   to represent relationships and dependencies in a structured and modular
   way makes it an effective choice for defining management information
   models.</t>
        <t>While an Information Model is typically described in English text
   (or sometimes the Unified Modeling Language (UML)) to define the conceptual
   management requirements,
   authors may choose to express it using YANG Data Structure Extensions <xref target="RFC8791"/>
   as described in <xref target="sec-im-design"/>.  Using YANG for the Information Model can make
   it easier to link abstract concepts to concrete data types in the corresponding Data Model,
   helping maintain consistency between high-level design and practical deployment.</t>
        <t>A management Information Model should include a discussion of what is
   manageable, which aspects of the protocol need to be configured, what
   types of operations are allowed, what protocol-specific events might
   occur, which events can be counted, and for which events an operator
   should be notified.</t>
        <t>There may be a need to support both CLI (e.g., for
   troubleshooting) and a programmatic interface (e.g., for automated
   monitoring and Cause analysis). The APIs and CLI should
   expose consistent information so that an operator receives the same
   view of the protocol state regardless of which interface is used.
   Counter definitions, in particular, should be unambiguous and
   consistently defined across both types of interface.</t>
        <t>When defining management information, it is important to categorize
   data into configuration, operational state, and statistics. Conflating
   these distinct types into a single element makes it difficult for operators
   to distinguish between administratively set values and the dynamic state of
   the protocol. The model should be structured to allow these categories to be
   handled independently.</t>
        <t>What is typically difficult to work through are relationships between
   abstract objects. Ideally, an Information Model would describe the
   relationships between the objects and concepts in the information
   model.</t>
        <t>Is there always just one instance of this object or can there be
   multiple instances? Does this object relate to exactly one other
   object, or may it relate to multiple? When is it possible to change a
   relationship?</t>
        <t>Do objects (such as instances in lists) share fate? For example, if an
   instance in list A must exist before a related instance in list B can be
   created, what happens to the instance in list B if the related instance in
   list A is deleted? Does the existence of relationships between
   objects have an impact on fate sharing? YANG's relationships and
   constraints can help express and enforce these relationships.</t>
        <section anchor="sec-im-design">
          <name>Information Model Design</name>
          <t>This document recommends keeping the Information Model as simple as
   possible by applying the following criteria:</t>
          <ol spacing="normal" type="1"><li>
              <t>Start with a small set of essential objects and make additions only as
further objects are needed, with the objective of keeping the absolute
number of objects as small as possible while still delivering the
required function. Essential objects are those needed to answer the
diagnostic, configuration, and operational questions the protocol is
expected to support; objects that are technically accessible but do not
serve these functions should be excluded. There should be no duplication
between objects, and where one piece of information can be derived from
other pieces of information, it should not itself be represented as an
object.</t>
            </li>
            <li>
              <t>Verify that each object serves a distinct management purpose and cannot
be derived from other objects already in the model. Objects that are
redundant or that conflate multiple concerns should be split or
eliminated.</t>
            </li>
            <li>
              <t>Consider evidence of current use of the managed protocol, and the perceived utility of objects added to the Information Model.</t>
            </li>
            <li>
              <t>Exclude objects that can be derived from others in this or
other Information Models.</t>
            </li>
            <li>
              <t>Avoid heavy instrumentation of performance-critical code paths or
state that is expensive to query or compute. A guideline is to limit
instrumentation to one counter per significant processing stage or
operational boundary per layer.</t>
            </li>
            <li>
              <t>When expressing an Information Model using YANG Data Structure Extensions <xref target="RFC8791"/> (thereby keeping it abstract and implementation-agnostic per <xref target="RFC3444"/>), ensure that the Information Model remains simple, modular, and clear by following the authoring guidelines in <xref target="RFC9907"/>.</t>
            </li>
            <li>
              <t>When illustrating the abstract Information Model, use YANG Tree Diagrams <xref target="RFC8340"/> to provide a simple, standardized, and implementation-neutral model structure.</t>
            </li>
          </ol>
        </section>
        <section anchor="sec-yang-dm">
          <name>YANG Data Model Considerations</name>
          <t>When considering YANG Data Models for a new specification, there
  are multiple types of Data Models that may be applicable. The
  hierarchy and relationship between these types is described in
  <xref section="3.5.1" sectionFormat="of" target="RFC9907"/>. A new specification
  may require or benefit from one or more of these YANG Data Model types.</t>
          <ul spacing="normal">
            <li>
              <t>Device Models - Also called Network Element Models,
represent the configuration, operational state, and notifications of
individual devices. These models are designed to distinguish
between these types of data and support querying and updating
device-specific parameters. Consideration should be given to
how device-level models might fit with broader network and
service Data Models.</t>
            </li>
            <li>
              <t>Network Models - Also called Network Service Models, define abstractions
for managing the behavior and relationships of multiple devices
and device subsystems within a network. As described in <xref section="3.5.1" sectionFormat="of" target="RFC9907"/>
and <xref target="RFC8199"/>, these models are used to manage network-wide services. These abstractions are
useful to network operators and applications that interface with network
controllers. Examples of network models include the L3VPN Network Model
(L3NM) <xref target="RFC9182"/> and the L2VPN Network Model (L2VPN) <xref target="RFC9291"/>.</t>
            </li>
            <li>
              <t>Service Models - Also called Customer Service Models,
defined in <xref target="RFC8309"/>, are designed to abstract the customer interface
into a service. They consider customer-centric parameters such as
Service Level Agreement (SLA) and high-level policy (e.g., network intent).
Given that different operators and different customers may have widely-varying
business processes, these models should focus on common aspects of a service
with strong multi-party consensus. Examples of service models include
the L3VPN Service Model (L3SM) <xref target="RFC8299"/> and the L2VPN Service Model (L2SM)
<xref target="RFC8466"/>.</t>
            </li>
          </ul>
          <t>A common challenge in YANG Data Model development lies in defining the
  relationships between abstract service or network constructs and the
  underlying device models. Therefore, when designing Network and Service
  YANG modules, consider how the status and relationships of abstract or
  distributed constructs can be reflected based on parameters available
  in the network.</t>
          <t>The status of a service may depend on the operational state
  of multiple network elements to which the service is attached. In such
  cases, the YANG Data Model (and its accompanying documentation) should
  clearly describe how service-level status is derived from underlying
  network-level abstractions and device-level information. Similarly, it is beneficial to define
  events (and relevant triggered notifications) at the device, network, and
  service levels that indicate changes in an underlying state, enabling
  reliable detection and correlation of service-affecting conditions across
  these levels. Including such mechanisms improves the robustness of
  integrations and helps ensure consistent behavior across
  implementations.</t>
          <t>For example:</t>
          <ul empty="true">
            <li>
              <t>A device YANG module may define a notification indicating that a
  hardware component, such as a line card, has failed. An implementation
  (e.g., a network controller that is aware of device inventory) can
  correlate such a device-level notification with the interfaces hosted
  on the affected line card and their subsequent down status to determine
  that a link supporting the network is no longer operational, and expose
  a corresponding network-level notification using a Network Model such
  as L3NM <xref target="RFC9182"/>. Likewise, an implementation managing the service layer can
  correlate that network-level notification with the affected service and
  use a Service Model such as L3SM <xref target="RFC8299"/> to report a
  service-degraded event to the customer, without requiring the
  service-facing model to expose device-level detail.</t>
            </li>
          </ul>
          <t>Specific guidelines to consider when authoring any type of YANG
  modules are described in <xref target="RFC9907"/>.</t>
        </section>
      </section>
      <section anchor="sec-fm-mgmt">
        <name>Fault Management</name>
        <t>Protocol Designers should identify and document
   essential Faults, health indicators, alarms, and events that must be
   propagated to management applications or exposed through a Data
   Model. It is also recommended to describe how the Protocol Extension
   will affect the existing alarms and notification structure of the
   base Protocol, and to outline the potential impact of misconfigurations
   of the Protocol Extensions.</t>
        <t>Protocol Designers should consider how Fault information will be
   propagated. Will it be done using asynchronous notifications or
   polling of health indicators?</t>
        <t>If notifications are used to alert operators to certain conditions,
   then Protocol Designers should discuss mechanisms to throttle
   notifications to prevent congestion and duplications of event
   notifications. Will there be a hierarchy of Faults, and will the
   Fault reporting be done by each Fault in the hierarchy, or will only
   the lowest Fault be reported and the higher levels be suppressed?
   Should there be aggregated status indicators based on concatenation
   of propagated Faults from a given domain or device?</t>
        <t>The alarm management model <xref target="RFC8632"/> already addresses many of these
   questions, including alarm identification, severity, root cause and
   impacted resource, and shelving for suppression; it also distinguishes
   alarm state from the notifications that report it. Protocol Designers
   should consider reusing it rather than defining new notification
   structures.</t>
        <t>Notifications (e.g., SNMP traps and informs, syslog, or protocol-specific mechanisms) can alert an operator when an
   aspect of the New Protocol or Protocol Extension fails or encounters an error or failure
   condition.
   Should the event reporting provide guaranteed accurate delivery of
   the event information within a given (high) margin of confidence?
   Can the latest events in the box be polled?</t>
        <section anchor="sec-monitor">
          <name>Liveness Detection and Monitoring</name>
          <t>Protocol Designers should build in basic testing features
   (e.g., ICMP echo, UDP
   or TCP echo services, and null Remote Procedure Calls
   (RPCs)) that can be used to test for liveness, with the option to
   enable or disable them.</t>
          <t>Mechanisms for monitoring the liveness of the protocol and for
   detecting Faults in protocol connectivity are usually built into
   protocols. In some cases, mechanisms already exist within other
   protocols responsible for maintaining lower-layer connectivity (e.g.,
   ICMP echo), but often new procedures are required to detect failures
   and to report rapidly, allowing remedial action to be taken.</t>
          <t>These liveness monitoring mechanisms do not typically require
   additional management capabilities. However, when a system detects a
   Fault, there is often a requirement to coordinate recovery action
   through management applications or at least to record the fact in an
   event log.</t>
        </section>
        <section anchor="sec-fault-determ">
          <name>Fault Determination</name>
          <t>It can be helpful to describe how Faults can be pinpointed using
   management information. For example, counters might record instances
   of error conditions. Some Faults might be able to be pinpointed by
   comparing the outputs of one device and the inputs of another device,
   looking for anomalies. Protocol Designers should consider what
   counters should count. If a single counter provided by vendor A
   counts three types of error conditions, while the corresponding
   counter provided by vendor B counts seven types of error conditions,
   these counters cannot be compared effectively -- they are not
   interoperable counters.</t>
          <t>How do you distinguish between faulty messages and good messages?</t>
          <t>Would some threshold-based mechanisms be usable to help determine
   error conditions? Are notifications for all events needed, or
   are there some "standard" notifications that could be used? Or can
   relevant counters be polled as needed?</t>
          <t>For example:</t>
          <ul empty="true">
            <li>
              <t>Remote Monitoring (RMON) events/alarms provide a threshold-based mechanism.</t>
            </li>
          </ul>
        </section>
        <section anchor="sec-cause-analysis">
          <name>Probable Root Cause Analysis</name>
          <t>Probable Root Cause analysis is about working out where the foundational
   Fault or Problem might be. Since one Fault may give rise to another Fault or
   Problem, a Probable Root Cause is commonly meant to describe the original,
   source event or combination of circumstances that is the foundation of all
   related Faults.</t>
          <t>For example:</t>
          <ul empty="true">
            <li>
              <t>If end-to-end data delivery is failing (e.g., reported by a
   notification), Probable Root Cause analysis can help find the failed link
   or node, or mis-configuration, within the end-to-end path.</t>
            </li>
          </ul>
        </section>
        <section anchor="sec-fault-isol">
          <name>Fault Isolation</name>
          <t>It might be useful to isolate or quarantine Faults. Protocol Designers
   should consider Fault isolation mechanisms appropriate to the deployment
   environment. At the network level, this might involve configuring
   next-hop devices to drop faulty messages to prevent them from
   propagating through the network, such as isolating a device that emits
   malformed messages that are necessary to coordinate connections properly.
   At the host level, isolation mechanisms may include process quarantine,
   container or virtual machine isolation, or disabling a misbehaving
   protocol implementation without disrupting other services on the same
   device. The range of appropriate isolation mechanisms will depend on
   where the protocol is deployed and the nature of the Fault.</t>
        </section>
      </section>
      <section anchor="sec-config-mgmt">
        <name>Configuration Management</name>
        <t>Configuration management applies to a broad range of deployment
   environments, including conventional network devices, IoT device fleets,
   containerized workloads, cloud-hosted services, and home network
   equipment. While many examples in this section are drawn from network
   device management, the principles apply equally to any environment where
   the protocol is deployed. Protocol Designers should consider how
   configuration is managed in the environments relevant to their protocol,
   acknowledging centralized configuration management approaches (e.g.,
   intent-based or model-driven systems) beyond conventional per-device
   management.</t>
        <t>A Protocol Designer should document the basic configuration
   parameters that need to be instrumented for a New Protocol or Protocol Extension, as well
   as default values and modes of operation.</t>
        <t>What information should be maintained across reboots of the device,
   or restarts of the management system?</t>
        <t>"Requirements for Configuration Management of IP-based Networks"
    <xref target="RFC3139"/> discusses requirements for configuration management, including
    discussion of different levels of management, high-level policies,
    network-wide configuration data, and device-local configuration. Network
    configuration extends beyond simple multi-device push or pull operations.
    It also involves ensuring that the configurations being pushed are
    semantically compatible across devices and that the resulting behavior of
    all involved devices corresponds to the intended behavior. Is the
    attachment between them configured compatibly on both ends? Is the
    IS-IS metric the same?
    Answering those questions for a network with one thousand devices is not that easy.</t>
        <t>Several efforts have existed in the IETF to develop policy-based
   configuration management. "Terminology for Policy-Based Management"
   <xref target="RFC3198"/> was written to standardize the terminology across these
   efforts.</t>
        <t>Implementations should not arbitrarily modify configuration data. If a
   Protocol Designer defines mechanisms for configuration, it would be
   preferable to standardize the order of elements for consistency of
   configuration and of reporting across vendors and across releases
   from vendors.</t>
        <t>Network-wide configurations may be stored in central databases
   and transformed into readable formats that can be pushed to devices, either by
   generating sequences of CLI commands or complete textual configuration files
   that are pushed to devices. There is no common database schema for
   network configuration, although the models used by various operators
   are probably very similar. It is operationally beneficial to
   extract, document, and standardize the common parts of these network-wide
   configuration database schemas. A Protocol Designer should
   consider how to standardize the common parts of configuring the New
   Protocol, while recognizing that vendors may also have proprietary
   aspects of their configurations.</t>
        <t>It is important to enable operators to concentrate on the
   configuration of the network or service as a whole, rather than individual
   devices. Support for configuration transactions across several
   devices could significantly simplify network configuration
   management. The ability to distribute configurations to multiple
   devices, or to modify candidate configurations on multiple devices,
   and then activate them in a near-simultaneous manner might help.
   Protocol Designers can consider how it would make sense for their
   protocol to be configured across multiple devices. Configuration
   templates might also be helpful.</t>
        <t>Consensus of the 2002 IAB Network Management Workshop <xref target="RFC3535"/> was that textual
   configuration files should be able to contain international characters.
   For human-readable strings carried in protocols, <xref target="RFC5198"/> provides
   guidance on the use of UTF-8 with NFC normalization for consistent
   encoding of Unicode text; protocol elements that are not intended for
   human consumption may remain in ASCII. Requirements for the encoding of
   device-local configuration files are generally outside the scope of IETF
   standardization and should be handled appropriately for the deployment
   environment.</t>
        <t>A mechanism to dump-and-restore configurations is a primitive
   operation needed by operators. Standards for pulling and pushing
   configurations from/to devices are highly beneficial.</t>
        <t>Given configuration A and configuration B, it should be possible to
   generate the operations necessary to get from A to B with minimal
   state changes and effects on network and systems. It is important to
   minimize the impact caused by configuration changes.</t>
        <t>A Protocol Designer should consider the configurable items that exist
   for the control of function via the protocol elements described in
   the protocol specification. For example, sometimes the protocol
   requires that timers can be configured by the operator to ensure
   specific policy-based behavior by the implementation. These timers
   should have default values suggested in the protocol specification
   and may not need to be otherwise configurable.</t>
      </section>
      <section anchor="sec-acc-mgmt">
        <name>Accounting Management</name>
        <t>A Protocol Designer should consider whether it would be appropriate
   to collect usage information related to this protocol and, if so,
   what usage information would be appropriate to collect.</t>
        <t>"Introduction to Accounting Management" <xref target="RFC2975"/> discusses a number
   of factors relevant to monitoring usage of protocols for purposes of
   capacity and trend analysis, cost allocation, auditing, and billing.
   The document also discusses how some existing protocols can be used
   for these purposes. These factors should be considered when
   designing a protocol whose usage might need to be monitored or when
   recommending a protocol to do usage accounting.</t>
      </section>
      <section anchor="sec-perf-mgmt">
        <name>Performance Management</name>
        <t>From a manageability point of view, it is important to determine how
   well a network deploying the protocol or technology defined in the
   document is doing. In order to do this, the network operators need
   to consider information that would be useful to determine the
   performance characteristics of a deployed system using the target
   protocol.</t>
        <t>The IETF, via the Benchmarking Methodology WG (BMWG), has defined
   recommendations for the measurement of the performance
   characteristics of various internetworking technologies in a
   laboratory environment, including the systems or services that are
   built from these technologies, building on the foundational methodology
   in <xref target="RFC2544"/>. Each benchmarking recommendation
   describes the class of equipment, system, or service being addressed;
   discusses the performance characteristics that are pertinent to that
   class; clearly identifies a set of metrics that aid in the
   description of those characteristics; specifies the methodologies
   required to collect said metrics; and lastly, presents the
   requirements for the common, unambiguous reporting of benchmarking
   results.</t>
        <t>Performance metrics may be useful in multiple environments and for
   different protocols. The IETF, via the IP Performance Measurement
   (IPPM) WG, has developed a set of standard metrics, building on the
   framework defined in <xref target="RFC2330"/>, that can be
   applied to the quality, performance, and reliability of Internet data
   delivery services. These metrics are designed such that they can be
   performed by network operators, end users, or independent testing
   groups. The existing metrics might be applicable to the new
   protocol. Search for "metric" in the RFC search tool. In some
   cases, new metrics need to be defined. It would be useful if the
   protocol documentation identified the need for such new metrics. For
   performance management, it is often more important to report the time
   spent in a state rather than just the current state. Snapshots alone
   are typically of less value. <xref target="RFC7799"/> classifies measurement methods as active,
   passive, or hybrid.  This classification is relevant to the protocol, device, network,
   and service monitoring approaches discussed in <xref target="sec-monitor-proto"/>, <xref target="sec-monitor-dev"/>,
   <xref target="sec-monitor-net"/>, and <xref target="sec-monitor-svc"/>.</t>
        <t>There are several parts of performance management to consider:
   protocol monitoring, device monitoring (the impact of new
   functionality/service activation on the device), network monitoring,
   and service monitoring (the impact of service activation on the
   network). Hence, if the implementation of the
   New Protocol or Protocol Extension has any significant hardware/software performance implications
   (e.g., increased CPU utilization, memory consumption, or forwarding
   performance degradation), the Protocol Designers should clearly
   describe these impacts in the specification, along with any
   conditions under which they may occur and possible mitigation
   strategies.</t>
        <section anchor="sec-monitor-proto">
          <name>Monitoring the Protocol</name>
          <t>Certain properties of protocols are useful to monitor. The number of
   protocol packets received, the number of packets sent, and the number
   of packets dropped are usually very helpful to operators.</t>
          <t>Packet drops should be reflected in counter variable(s) somewhere
   that can be inspected -- both from the security point of view and
   from the troubleshooting point of view.</t>
          <t>Counter definitions should be unambiguous about what is included in
   the count and what is not included in the count.</t>
          <t>Consider the expected behaviors for counters -- what is a reasonable
   maximum value for expected usage? Should they stop counting at the
   maximum value and retain it, or should they rollover?
   Guidance should explain how rollovers are detected, including multiple
   occurrences.</t>
          <t>Consider whether multiple management applications will share a
   counter; if so, then no one management application should be allowed
   to reset the value to zero since this will impact other applications.</t>
          <t>Could events, such as hot-swapping a blade in a chassis, cause
   discontinuities in counter? Does this make any difference in
   evaluating the performance of a protocol?</t>
          <t>The protocol specification should clearly define any inherent
   limitations and describe expected behavior when those limits
   are exceeded. These considerations should be made independently
   of any specific management protocol or data modeling language.
   In other words, focus on what makes sense for the protocol being
   managed, not the protocol used for management. If a constraint
   is not specific to a management protocol, then it should be left
   to Data Model designers of that protocol to determine how to handle it.</t>
          <t>For example:</t>
          <ul empty="true">
            <li>
              <t>VLAN identifiers (VLAN IDs) are defined by the standard to range from 1 to 4094.
   Therefore, a YANG "vlan-id" definition representing the
   12-bit VLAN ID used in the VLAN Tag header uses a range of "1..4094".</t>
            </li>
          </ul>
        </section>
        <section anchor="sec-monitor-dev">
          <name>Monitoring the Device</name>
          <t>Consider whether device performance will be affected by the number of
   protocol entities being instantiated on the device. Designers of an
   Information Model should include information, accessible at runtime,
   about the maximum number of instances an implementation can support,
   the current number of instances, and the expected behavior when the
   current instances exceed the capacity of the implementation or the
   capacity of the device.</t>
        </section>
        <section anchor="sec-monitor-net">
          <name>Monitoring the Network</name>
          <t>Consider whether network performance will be affected by the number
   of protocol entities being deployed.</t>
          <t>Consider the capability of determining the operational activity, such
   as the number of messages in and the messages out, the number of
   received messages rejected due to format Problems, and the expected
   behaviors when a malformed message is received.</t>
          <t>What are the principal performance factors that need to be considered
   when measuring the operational performance of a network built using
   the protocol? Is it important to measure setup times, end-to-end
   connectivity, hop-by-hop connectivity, or network throughput?</t>
        </section>
        <section anchor="sec-monitor-svc">
          <name>Monitoring the Service</name>
          <t>What are the principal performance factors that need to be considered
   when measuring the performance of a service using the protocol? Is
   it important to measure application-specific throughput, client-server
   associations, end-to-end application quality, service interruptions,
   or user experience (UX)?</t>
          <t>Note that monitoring a service must consider the utility to the user.
   This includes responsiveness, smoothness (absence of jitter), throughput,
   and other "quality of experience" factors.</t>
        </section>
      </section>
      <section anchor="sec-security-mgmt">
        <name>Security Management</name>
        <t>Protocol Designers should consider how to monitor and manage security
   aspects and vulnerabilities of the New Protocol or Protocol Extension.
   Likewise, Protocol Designers should consider how some operations (e.g., logging)
   might include privacy-sensitive information, which ought to be controlled
   to avoid access by unauthorized entities.</t>
        <t>Protocol Designers should consider whether a system automatically
   notifies operators of every event occurrence as default behavior or
   should define an operator-defined threshold to control when a
   notification is sent to an operator.</t>
        <t>Protocol Designers should assess whether and which statistics need to
   be collected about the operation of the New Protocol that might be
   useful for detecting attacks (e.g., the receipt of malformed
   messages, messages out of order, or messages with invalid
   timestamps). If such statistics are collected, care should be taken
   to evaluate whether it is important to count them separately for
   each sender to help identify the source of attacks.</t>
        <t>Security-oriented manageability topics may include risks of insufficient
   monitoring, regulatory issues with missing audit trails, log capacity
   limits, and security exposures in recommended management mechanisms.</t>
        <t>Protocol Designers should consider security threats that may be
   introduced by management operations.</t>
        <t>For example:</t>
        <ul empty="true">
          <li>
            <t>Control and Provisioning of Wireless Access
   Points (CAPWAP) <xref target="RFC5415"/> breaks the structure of monolithic Access Points
   (APs) into Access Controllers and Wireless Termination Points (WTPs).
   By using a control protocol or management protocol, internal
   information that was previously not accessible is now exposed over
   the network and to management applications and may become a source of
   potential security threats.</t>
          </li>
        </ul>
        <t>The granularity of access control needed on management interfaces
   needs to match operational needs. Typical requirements are a role-based
   access control model and the principle of least privilege,
   where a user can be given only the minimum access necessary to
   perform a required task.</t>
        <t>Some operators wish to do consistency checks of Access Control Lists (ACLs)
   across devices. Protocol Designers should consider Information
   Models to promote comparisons across devices and across vendors to
   permit checking the consistency of security configurations.</t>
        <t>Protocol Designers should consider how to provide a secure transport,
   authentication, identity, and access control that integrates well
   with existing key and credential management infrastructure. It is a
   good idea to start with defining the threat model for the protocol,
   and from that deducing what is required.</t>
        <t>Protocol Designers should consider how ACLs are
   maintained and updated.</t>
        <t>Notifications (e.g., syslog messages) might
   already exist, or can be defined, to alert operators to the
   conditions identified in the Security Considerations for the New
   Protocol or Protocol Extension. The syslog should also record events,
   such as failed logins, but it must be secured.</t>
        <t>For example:</t>
        <ul empty="true">
          <li>
            <t>All commands entered by operators can be logged via syslog to provide
   an audit trail.  Authentication events, including logins, logouts, and
   failed login attempts, can be recorded using the Secure Shell (SSH)
   Protocol <xref target="RFC4251"/>, capturing the source of each connection.</t>
          </li>
        </ul>
        <t>Different management protocols use different assumptions about
   message security and data-access controls. A Protocol Designer that
   recommends using different protocols should consider how security
   will be applied in a balanced manner across multiple management
   interfaces. SNMP authority levels and policy are data-oriented,
   while CLI authority levels and policy are usually command-oriented
   (i.e., task-oriented). Depending on the management function,
   sometimes data-oriented or task-oriented approaches make more sense.
   Protocol Designers should consider both data-oriented and task-oriented
   authority levels and policy. Refer also to <xref target="RFC8341"/> for more details on access control types and rules.</t>
      </section>
    </section>
    <section anchor="sec-oper-mgmt-tooling">
      <name>Operational and Management Tooling Considerations</name>
      <t>The operational community's ability to effectively adopt and
   use new specifications is significantly influenced by the availability
   and adaptability of appropriate tooling. In this context, "tools" refers
   to software systems or utilities used by network operators to deploy,
   configure, monitor, troubleshoot, and manage networks or network protocols
   in real-world operational environments. While the introduction of a new
   specification does not automatically mandate the development of entirely
   new tools, careful consideration must be given to how existing tools can be
   leveraged or extended to support the management and operation of these new
   specifications.</t>
      <t>The <xref target="NEMOPS"/> workshop highlighted a
   consistent theme applicable beyond network management protocols: the
   "ease of use" and adaptability of existing tools are critical factors
   for successful adoption. Therefore, a new specification should provide
   examples using existing, common tooling, or running code that demonstrate
   how to perform key operational tasks.</t>
      <t>Specifically, the following tooling-related aspects should be considered in the operational considerations section,
   prioritizing the adaptation of existing tools:</t>
      <ul spacing="normal">
        <li>
          <t>Leveraging Existing Tooling: Before considering new tools, assess whether
existing tooling, such as monitoring systems, logging platforms,
configuration management systems, and/or orchestration frameworks, can be
adapted to support the new specification. This may involve developing
plugins, modules, or drivers that enable these tools to interact with
the new specification.</t>
        </li>
        <li>
          <t>Extending Existing Tools: Identify areas where existing tools can be
extended to provide the necessary visibility and control over the new
specification. For example, if a new transport protocol is introduced,
consider whether existing network monitoring tools can be extended to
track its performance metrics or whether existing security tools can be
adapted to analyze its traffic patterns.</t>
        </li>
        <li>
          <t>New Tools: Only when existing tools are demonstrably
inadequate for managing and operating the elements of the new specification
should the development of new tools be considered. In such cases,
carefully define the specific requirements for these new tools, focusing
on the functionalities that cannot be achieved through adaptation or
extension of existing solutions.</t>
        </li>
        <li>
          <t>IETF Hackathons for Manageability Testing:
IETF Hackathons <xref target="IETF-HACKATHONS"/>
provide an opportunity to test the functionality, interoperability,
and manageability of New Protocols or Protocol Extensions. These events can be specifically
leveraged to assess the operational (including manageability) implications
of a New Protocol or Protocol Extension by focusing tasks on:  </t>
          <ul spacing="normal">
            <li>
              <t>Adapting existing tools to interact with the new specification.</t>
            </li>
            <li>
              <t>Developing example management scripts or modules for existing management
platforms.</t>
            </li>
            <li>
              <t>Testing the specification's behavior under various operational conditions.</t>
            </li>
            <li>
              <t>Identifying potential tooling gaps and areas for improvement.</t>
            </li>
            <li>
              <t>Creating example flows and use cases for manageability.</t>
            </li>
          </ul>
        </li>
        <li>
          <t>Open Source for Tooling: If new tools are deemed necessary, or if significant
adaptations to existing tools are required, prioritize open source development
with community involvement. Open source tools lower the barrier to entry,
encourage collaboration, and provide operators with the flexibility to customize
and extend the tools to meet their specific needs.</t>
        </li>
      </ul>
      <section anchor="sec-ai-tooling">
        <name>AI Tooling Considerations</name>
        <t>With the increasing adoption of Artificial Intelligence (AI)
   in network operations, Protocol Designers
   must consider the implication such functions may have on New Protocols
   and Protocol Extensions. AI
   models often require extensive and granular data for training and
   inference, requiring efficient, scalable, and secure mechanisms
   for telemetry, logging, and state information collection. Protocol Designers
   should anticipate that AI-powered management tools may generate
   frequent and potentially aggressive querying patterns on network
   devices and controllers. Therefore, protocols should be designed with Data
   Models and mechanisms intended to prevent overload from automated
   interactions, such as subscription to YANG notifications <xref target="RFC8639"/>
          <xref target="RFC8641"/>, which bounds that load and provides change semantics rather
   than repeated snapshots, while also accounting for AI-specific security
   considerations such as data integrity and protection against
   adversarial attacks on management interfaces. These considerations
   are also relevant to Performance Management (Section <xref format="counter" target="sec-perf-mgmt"/>)
   and Security Management (Section <xref format="counter" target="sec-security-mgmt"/>).</t>
      </section>
    </section>
    <section anchor="sec-iana">
      <name>IANA Considerations</name>
      <t>This document does not have any IANA actions required.</t>
    </section>
    <section anchor="sec-oper-mgmt-consid">
      <name>Operational Considerations</name>
      <t>There are no new operations or manageability requirements introduced
   by this document.</t>
      <t>Although this document focuses on operations and manageability guidance, it does not define a New Protocol, a Protocol Extension, or an architecture.</t>
    </section>
    <section anchor="sec-security">
      <name>Security Considerations</name>
      <t>This document provides guidelines for Protocol Designers for
   considering manageability and operations. It introduces no new
   security concerns. Protocol Designers seeking guidance on security-related
   management considerations for New Protocols or Protocol Extensions,
   such as monitoring, access control, and secure transport, should
   refer to <xref target="sec-security-mgmt"/>.</t>
    </section>
  </middle>
  <back>
    <references anchor="sec-combined-references">
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <referencegroup anchor="BCP22" target="https://www.rfc-editor.org/info/bcp22">
          <reference anchor="RFC2360" target="https://www.rfc-editor.org/info/rfc2360">
            <front>
              <title>Guide for Internet Standards Writers</title>
              <author fullname="G. Scott" initials="G." surname="Scott"/>
              <date month="June" year="1998"/>
              <abstract>
                <t>This document is a guide for Internet standard writers. It defines those characteristics that make standards coherent, unambiguous, and easy to interpret. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="22"/>
            <seriesInfo name="RFC" value="2360"/>
            <seriesInfo name="DOI" value="10.17487/RFC2360"/>
          </reference>
        </referencegroup>
        <reference anchor="RFC8791">
          <front>
            <title>YANG Data Structure Extensions</title>
            <author fullname="A. Bierman" initials="A." surname="Bierman"/>
            <author fullname="M. Björklund" initials="M." surname="Björklund"/>
            <author fullname="K. Watsen" initials="K." surname="Watsen"/>
            <date month="June" year="2020"/>
            <abstract>
              <t>This document describes YANG mechanisms for defining abstract data structures with YANG.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8791"/>
          <seriesInfo name="DOI" value="10.17487/RFC8791"/>
        </reference>
        <reference anchor="RFC8340">
          <front>
            <title>YANG Tree Diagrams</title>
            <author fullname="M. Bjorklund" initials="M." surname="Bjorklund"/>
            <author fullname="L. Berger" initials="L." role="editor" surname="Berger"/>
            <date month="March" year="2018"/>
            <abstract>
              <t>This document captures the current syntax used in YANG module tree diagrams. The purpose of this document is to provide a single location for this definition. This syntax may be updated from time to time based on the evolution of the YANG language.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="215"/>
          <seriesInfo name="RFC" value="8340"/>
          <seriesInfo name="DOI" value="10.17487/RFC8340"/>
        </reference>
        <reference anchor="RFC9940">
          <front>
            <title>Some Key Terms for Network Fault and Problem Management</title>
            <author fullname="N. Davis" initials="N." role="editor" surname="Davis"/>
            <author fullname="A. Farrel" initials="A." role="editor" surname="Farrel"/>
            <author fullname="T. Graf" initials="T." surname="Graf"/>
            <author fullname="Q. Wu" initials="Q." surname="Wu"/>
            <author fullname="C. Yu" initials="C." surname="Yu"/>
            <date month="April" year="2026"/>
            <abstract>
              <t>This document sets out some terms that are fundamental to a common understanding of network fault and problem management within the IETF.</t>
              <t>The purpose of this document is to bring clarity to discussions and other work related to network fault and problem management -- in particular, to YANG data models and management protocols that report, make visible, or manage network faults and problems.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9940"/>
          <seriesInfo name="DOI" value="10.17487/RFC9940"/>
        </reference>
        <reference anchor="RFC7799">
          <front>
            <title>Active and Passive Metrics and Methods (with Hybrid Types In-Between)</title>
            <author fullname="A. Morton" initials="A." surname="Morton"/>
            <date month="May" year="2016"/>
            <abstract>
              <t>This memo provides clear definitions for Active and Passive performance assessment. The construction of Metrics and Methods can be described as either "Active" or "Passive". Some methods may use a subset of both Active and Passive attributes, and we refer to these as "Hybrid Methods". This memo also describes multiple dimensions to help evaluate new methods as they emerge.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7799"/>
          <seriesInfo name="DOI" value="10.17487/RFC7799"/>
        </reference>
        <reference anchor="RFC2119">
          <front>
            <title>Key words for use in RFCs to Indicate Requirement Levels</title>
            <author fullname="S. Bradner" initials="S." surname="Bradner"/>
            <date month="March" year="1997"/>
            <abstract>
              <t>In many standards track documents several words are used to signify the requirements in the specification. These words are often capitalized. This document defines these words as they should be interpreted in IETF documents. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="2119"/>
          <seriesInfo name="DOI" value="10.17487/RFC2119"/>
        </reference>
        <reference anchor="RFC8174">
          <front>
            <title>Ambiguity of Uppercase vs Lowercase in RFC 2119 Key Words</title>
            <author fullname="B. Leiba" initials="B." surname="Leiba"/>
            <date month="May" year="2017"/>
            <abstract>
              <t>RFC 2119 specifies common key words that may be used in protocol specifications. This document aims to reduce the ambiguity by clarifying that only UPPERCASE usage of the key words have the defined special meanings.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="8174"/>
          <seriesInfo name="DOI" value="10.17487/RFC8174"/>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="CHECKLIST" target="https://github.com/IETF-OPS-DIR/Review-Template/tree/main">
          <front>
            <title>Operations and Management Review Checklist</title>
            <author>
              <organization/>
            </author>
            <date year="2025"/>
          </front>
        </reference>
        <reference anchor="IETF-OPS-Dir" target="https://datatracker.ietf.org/group/opsdir/about/">
          <front>
            <title>Ops Directorate (opsdir)</title>
            <author>
              <organization/>
            </author>
            <date year="2025"/>
          </front>
        </reference>
        <reference anchor="PERFMETRDIR" target="https://datatracker.ietf.org/group/perfmetrdir/about/">
          <front>
            <title>Performance Metrics Directorate (perfmetrdir)</title>
            <author>
              <organization/>
            </author>
            <date year="2026"/>
          </front>
        </reference>
        <reference anchor="IETF-HACKATHONS" target="https://www.ietf.org/meeting/hackathons/">
          <front>
            <title>IETF Hackathons</title>
            <author>
              <organization>IETF</organization>
            </author>
            <date year="2025" month="May" day="01"/>
          </front>
        </reference>
        <reference anchor="SECOPS" target="https://niccs.cisa.gov/resources/glossary">
          <front>
            <title>NICCS Glossary</title>
            <author>
              <organization/>
            </author>
            <date year="2025" month="August"/>
          </front>
        </reference>
        <referencegroup anchor="BCP186" target="https://www.rfc-editor.org/info/bcp186">
          <reference anchor="RFC7126" target="https://www.rfc-editor.org/info/rfc7126">
            <front>
              <title>Recommendations on Filtering of IPv4 Packets Containing IPv4 Options</title>
              <author fullname="F. Gont" initials="F." surname="Gont"/>
              <author fullname="R. Atkinson" initials="R." surname="Atkinson"/>
              <author fullname="C. Pignataro" initials="C." surname="Pignataro"/>
              <date month="February" year="2014"/>
              <abstract>
                <t>This document provides advice on the filtering of IPv4 packets based on the IPv4 options they contain. Additionally, it discusses the operational and interoperability implications of dropping packets based on the IP options they contain.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="186"/>
            <seriesInfo name="RFC" value="7126"/>
            <seriesInfo name="DOI" value="10.17487/RFC7126"/>
          </reference>
        </referencegroup>
        <reference anchor="RFC5706">
          <front>
            <title>Guidelines for Considering Operations and Management of New Protocols and Protocol Extensions</title>
            <author fullname="D. Harrington" initials="D." surname="Harrington"/>
            <date month="November" year="2009"/>
            <abstract>
              <t>New protocols or protocol extensions are best designed with due consideration of the functionality needed to operate and manage the protocols. Retrofitting operations and management is sub-optimal. The purpose of this document is to provide guidance to authors and reviewers of documents that define new protocols or protocol extensions regarding aspects of operations and management that should be considered. This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5706"/>
          <seriesInfo name="DOI" value="10.17487/RFC5706"/>
        </reference>
        <referencegroup anchor="BCP72" target="https://www.rfc-editor.org/info/bcp72">
          <reference anchor="RFC3552" target="https://www.rfc-editor.org/info/rfc3552">
            <front>
              <title>Guidelines for Writing RFC Text on Security Considerations</title>
              <author fullname="E. Rescorla" initials="E." surname="Rescorla"/>
              <author fullname="B. Korver" initials="B." surname="Korver"/>
              <date month="July" year="2003"/>
              <abstract>
                <t>All RFCs are required to have a Security Considerations section. Historically, such sections have been relatively weak. This document provides guidelines to RFC authors on how to write a good Security Considerations section. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="72"/>
            <seriesInfo name="RFC" value="3552"/>
            <seriesInfo name="DOI" value="10.17487/RFC3552"/>
          </reference>
          <reference anchor="RFC9416" target="https://www.rfc-editor.org/info/rfc9416">
            <front>
              <title>Security Considerations for Transient Numeric Identifiers Employed in Network Protocols</title>
              <author fullname="F. Gont" initials="F." surname="Gont"/>
              <author fullname="I. Arce" initials="I." surname="Arce"/>
              <date month="July" year="2023"/>
              <abstract>
                <t>Poor selection of transient numerical identifiers in protocols such as the TCP/IP suite has historically led to a number of attacks on implementations, ranging from Denial of Service (DoS) or data injection to information leakages that can be exploited by pervasive monitoring. Due diligence in the specification of transient numeric identifiers is required even when cryptographic techniques are employed, since these techniques might not mitigate all the associated issues. This document formally updates RFC 3552, incorporating requirements for transient numeric identifiers, to prevent flaws in future protocols and implementations.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="72"/>
            <seriesInfo name="RFC" value="9416"/>
            <seriesInfo name="DOI" value="10.17487/RFC9416"/>
          </reference>
        </referencegroup>
        <reference anchor="RFC6390">
          <front>
            <title>Guidelines for Considering New Performance Metric Development</title>
            <author fullname="A. Clark" initials="A." surname="Clark"/>
            <author fullname="B. Claise" initials="B." surname="Claise"/>
            <date month="October" year="2011"/>
            <abstract>
              <t>This document describes a framework and a process for developing Performance Metrics of protocols and applications transported over IETF-specified protocols. These metrics can be used to characterize traffic on live networks and services. This memo documents an Internet Best Current Practice.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="170"/>
          <seriesInfo name="RFC" value="6390"/>
          <seriesInfo name="DOI" value="10.17487/RFC6390"/>
        </reference>
        <reference anchor="RFC3444">
          <front>
            <title>On the Difference between Information Models and Data Models</title>
            <author fullname="A. Pras" initials="A." surname="Pras"/>
            <author fullname="J. Schoenwaelder" initials="J." surname="Schoenwaelder"/>
            <date month="January" year="2003"/>
            <abstract>
              <t>There has been ongoing confusion about the differences between Information Models and Data Models for defining managed objects in network management. This document explains the differences between these terms by analyzing how existing network management model specifications (from the IETF and other bodies such as the International Telecommunication Union (ITU) or the Distributed Management Task Force (DMTF)) fit into the universe of Information Models and Data Models. This memo documents the main results of the 8th workshop of the Network Management Research Group (NMRG) of the Internet Research Task Force (IRTF) hosted by the University of Texas at Austin. This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="3444"/>
          <seriesInfo name="DOI" value="10.17487/RFC3444"/>
        </reference>
        <reference anchor="RFC6291">
          <front>
            <title>Guidelines for the Use of the "OAM" Acronym in the IETF</title>
            <author fullname="L. Andersson" initials="L." surname="Andersson"/>
            <author fullname="H. van Helvoort" initials="H." surname="van Helvoort"/>
            <author fullname="R. Bonica" initials="R." surname="Bonica"/>
            <author fullname="D. Romascanu" initials="D." surname="Romascanu"/>
            <author fullname="S. Mansfield" initials="S." surname="Mansfield"/>
            <date month="June" year="2011"/>
            <abstract>
              <t>At first glance, the acronym "OAM" seems to be well-known and well-understood. Looking at the acronym a bit more closely reveals a set of recurring problems that are revisited time and again.</t>
              <t>This document provides a definition of the acronym "OAM" (Operations, Administration, and Maintenance) for use in all future IETF documents that refer to OAM. There are other definitions and acronyms that will be discussed while exploring the definition of the constituent parts of the "OAM" term. This memo documents an Internet Best Current Practice.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="161"/>
          <seriesInfo name="RFC" value="6291"/>
          <seriesInfo name="DOI" value="10.17487/RFC6291"/>
        </reference>
        <reference anchor="RFC10014">
          <front>
            <title>Guidelines for Characterizing the Term "OAM"</title>
            <author fullname="C. Pignataro" initials="C." surname="Pignataro"/>
            <author fullname="A. Farrel" initials="A." surname="Farrel"/>
            <author fullname="T. Mizrahi" initials="T." surname="Mizrahi"/>
            <date month="June" year="2026"/>
            <abstract>
              <t>As the IETF continues to produce and standardize different Operations, Administration, and Maintenance (OAM) protocols and technologies, various qualifiers and modifiers are prepended to the OAM abbreviation. While, at first glance, the most used qualifiers appear to be well understood, the same qualifier may be interpreted differently in different contexts. A case in point is the qualifiers "in-band" and "out-of-band", which have their origins in the radio lexicon, and which have been extrapolated into other communication networks. This document recommends not to use these two terms when referring to OAM.</t>
              <t>This document considers some common qualifiers and modifiers that are prepended, within the context of packet networks, to the OAM abbreviation and lays out guidelines for their use in IETF documents.</t>
              <t>This document extends RFC 6291 by adding to the guidelines for the use of the term "OAM" with qualifiers. It does not modify any part of RFC 6291.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="161"/>
          <seriesInfo name="RFC" value="10014"/>
          <seriesInfo name="DOI" value="10.17487/RFC10014"/>
        </reference>
        <reference anchor="I-D.ietf-nmop-network-incident-yang">
          <front>
            <title>A YANG Data Model for Network Incident Management</title>
            <author fullname="Tong Hu" initials="T." surname="Hu">
              <organization>CMCC</organization>
            </author>
            <author fullname="Luis M. Contreras" initials="L. M." surname="Contreras">
              <organization>Telefonica</organization>
            </author>
            <author fullname="Qin Wu" initials="Q." surname="Wu">
              <organization>Huawei</organization>
            </author>
            <author fullname="Nigel Davis" initials="N." surname="Davis">
              <organization>Ciena</organization>
            </author>
            <author fullname="Chong Feng" initials="C." surname="Feng">
         </author>
            <date day="24" month="September" year="2026"/>
            <abstract>
              <t>   This document defines a YANG data model for the network incident
   lifecycle management.  This YANG module provides a standard way to
   report, diagnose, and help reduce troubleshooting tickets and resolve
   network incidents for the sake of network service health and probable
   root cause analysis.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-nmop-network-incident-yang-17"/>
        </reference>
        <reference anchor="RFC9953">
          <front>
            <title>DNS over CoAP (DoC)</title>
            <author fullname="M. S. Lenders" initials="M. S." surname="Lenders"/>
            <author fullname="C. Amsüss" initials="C." surname="Amsüss"/>
            <author fullname="C. Gündoğan" initials="C." surname="Gündoğan"/>
            <author fullname="T. C. Schmidt" initials="T. C." surname="Schmidt"/>
            <author fullname="M. Wählisch" initials="M." surname="Wählisch"/>
            <date month="March" year="2026"/>
            <abstract>
              <t>This document defines a protocol for exchanging DNS queries (OPCODE 0) over the Constrained Application Protocol (CoAP). These CoAP messages can be protected by (D)TLS-Secured CoAP or Object Security for Constrained RESTful Environments (OSCORE) to provide encrypted DNS message exchange for constrained devices in the Internet of Things (IoT).</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9953"/>
          <seriesInfo name="DOI" value="10.17487/RFC9953"/>
        </reference>
        <reference anchor="I-D.ietf-suit-mti">
          <front>
            <title>Cryptographic Algorithms for Internet of Things (IoT) Devices</title>
            <author fullname="Brendan Moran" initials="B." surname="Moran">
              <organization>Arm Limited</organization>
            </author>
            <author fullname="Øyvind Rønningstad" initials="O." surname="Rønningstad">
              <organization>Nordic Semiconductor</organization>
            </author>
            <author fullname="Akira Tsukamoto" initials="A." surname="Tsukamoto">
              <organization>Openchip &amp; Software Technologies, S.L.</organization>
            </author>
            <date day="22" month="July" year="2025"/>
            <abstract>
              <t>   The SUIT manifest, as defined in "A Manifest Information Model for
   Firmware Updates in Internet of Things (IoT) Devices" (RFC 9124),
   provides a flexible and extensible format for describing how firmware
   and software updates are to be fetched, verified, decrypted, and
   installed on resource-constrained devices.  To ensure the security of
   these update processes, the manifest relies on cryptographic
   algorithms for functions such as digital signature verification,
   integrity checking, and confidentiality.

   This document defines cryptographic algorithm profiles for use with
   the Software Updates for Internet of Things (SUIT) manifest.  These
   profiles specify sets of algorithms to promote interoperability
   across implementations.

   Given the diversity of IoT deployments and the evolving cryptographic
   landscape, algorithm agility is essential.  This document groups
   algorithms into named profiles to accommodate varying levels of
   device capabilities and security requirements.  These profiles
   support the use cases laid out in the SUIT architecture, published in
   "A Firmware Update Architecture for Internet of Things" (RFC 9019).

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-suit-mti-23"/>
        </reference>
        <reference anchor="RFC9937">
          <front>
            <title>Proportional Rate Reduction (PRR)</title>
            <author fullname="M. Mathis" initials="M." surname="Mathis"/>
            <author fullname="N. Cardwell" initials="N." surname="Cardwell"/>
            <author fullname="Y. Cheng" initials="Y." surname="Cheng"/>
            <author fullname="N. Dukkipati" initials="N." surname="Dukkipati"/>
            <date month="December" year="2025"/>
            <abstract>
              <t>This document specifies a Standards Track version of the Proportional Rate Reduction (PRR) algorithm that obsoletes the Experimental version described in RFC 6937. PRR regulates the amount of data sent by TCP or other transport protocols during fast recovery. PRR accurately regulates the actual flight size through recovery such that at the end of recovery it will be as close as possible to the slow start threshold (ssthresh), as determined by the congestion control algorithm.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9937"/>
          <seriesInfo name="DOI" value="10.17487/RFC9937"/>
        </reference>
        <reference anchor="RFC7574">
          <front>
            <title>Peer-to-Peer Streaming Peer Protocol (PPSPP)</title>
            <author fullname="A. Bakker" initials="A." surname="Bakker"/>
            <author fullname="R. Petrocco" initials="R." surname="Petrocco"/>
            <author fullname="V. Grishchenko" initials="V." surname="Grishchenko"/>
            <date month="July" year="2015"/>
            <abstract>
              <t>The Peer-to-Peer Streaming Peer Protocol (PPSPP) is a protocol for disseminating the same content to a group of interested parties in a streaming fashion. PPSPP supports streaming of both prerecorded (on- demand) and live audio/video content. It is based on the peer-to- peer paradigm, where clients consuming the content are put on equal footing with the servers initially providing the content, to create a system where everyone can potentially provide upload bandwidth. It has been designed to provide short time-till-playback for the end user and to prevent disruption of the streams by malicious peers. PPSPP has also been designed to be flexible and extensible. It can use different mechanisms to optimize peer uploading, prevent freeriding, and work with different peer discovery schemes (centralized trackers or Distributed Hash Tables). It supports multiple methods for content integrity protection and chunk addressing. Designed as a generic protocol that can run on top of various transport protocols, it currently runs on top of UDP using Low Extra Delay Background Transport (LEDBAT) for congestion control.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7574"/>
          <seriesInfo name="DOI" value="10.17487/RFC7574"/>
        </reference>
        <reference anchor="RFC9877">
          <front>
            <title>Registration Data Access Protocol (RDAP) Extension for Geofeed Data</title>
            <author fullname="J. Singh" initials="J." surname="Singh"/>
            <author fullname="T. Harrison" initials="T." surname="Harrison"/>
            <date month="October" year="2025"/>
            <abstract>
              <t>This document defines a new Registration Data Access Protocol (RDAP) extension, "geofeed1", for indicating that an RDAP server hosts geofeed URLs for its IP network objects. It also defines a new media type and a new link relation type for the associated link objects included in responses.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9877"/>
          <seriesInfo name="DOI" value="10.17487/RFC9877"/>
        </reference>
        <reference anchor="RFC9552">
          <front>
            <title>Distribution of Link-State and Traffic Engineering Information Using BGP</title>
            <author fullname="K. Talaulikar" initials="K." role="editor" surname="Talaulikar"/>
            <date month="December" year="2023"/>
            <abstract>
              <t>In many environments, a component external to a network is called upon to perform computations based on the network topology and the current state of the connections within the network, including Traffic Engineering (TE) information. This is information typically distributed by IGP routing protocols within the network.</t>
              <t>This document describes a mechanism by which link-state and TE information can be collected from networks and shared with external components using the BGP routing protocol. This is achieved using a BGP Network Layer Reachability Information (NLRI) encoding format. The mechanism applies to physical and virtual (e.g., tunnel) IGP links. The mechanism described is subject to policy control.</t>
              <t>Applications of this technique include Application-Layer Traffic Optimization (ALTO) servers and Path Computation Elements (PCEs).</t>
              <t>This document obsoletes RFC 7752 by completely replacing that document. It makes some small changes and clarifications to the previous specification. This document also obsoletes RFC 9029 by incorporating the updates that it made to RFC 7752.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9552"/>
          <seriesInfo name="DOI" value="10.17487/RFC9552"/>
        </reference>
        <reference anchor="I-D.ietf-ippm-ioam-integrity-yang">
          <front>
            <title>A YANG Data Model for In Situ Operations, Administration, and Maintenance (IOAM) Integrity-Protected Options</title>
            <author fullname="Justin Iurman" initials="J." surname="Iurman">
              <organization>University of Liege</organization>
            </author>
            <author fullname="Tianran Zhou" initials="T." surname="Zhou">
              <organization>Huawei</organization>
            </author>
            <date day="8" month="May" year="2026"/>
            <abstract>
              <t>   In Situ Operations, Administration, and Maintenance (IOAM) is an
   example of an on-path hybrid measurement method to collect
   operational and telemetry information.  The collected data may then
   be exported to systems that will use it to, e.g., monitor, measure,
   or (re)configure the network.  Integrity Protection of In Situ
   Operations, Administration, and Maintenance (IOAM) Data Fields (RFC
   YYYY) defines IOAM Options with integrity protection, also called
   Integrity-Protected Options.  This document defines a YANG data model
   for the management of these Integrity-Protected Options.  The
   document also defines an IANA-maintained YANG module for IOAM
   Integrity Protection Methods.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-ippm-ioam-integrity-yang-08"/>
        </reference>
        <reference anchor="RFC5218">
          <front>
            <title>What Makes for a Successful Protocol?</title>
            <author fullname="D. Thaler" initials="D." surname="Thaler"/>
            <author fullname="B. Aboba" initials="B." surname="Aboba"/>
            <date month="July" year="2008"/>
            <abstract>
              <t>The Internet community has specified a large number of protocols to date, and these protocols have achieved varying degrees of success. Based on case studies, this document attempts to ascertain factors that contribute to or hinder a protocol's success. It is hoped that these observations can serve as guidance for future protocol work. This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5218"/>
          <seriesInfo name="DOI" value="10.17487/RFC5218"/>
        </reference>
        <reference anchor="RFC2439">
          <front>
            <title>BGP Route Flap Damping</title>
            <author fullname="C. Villamizar" initials="C." surname="Villamizar"/>
            <author fullname="R. Chandra" initials="R." surname="Chandra"/>
            <author fullname="R. Govindan" initials="R." surname="Govindan"/>
            <date month="November" year="1998"/>
            <abstract>
              <t>A usage of the BGP routing protocol is described which is capable of reducing the routing traffic passed on to routing peers and therefore the load on these peers without adversely affecting route convergence time for relatively stable routes. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="2439"/>
          <seriesInfo name="DOI" value="10.17487/RFC2439"/>
        </reference>
        <reference anchor="RFC1958">
          <front>
            <title>Architectural Principles of the Internet</title>
            <author fullname="B. Carpenter" initials="B." role="editor" surname="Carpenter"/>
            <date month="June" year="1996"/>
            <abstract>
              <t>The Internet and its architecture have grown in evolutionary fashion from modest beginnings, rather than from a Grand Plan. While this process of evolution is one of the main reasons for the technology's success, it nevertheless seems useful to record a snapshot of the current principles of the Internet architecture. This is intended for general guidance and general interest, and is in no way intended to be a formal or invariant reference model. This memo provides information for the Internet community. This memo does not specify an Internet standard of any kind.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="1958"/>
          <seriesInfo name="DOI" value="10.17487/RFC1958"/>
        </reference>
        <reference anchor="RFC6298">
          <front>
            <title>Computing TCP's Retransmission Timer</title>
            <author fullname="V. Paxson" initials="V." surname="Paxson"/>
            <author fullname="M. Allman" initials="M." surname="Allman"/>
            <author fullname="J. Chu" initials="J." surname="Chu"/>
            <author fullname="M. Sargent" initials="M." surname="Sargent"/>
            <date month="June" year="2011"/>
            <abstract>
              <t>This document defines the standard algorithm that Transmission Control Protocol (TCP) senders are required to use to compute and manage their retransmission timer. It expands on the discussion in Section 4.2.3.1 of RFC 1122 and upgrades the requirement of supporting the algorithm from a SHOULD to a MUST. This document obsoletes RFC 2988. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6298"/>
          <seriesInfo name="DOI" value="10.17487/RFC6298"/>
        </reference>
        <reference anchor="RFC9881">
          <front>
            <title>Internet X.509 Public Key Infrastructure -- Algorithm Identifiers for the Module-Lattice-Based Digital Signature Algorithm (ML-DSA)</title>
            <author fullname="J. Massimo" initials="J." surname="Massimo"/>
            <author fullname="P. Kampanakis" initials="P." surname="Kampanakis"/>
            <author fullname="S. Turner" initials="S." surname="Turner"/>
            <author fullname="B. E. Westerbaan" initials="B. E." surname="Westerbaan"/>
            <date month="October" year="2025"/>
            <abstract>
              <t>Digital signatures are used within X.509 certificates and Certificate Revocation Lists (CRLs), and to sign messages. This document specifies the conventions for using FIPS 204, the Module-Lattice-Based Digital Signature Algorithm (ML-DSA) in Internet X.509 certificates and CRLs. The conventions for the associated signatures, subject public keys, and private key are also described.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9881"/>
          <seriesInfo name="DOI" value="10.17487/RFC9881"/>
        </reference>
        <reference anchor="RFC8170">
          <front>
            <title>Planning for Protocol Adoption and Subsequent Transitions</title>
            <author fullname="D. Thaler" initials="D." role="editor" surname="Thaler"/>
            <date month="May" year="2017"/>
            <abstract>
              <t>Over the many years since the introduction of the Internet Protocol, we have seen a number of transitions throughout the protocol stack, such as deploying a new protocol, or updating or replacing an existing protocol. Many protocols and technologies were not designed to enable smooth transition to alternatives or to easily deploy extensions; thus, some transitions, such as the introduction of IPv6, have been difficult. This document attempts to summarize some basic principles to enable future transitions, and it also summarizes what makes for a good transition plan.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8170"/>
          <seriesInfo name="DOI" value="10.17487/RFC8170"/>
        </reference>
        <reference anchor="RFC5905">
          <front>
            <title>Network Time Protocol Version 4: Protocol and Algorithms Specification</title>
            <author fullname="D. Mills" initials="D." surname="Mills"/>
            <author fullname="J. Martin" initials="J." role="editor" surname="Martin"/>
            <author fullname="J. Burbank" initials="J." surname="Burbank"/>
            <author fullname="W. Kasch" initials="W." surname="Kasch"/>
            <date month="June" year="2010"/>
            <abstract>
              <t>The Network Time Protocol (NTP) is widely used to synchronize computer clocks in the Internet. This document describes NTP version 4 (NTPv4), which is backwards compatible with NTP version 3 (NTPv3), described in RFC 1305, as well as previous versions of the protocol. NTPv4 includes a modified protocol header to accommodate the Internet Protocol version 6 address family. NTPv4 includes fundamental improvements in the mitigation and discipline algorithms that extend the potential accuracy to the tens of microseconds with modern workstations and fast LANs. It includes a dynamic server discovery scheme, so that in many cases, specific server configuration is not required. It corrects certain errors in the NTPv3 design and implementation and includes an optional extension mechanism.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5905"/>
          <seriesInfo name="DOI" value="10.17487/RFC5905"/>
        </reference>
        <reference anchor="RFC2205">
          <front>
            <title>Resource ReSerVation Protocol (RSVP) -- Version 1 Functional Specification</title>
            <author fullname="R. Braden" initials="R." role="editor" surname="Braden"/>
            <author fullname="L. Zhang" initials="L." surname="Zhang"/>
            <author fullname="S. Berson" initials="S." surname="Berson"/>
            <author fullname="S. Herzog" initials="S." surname="Herzog"/>
            <author fullname="S. Jamin" initials="S." surname="Jamin"/>
            <date month="September" year="1997"/>
            <abstract>
              <t>This memo describes version 1 of RSVP, a resource reservation setup protocol designed for an integrated services Internet. RSVP provides receiver-initiated setup of resource reservations for multicast or unicast data flows, with good scaling and robustness properties. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="2205"/>
          <seriesInfo name="DOI" value="10.17487/RFC2205"/>
        </reference>
        <reference anchor="RFC2113">
          <front>
            <title>IP Router Alert Option</title>
            <author fullname="D. Katz" initials="D." surname="Katz"/>
            <date month="February" year="1997"/>
            <abstract>
              <t>This memo describes a new IP Option type that alerts transit routers to more closely examine the contents of an IP packet. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="2113"/>
          <seriesInfo name="DOI" value="10.17487/RFC2113"/>
        </reference>
        <reference anchor="RFC2711">
          <front>
            <title>IPv6 Router Alert Option</title>
            <author fullname="C. Partridge" initials="C." surname="Partridge"/>
            <author fullname="A. Jackson" initials="A." surname="Jackson"/>
            <date month="October" year="1999"/>
            <abstract>
              <t>This memo describes a new IPv6 Hop-by-Hop Option type that alerts transit routers to more closely examine the contents of an IP datagram. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="2711"/>
          <seriesInfo name="DOI" value="10.17487/RFC2711"/>
        </reference>
        <reference anchor="RFC9805">
          <front>
            <title>Deprecation of the IPv6 Router Alert Option for New Protocols</title>
            <author fullname="R. Bonica" initials="R." surname="Bonica"/>
            <date month="June" year="2025"/>
            <abstract>
              <t>This document deprecates the IPv6 Router Alert option. Protocols that use the IPv6 Router Alert option may continue to do so, even in future versions. However, new protocols that are standardized in the future must not use the IPv6 Router Alert option.</t>
              <t>This document updates RFC 2711.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9805"/>
          <seriesInfo name="DOI" value="10.17487/RFC9805"/>
        </reference>
        <reference anchor="RFC6709">
          <front>
            <title>Design Considerations for Protocol Extensions</title>
            <author fullname="B. Carpenter" initials="B." surname="Carpenter"/>
            <author fullname="B. Aboba" initials="B." role="editor" surname="Aboba"/>
            <author fullname="S. Cheshire" initials="S." surname="Cheshire"/>
            <date month="September" year="2012"/>
            <abstract>
              <t>This document discusses architectural issues related to the extensibility of Internet protocols, with a focus on design considerations. It is intended to assist designers of both base protocols and extensions. Case studies are included. A companion document, RFC 4775 (BCP 125), discusses procedures relating to the extensibility of IETF protocols. This document is not an Internet Standards Track specification; it is published for informational purposes.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6709"/>
          <seriesInfo name="DOI" value="10.17487/RFC6709"/>
        </reference>
        <reference anchor="RFC8799">
          <front>
            <title>Limited Domains and Internet Protocols</title>
            <author fullname="B. Carpenter" initials="B." surname="Carpenter"/>
            <author fullname="B. Liu" initials="B." surname="Liu"/>
            <date month="July" year="2020"/>
            <abstract>
              <t>There is a noticeable trend towards network behaviors and semantics that are specific to a particular set of requirements applied within a limited region of the Internet. Policies, default parameters, the options supported, the style of network management, and security requirements may vary between such limited regions. This document reviews examples of such limited domains (also known as controlled environments), notes emerging solutions, and includes a related taxonomy. It then briefly discusses the standardization of protocols for limited domains. Finally, it shows the need for a precise definition of "limited domain membership" and for mechanisms to allow nodes to join a domain securely and to find other members, including boundary nodes.</t>
              <t>This document is the product of the research of the authors. It has been produced through discussions and consultation within the IETF but is not the product of IETF consensus.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8799"/>
          <seriesInfo name="DOI" value="10.17487/RFC8799"/>
        </reference>
        <referencegroup anchor="BCP133" target="https://www.rfc-editor.org/info/bcp133">
          <reference anchor="RFC9743" target="https://www.rfc-editor.org/info/rfc9743">
            <front>
              <title>Specifying New Congestion Control Algorithms</title>
              <author fullname="M. Duke" initials="M." role="editor" surname="Duke"/>
              <author fullname="G. Fairhurst" initials="G." role="editor" surname="Fairhurst"/>
              <date month="March" year="2025"/>
              <abstract>
                <t>RFC 5033 discusses the principles and guidelines for standardizing new congestion control algorithms. This document obsoletes RFC 5033 to reflect changes in the congestion control landscape by providing a framework for the development and assessment of congestion control mechanisms, promoting stability across diverse network paths. This document seeks to ensure that proposed congestion control algorithms operate efficiently and without harm when used in the global Internet. It emphasizes the need for comprehensive testing and validation to prevent adverse interactions with existing flows.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="133"/>
            <seriesInfo name="RFC" value="9743"/>
            <seriesInfo name="DOI" value="10.17487/RFC9743"/>
          </reference>
        </referencegroup>
        <reference anchor="RFC1034">
          <front>
            <title>Domain names - concepts and facilities</title>
            <author fullname="P. Mockapetris" initials="P." surname="Mockapetris"/>
            <date month="November" year="1987"/>
            <abstract>
              <t>This RFC is the revised basic definition of The Domain Name System. It obsoletes RFC-882. This memo describes the domain style names and their used for host address look up and electronic mail forwarding. It discusses the clients and servers in the domain name system and the protocol used between them.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="13"/>
          <seriesInfo name="RFC" value="1034"/>
          <seriesInfo name="DOI" value="10.17487/RFC1034"/>
        </reference>
        <reference anchor="RFC5321">
          <front>
            <title>Simple Mail Transfer Protocol</title>
            <author fullname="J. Klensin" initials="J." surname="Klensin"/>
            <date month="October" year="2008"/>
            <abstract>
              <t>This document is a specification of the basic protocol for Internet electronic mail transport. It consolidates, updates, and clarifies several previous documents, making all or parts of most of them obsolete. It covers the SMTP extension mechanisms and best practices for the contemporary Internet, but does not provide details about particular extensions. Although SMTP was designed as a mail transport and delivery protocol, this specification also contains information that is important to its use as a "mail submission" protocol for "split-UA" (User Agent) mail reading systems and mobile environments. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5321"/>
          <seriesInfo name="DOI" value="10.17487/RFC5321"/>
        </reference>
        <reference anchor="RFC5884">
          <front>
            <title>Bidirectional Forwarding Detection (BFD) for MPLS Label Switched Paths (LSPs)</title>
            <author fullname="R. Aggarwal" initials="R." surname="Aggarwal"/>
            <author fullname="K. Kompella" initials="K." surname="Kompella"/>
            <author fullname="T. Nadeau" initials="T." surname="Nadeau"/>
            <author fullname="G. Swallow" initials="G." surname="Swallow"/>
            <date month="June" year="2010"/>
            <abstract>
              <t>One desirable application of Bidirectional Forwarding Detection (BFD) is to detect a Multiprotocol Label Switching (MPLS) Label Switched Path (LSP) data plane failure. LSP Ping is an existing mechanism for detecting MPLS data plane failures and for verifying the MPLS LSP data plane against the control plane. BFD can be used for the former, but not for the latter. However, the control plane processing required for BFD Control packets is relatively smaller than the processing required for LSP Ping messages. A combination of LSP Ping and BFD can be used to provide faster data plane failure detection and/or make it possible to provide such detection on a greater number of LSPs. This document describes the applicability of BFD in relation to LSP Ping for this application. It also describes procedures for using BFD in this environment. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5884"/>
          <seriesInfo name="DOI" value="10.17487/RFC5884"/>
        </reference>
        <reference anchor="RFC8899">
          <front>
            <title>Packetization Layer Path MTU Discovery for Datagram Transports</title>
            <author fullname="G. Fairhurst" initials="G." surname="Fairhurst"/>
            <author fullname="T. Jones" initials="T." surname="Jones"/>
            <author fullname="M. Tüxen" initials="M." surname="Tüxen"/>
            <author fullname="I. Rüngeler" initials="I." surname="Rüngeler"/>
            <author fullname="T. Völker" initials="T." surname="Völker"/>
            <date month="September" year="2020"/>
            <abstract>
              <t>This document specifies Datagram Packetization Layer Path MTU Discovery (DPLPMTUD). This is a robust method for Path MTU Discovery (PMTUD) for datagram Packetization Layers (PLs). It allows a PL, or a datagram application that uses a PL, to discover whether a network path can support the current size of datagram. This can be used to detect and reduce the message size when a sender encounters a packet black hole. It can also probe a network path to discover whether the maximum packet size can be increased. This provides functionality for datagram transports that is equivalent to the PLPMTUD specification for TCP, specified in RFC 4821, which it updates. It also updates the UDP Usage Guidelines to refer to this method for use with UDP datagrams and updates SCTP.</t>
              <t>The document provides implementation notes for incorporating Datagram PMTUD into IETF datagram transports or applications that use datagram transports.</t>
              <t>This specification updates RFC 4960, RFC 4821, RFC 6951, RFC 8085, and RFC 8261.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8899"/>
          <seriesInfo name="DOI" value="10.17487/RFC8899"/>
        </reference>
        <reference anchor="RFC8900">
          <front>
            <title>IP Fragmentation Considered Fragile</title>
            <author fullname="R. Bonica" initials="R." surname="Bonica"/>
            <author fullname="F. Baker" initials="F." surname="Baker"/>
            <author fullname="G. Huston" initials="G." surname="Huston"/>
            <author fullname="R. Hinden" initials="R." surname="Hinden"/>
            <author fullname="O. Troan" initials="O." surname="Troan"/>
            <author fullname="F. Gont" initials="F." surname="Gont"/>
            <date month="September" year="2020"/>
            <abstract>
              <t>This document describes IP fragmentation and explains how it introduces fragility to Internet communication.</t>
              <t>This document also proposes alternatives to IP fragmentation and provides recommendations for developers and network operators.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="230"/>
          <seriesInfo name="RFC" value="8900"/>
          <seriesInfo name="DOI" value="10.17487/RFC8900"/>
        </reference>
        <reference anchor="RFC9424">
          <front>
            <title>Indicators of Compromise (IoCs) and Their Role in Attack Defence</title>
            <author fullname="K. Paine" initials="K." surname="Paine"/>
            <author fullname="O. Whitehouse" initials="O." surname="Whitehouse"/>
            <author fullname="J. Sellwood" initials="J." surname="Sellwood"/>
            <author fullname="A. Shaw" initials="A." surname="Shaw"/>
            <date month="August" year="2023"/>
            <abstract>
              <t>Cyber defenders frequently rely on Indicators of Compromise (IoCs) to identify, trace, and block malicious activity in networks or on endpoints. This document reviews the fundamentals, opportunities, operational limitations, and recommendations for IoC use. It highlights the need for IoCs to be detectable in implementations of Internet protocols, tools, and technologies -- both for the IoCs' initial discovery and their use in detection -- and provides a foundation for approaches to operational challenges in network security.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9424"/>
          <seriesInfo name="DOI" value="10.17487/RFC9424"/>
        </reference>
        <reference anchor="I-D.ietf-quic-qlog-main-schema">
          <front>
            <title>qlog: Structured Logging for Network Protocols</title>
            <author fullname="Robin Marx" initials="R." surname="Marx">
              <organization>Akamai</organization>
            </author>
            <author fullname="Luca Niccolini" initials="L." surname="Niccolini">
              <organization>Meta</organization>
            </author>
            <author fullname="Marten Seemann" initials="M." surname="Seemann">
         </author>
            <author fullname="Lucas Pardue" initials="L." surname="Pardue">
              <organization>Cloudflare</organization>
            </author>
            <date day="6" month="July" year="2026"/>
            <abstract>
              <t>   qlog provides extensible structured logging for network protocols,
   allowing for easy sharing of data that benefits common debug and
   analysis methods and tooling.  This document describes key concepts
   of qlog: formats, files, traces, events, and extension points.  This
   definition includes the high-level log file schemas, and generic
   event schemas.  Requirements and guidelines for creating protocol-
   specific event schemas are also presented.  All schemas are defined
   independent of serialization format, allowing logs to be represented
   in various ways such as JSON, CSV, or protobuf.

Note to Readers

      Note to RFC editor: Please remove this section before publication.

   Feedback and discussion are welcome at https://github.com/quicwg/qlog
   (https://github.com/quicwg/qlog).  Readers are advised to refer to
   the "editor's draft" at that URL for an up-to-date version of this
   document.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-quic-qlog-main-schema-14"/>
        </reference>
        <reference anchor="RFC9000">
          <front>
            <title>QUIC: A UDP-Based Multiplexed and Secure Transport</title>
            <author fullname="J. Iyengar" initials="J." role="editor" surname="Iyengar"/>
            <author fullname="M. Thomson" initials="M." role="editor" surname="Thomson"/>
            <date month="May" year="2021"/>
            <abstract>
              <t>This document defines the core of the QUIC transport protocol. QUIC provides applications with flow-controlled streams for structured communication, low-latency connection establishment, and network path migration. QUIC includes security measures that ensure confidentiality, integrity, and availability in a range of deployment circumstances. Accompanying documents describe the integration of TLS for key negotiation, loss detection, and an exemplary congestion control algorithm.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9000"/>
          <seriesInfo name="DOI" value="10.17487/RFC9000"/>
        </reference>
        <reference anchor="RFC9846">
          <front>
            <title>The Transport Layer Security (TLS) Protocol Version 1.3</title>
            <author fullname="E. Rescorla" initials="E." surname="Rescorla"/>
            <date month="July" year="2026"/>
            <abstract>
              <t>This document specifies version 1.3 of the Transport Layer Security (TLS) protocol. TLS allows client/server applications to communicate over the Internet in a way that is designed to prevent eavesdropping, tampering, and message forgery.</t>
              <t>This document obsoletes RFC 8446, which specified TLS 1.3. This document obsoletes RFC 5246 (specifying TLS 1.2) and RFCs 5077, 6961, 7627, and 8422, all of which pertain to TLS 1.2 or earlier, and updates RFCs 5705 and 6066. This document also specifies new requirements for TLS 1.2 implementations.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9846"/>
          <seriesInfo name="DOI" value="10.17487/RFC9846"/>
        </reference>
        <reference anchor="RFC9849">
          <front>
            <title>TLS Encrypted Client Hello</title>
            <author fullname="E. Rescorla" initials="E." surname="Rescorla"/>
            <author fullname="K. Oku" initials="K." surname="Oku"/>
            <author fullname="N. Sullivan" initials="N." surname="Sullivan"/>
            <author fullname="C. A. Wood" initials="C. A." surname="Wood"/>
            <date month="March" year="2026"/>
            <abstract>
              <t>This document describes a mechanism in Transport Layer Security (TLS) for encrypting a message under a server public key.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9849"/>
          <seriesInfo name="DOI" value="10.17487/RFC9849"/>
        </reference>
        <reference anchor="RFC8484">
          <front>
            <title>DNS Queries over HTTPS (DoH)</title>
            <author fullname="P. Hoffman" initials="P." surname="Hoffman"/>
            <author fullname="P. McManus" initials="P." surname="McManus"/>
            <date month="October" year="2018"/>
            <abstract>
              <t>This document defines a protocol for sending DNS queries and getting DNS responses over HTTPS. Each DNS query-response pair is mapped into an HTTP exchange.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8484"/>
          <seriesInfo name="DOI" value="10.17487/RFC8484"/>
        </reference>
        <reference anchor="I-D.parsons-opsawg-security-operations">
          <front>
            <title>Security Operations Fundamentals and Guidance</title>
            <author fullname="Michael P" initials="M." surname="P">
              <organization>UK National Cyber Security Centre</organization>
            </author>
            <author fullname="Flo D" initials="F." surname="D">
              <organization>UK National Cyber Security Centre</organization>
            </author>
            <date day="9" month="September" year="2026"/>
            <abstract>
              <t>   Security operators are responsible for detecting malicious activity,
   responding to threats and defending their networks and systems from
   cyber attacks.  Security operations are commonly entwined with other
   operational and management priorities to ensure that both security
   and operational priorities are considered holistically.

   With security operators being a crucial part of operation, management
   and security of the network, it is valuable to give consideration to
   them during the design of new protocols.  This document builds upon
   draft-ietf-opsawg-rfc5706bis, describing the fundamentals of security
   operations to provide a foundation for considerations for protocol
   design and guidance.  This document also describes how security
   operations considerations can be most usefully included in other IETF
   documents.

              </t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-parsons-opsawg-security-operations-02"/>
        </reference>
        <referencegroup anchor="BCP47" target="https://www.rfc-editor.org/info/bcp47">
          <reference anchor="RFC4647" target="https://www.rfc-editor.org/info/rfc4647">
            <front>
              <title>Matching of Language Tags</title>
              <author fullname="A. Phillips" initials="A." role="editor" surname="Phillips"/>
              <author fullname="M. Davis" initials="M." role="editor" surname="Davis"/>
              <date month="September" year="2006"/>
              <abstract>
                <t>This document describes a syntax, called a "language-range", for specifying items in a user's list of language preferences. It also describes different mechanisms for comparing and matching these to language tags. Two kinds of matching mechanisms, filtering and lookup, are defined. Filtering produces a (potentially empty) set of language tags, whereas lookup produces a single language tag. Possible applications include language negotiation or content selection. This document, in combination with RFC 4646, replaces RFC 3066, which replaced RFC 1766. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="47"/>
            <seriesInfo name="RFC" value="4647"/>
            <seriesInfo name="DOI" value="10.17487/RFC4647"/>
          </reference>
          <reference anchor="RFC5646" target="https://www.rfc-editor.org/info/rfc5646">
            <front>
              <title>Tags for Identifying Languages</title>
              <author fullname="A. Phillips" initials="A." role="editor" surname="Phillips"/>
              <author fullname="M. Davis" initials="M." role="editor" surname="Davis"/>
              <date month="September" year="2009"/>
              <abstract>
                <t>This document describes the structure, content, construction, and semantics of language tags for use in cases where it is desirable to indicate the language used in an information object. It also describes how to register values for use in language tags and the creation of user-defined extensions for private interchange. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="47"/>
            <seriesInfo name="RFC" value="5646"/>
            <seriesInfo name="DOI" value="10.17487/RFC5646"/>
          </reference>
        </referencegroup>
        <referencegroup anchor="BCP166" target="https://www.rfc-editor.org/info/bcp166">
          <reference anchor="RFC6365" target="https://www.rfc-editor.org/info/rfc6365">
            <front>
              <title>Terminology Used in Internationalization in the IETF</title>
              <author fullname="P. Hoffman" initials="P." surname="Hoffman"/>
              <author fullname="J. Klensin" initials="J." surname="Klensin"/>
              <date month="September" year="2011"/>
              <abstract>
                <t>This document provides a list of terms used in the IETF when discussing internationalization. The purpose is to help frame discussions of internationalization in the various areas of the IETF and to help introduce the main concepts to IETF participants. This memo documents an Internet Best Current Practice.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="166"/>
            <seriesInfo name="RFC" value="6365"/>
            <seriesInfo name="DOI" value="10.17487/RFC6365"/>
          </reference>
        </referencegroup>
        <reference anchor="RFC6241">
          <front>
            <title>Network Configuration Protocol (NETCONF)</title>
            <author fullname="R. Enns" initials="R." role="editor" surname="Enns"/>
            <author fullname="M. Bjorklund" initials="M." role="editor" surname="Bjorklund"/>
            <author fullname="J. Schoenwaelder" initials="J." role="editor" surname="Schoenwaelder"/>
            <author fullname="A. Bierman" initials="A." role="editor" surname="Bierman"/>
            <date month="June" year="2011"/>
            <abstract>
              <t>The Network Configuration Protocol (NETCONF) defined in this document provides mechanisms to install, manipulate, and delete the configuration of network devices. It uses an Extensible Markup Language (XML)-based data encoding for the configuration data as well as the protocol messages. The NETCONF protocol operations are realized as remote procedure calls (RPCs). This document obsoletes RFC 4741. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6241"/>
          <seriesInfo name="DOI" value="10.17487/RFC6241"/>
        </reference>
        <reference anchor="RFC3535">
          <front>
            <title>Overview of the 2002 IAB Network Management Workshop</title>
            <author fullname="J. Schoenwaelder" initials="J." surname="Schoenwaelder"/>
            <date month="May" year="2003"/>
            <abstract>
              <t>This document provides an overview of a workshop held by the Internet Architecture Board (IAB) on Network Management. The workshop was hosted by CNRI in Reston, VA, USA on June 4 thru June 6, 2002. The goal of the workshop was to continue the important dialog started between network operators and protocol developers, and to guide the IETFs focus on future work regarding network management. This report summarizes the discussions and lists the conclusions and recommendations to the Internet Engineering Task Force (IETF) community. This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="3535"/>
          <seriesInfo name="DOI" value="10.17487/RFC3535"/>
        </reference>
        <reference anchor="RFC6632">
          <front>
            <title>An Overview of the IETF Network Management Standards</title>
            <author fullname="M. Ersue" initials="M." role="editor" surname="Ersue"/>
            <author fullname="B. Claise" initials="B." surname="Claise"/>
            <date month="June" year="2012"/>
            <abstract>
              <t>This document gives an overview of the IETF network management standards and summarizes existing and ongoing development of IETF Standards Track network management protocols and data models. The document refers to other overview documents, where they exist and classifies the standards for easy orientation. The purpose of this document is, on the one hand, to help system developers and users to select appropriate standard management protocols and data models to address relevant management needs. On the other hand, the document can be used as an overview and guideline by other Standard Development Organizations or bodies planning to use IETF management technologies and data models. This document does not cover Operations, Administration, and Maintenance (OAM) technologies on the data-path, e.g., OAM of tunnels, MPLS Transport Profile (MPLS-TP) OAM, and pseudowire as well as the corresponding management models. This document is not an Internet Standards Track specification; it is published for informational purposes.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6632"/>
          <seriesInfo name="DOI" value="10.17487/RFC6632"/>
        </reference>
        <reference anchor="RFC7854">
          <front>
            <title>BGP Monitoring Protocol (BMP)</title>
            <author fullname="J. Scudder" initials="J." role="editor" surname="Scudder"/>
            <author fullname="R. Fernando" initials="R." surname="Fernando"/>
            <author fullname="S. Stuart" initials="S." surname="Stuart"/>
            <date month="June" year="2016"/>
            <abstract>
              <t>This document defines the BGP Monitoring Protocol (BMP), which can be used to monitor BGP sessions. BMP is intended to provide a convenient interface for obtaining route views. Prior to the introduction of BMP, screen scraping was the most commonly used approach to obtaining such views. The design goals are to keep BMP simple, useful, easily implemented, and minimally service affecting. BMP is not suitable for use as a routing protocol.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7854"/>
          <seriesInfo name="DOI" value="10.17487/RFC7854"/>
        </reference>
        <reference anchor="RFC8639">
          <front>
            <title>Subscription to YANG Notifications</title>
            <author fullname="E. Voit" initials="E." surname="Voit"/>
            <author fullname="A. Clemm" initials="A." surname="Clemm"/>
            <author fullname="A. Gonzalez Prieto" initials="A." surname="Gonzalez Prieto"/>
            <author fullname="E. Nilsen-Nygaard" initials="E." surname="Nilsen-Nygaard"/>
            <author fullname="A. Tripathy" initials="A." surname="Tripathy"/>
            <date month="September" year="2019"/>
            <abstract>
              <t>This document defines a YANG data model and associated mechanisms enabling subscriber-specific subscriptions to a publisher's event streams. Applying these elements allows a subscriber to request and receive a continuous, customized feed of publisher-generated information.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8639"/>
          <seriesInfo name="DOI" value="10.17487/RFC8639"/>
        </reference>
        <reference anchor="RFC8641">
          <front>
            <title>Subscription to YANG Notifications for Datastore Updates</title>
            <author fullname="A. Clemm" initials="A." surname="Clemm"/>
            <author fullname="E. Voit" initials="E." surname="Voit"/>
            <date month="September" year="2019"/>
            <abstract>
              <t>This document describes a mechanism that allows subscriber applications to request a continuous and customized stream of updates from a YANG datastore. Providing such visibility into updates enables new capabilities based on the remote mirroring and monitoring of configuration and operational state.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8641"/>
          <seriesInfo name="DOI" value="10.17487/RFC8641"/>
        </reference>
        <reference anchor="RFC8632">
          <front>
            <title>A YANG Data Model for Alarm Management</title>
            <author fullname="S. Vallin" initials="S." surname="Vallin"/>
            <author fullname="M. Bjorklund" initials="M." surname="Bjorklund"/>
            <date month="September" year="2019"/>
            <abstract>
              <t>This document defines a YANG module for alarm management. It includes functions for alarm-list management, alarm shelving, and notifications to inform management systems. There are also operations to manage the operator state of an alarm and administrative alarm procedures. The module carefully maps to relevant alarm standards.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8632"/>
          <seriesInfo name="DOI" value="10.17487/RFC8632"/>
        </reference>
        <reference anchor="RFC9232">
          <front>
            <title>Network Telemetry Framework</title>
            <author fullname="H. Song" initials="H." surname="Song"/>
            <author fullname="F. Qin" initials="F." surname="Qin"/>
            <author fullname="P. Martinez-Julia" initials="P." surname="Martinez-Julia"/>
            <author fullname="L. Ciavaglia" initials="L." surname="Ciavaglia"/>
            <author fullname="A. Wang" initials="A." surname="Wang"/>
            <date month="May" year="2022"/>
            <abstract>
              <t>Network telemetry is a technology for gaining network insight and facilitating efficient and automated network management. It encompasses various techniques for remote data generation, collection, correlation, and consumption. This document describes an architectural framework for network telemetry, motivated by challenges that are encountered as part of the operation of networks and by the requirements that ensue. This document clarifies the terminology and classifies the modules and components of a network telemetry system from different perspectives. The framework and taxonomy help to set a common ground for the collection of related work and provide guidance for related technique and standard developments.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9232"/>
          <seriesInfo name="DOI" value="10.17487/RFC9232"/>
        </reference>
        <reference anchor="RFC7950">
          <front>
            <title>The YANG 1.1 Data Modeling Language</title>
            <author fullname="M. Bjorklund" initials="M." role="editor" surname="Bjorklund"/>
            <date month="August" year="2016"/>
            <abstract>
              <t>YANG is a data modeling language used to model configuration data, state data, Remote Procedure Calls, and notifications for network management protocols. This document describes the syntax and semantics of version 1.1 of the YANG language. YANG version 1.1 is a maintenance release of the YANG language, addressing ambiguities and defects in the original specification. There are a small number of backward incompatibilities from YANG version 1. This document also specifies the YANG mappings to the Network Configuration Protocol (NETCONF).</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7950"/>
          <seriesInfo name="DOI" value="10.17487/RFC7950"/>
        </reference>
        <reference anchor="RFC8040">
          <front>
            <title>RESTCONF Protocol</title>
            <author fullname="A. Bierman" initials="A." surname="Bierman"/>
            <author fullname="M. Bjorklund" initials="M." surname="Bjorklund"/>
            <author fullname="K. Watsen" initials="K." surname="Watsen"/>
            <date month="January" year="2017"/>
            <abstract>
              <t>This document describes an HTTP-based protocol that provides a programmatic interface for accessing data defined in YANG, using the datastore concepts defined in the Network Configuration Protocol (NETCONF).</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8040"/>
          <seriesInfo name="DOI" value="10.17487/RFC8040"/>
        </reference>
        <reference anchor="RFC7011">
          <front>
            <title>Specification of the IP Flow Information Export (IPFIX) Protocol for the Exchange of Flow Information</title>
            <author fullname="B. Claise" initials="B." role="editor" surname="Claise"/>
            <author fullname="B. Trammell" initials="B." role="editor" surname="Trammell"/>
            <author fullname="P. Aitken" initials="P." surname="Aitken"/>
            <date month="September" year="2013"/>
            <abstract>
              <t>This document specifies the IP Flow Information Export (IPFIX) protocol, which serves as a means for transmitting Traffic Flow information over the network. In order to transmit Traffic Flow information from an Exporting Process to a Collecting Process, a common representation of flow data and a standard means of communicating them are required. This document describes how the IPFIX Data and Template Records are carried over a number of transport protocols from an IPFIX Exporting Process to an IPFIX Collecting Process. This document obsoletes RFC 5101.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="77"/>
          <seriesInfo name="RFC" value="7011"/>
          <seriesInfo name="DOI" value="10.17487/RFC7011"/>
        </reference>
        <reference anchor="RFC5424">
          <front>
            <title>The Syslog Protocol</title>
            <author fullname="R. Gerhards" initials="R." surname="Gerhards"/>
            <date month="March" year="2009"/>
            <abstract>
              <t>This document describes the syslog protocol, which is used to convey event notification messages. This protocol utilizes a layered architecture, which allows the use of any number of transport protocols for transmission of syslog messages. It also provides a message format that allows vendor-specific extensions to be provided in a structured way.</t>
              <t>This document has been written with the original design goals for traditional syslog in mind. The need for a new layered specification has arisen because standardization efforts for reliable and secure syslog extensions suffer from the lack of a Standards-Track and transport-independent RFC. Without this document, each other standard needs to define its own syslog packet format and transport mechanism, which over time will introduce subtle compatibility issues. This document tries to provide a foundation that syslog extensions can build on. This layered architecture approach also provides a solid basis that allows code to be written once for each syslog feature rather than once for each transport. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5424"/>
          <seriesInfo name="DOI" value="10.17487/RFC5424"/>
        </reference>
        <reference anchor="RFC6020">
          <front>
            <title>YANG - A Data Modeling Language for the Network Configuration Protocol (NETCONF)</title>
            <author fullname="M. Bjorklund" initials="M." role="editor" surname="Bjorklund"/>
            <date month="October" year="2010"/>
            <abstract>
              <t>YANG is a data modeling language used to model configuration and state data manipulated by the Network Configuration Protocol (NETCONF), NETCONF remote procedure calls, and NETCONF notifications. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6020"/>
          <seriesInfo name="DOI" value="10.17487/RFC6020"/>
        </reference>
        <reference anchor="RFC9907">
          <front>
            <title>Guidelines for Authors and Reviewers of Documents Containing YANG Data Models</title>
            <author fullname="A. Bierman" initials="A." surname="Bierman"/>
            <author fullname="M. Boucadair" initials="M." role="editor" surname="Boucadair"/>
            <author fullname="Q. Wu" initials="Q." surname="Wu"/>
            <date month="March" year="2026"/>
            <abstract>
              <t>This document provides guidelines for authors and reviewers of specifications containing YANG data models, including IANA-maintained YANG modules. Recommendations and procedures are defined, which are intended to increase interoperability and usability of Network Configuration Protocol (NETCONF) and RESTCONF protocol implementations that utilize YANG modules.</t>
              <t>This document obsoletes RFC 8407; it also updates RFC 8126 by providing additional guidelines for writing the IANA considerations for RFCs that specify IANA-maintained YANG modules.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="216"/>
          <seriesInfo name="RFC" value="9907"/>
          <seriesInfo name="DOI" value="10.17487/RFC9907"/>
        </reference>
        <reference anchor="RFC8199">
          <front>
            <title>YANG Module Classification</title>
            <author fullname="D. Bogdanovic" initials="D." surname="Bogdanovic"/>
            <author fullname="B. Claise" initials="B." surname="Claise"/>
            <author fullname="C. Moberg" initials="C." surname="Moberg"/>
            <date month="July" year="2017"/>
            <abstract>
              <t>The YANG data modeling language is currently being considered for a wide variety of applications throughout the networking industry at large. Many standards development organizations (SDOs), open-source software projects, vendors, and users are using YANG to develop and publish YANG modules for a wide variety of applications. At the same time, there is currently no well-known terminology to categorize various types of YANG modules.</t>
              <t>A consistent terminology would help with the categorization of YANG modules, assist in the analysis of the YANG data modeling efforts in the IETF and other organizations, and bring clarity to the YANG- related discussions between the different groups.</t>
              <t>This document describes a set of concepts and associated terms to support consistent classification of YANG modules.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8199"/>
          <seriesInfo name="DOI" value="10.17487/RFC8199"/>
        </reference>
        <reference anchor="RFC9182">
          <front>
            <title>A YANG Network Data Model for Layer 3 VPNs</title>
            <author fullname="S. Barguil" initials="S." surname="Barguil"/>
            <author fullname="O. Gonzalez de Dios" initials="O." role="editor" surname="Gonzalez de Dios"/>
            <author fullname="M. Boucadair" initials="M." role="editor" surname="Boucadair"/>
            <author fullname="L. Munoz" initials="L." surname="Munoz"/>
            <author fullname="A. Aguado" initials="A." surname="Aguado"/>
            <date month="February" year="2022"/>
            <abstract>
              <t>As a complement to the Layer 3 Virtual Private Network Service Model (L3SM), which is used for communication between customers and service providers, this document defines an L3VPN Network Model (L3NM) that can be used for the provisioning of Layer 3 Virtual Private Network (L3VPN) services within a service provider network. The model provides a network-centric view of L3VPN services.</t>
              <t>The L3NM is meant to be used by a network controller to derive the configuration information that will be sent to relevant network devices. The model can also facilitate communication between a service orchestrator and a network controller/orchestrator.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9182"/>
          <seriesInfo name="DOI" value="10.17487/RFC9182"/>
        </reference>
        <reference anchor="RFC9291">
          <front>
            <title>A YANG Network Data Model for Layer 2 VPNs</title>
            <author fullname="M. Boucadair" initials="M." role="editor" surname="Boucadair"/>
            <author fullname="O. Gonzalez de Dios" initials="O." role="editor" surname="Gonzalez de Dios"/>
            <author fullname="S. Barguil" initials="S." surname="Barguil"/>
            <author fullname="L. Munoz" initials="L." surname="Munoz"/>
            <date month="September" year="2022"/>
            <abstract>
              <t>This document defines an L2VPN Network Model (L2NM) that can be used to manage the provisioning of Layer 2 Virtual Private Network (L2VPN) services within a network (e.g., a service provider network). The L2NM complements the L2VPN Service Model (L2SM) by providing a network-centric view of the service that is internal to a service provider. The L2NM is particularly meant to be used by a network controller to derive the configuration information that will be sent to relevant network devices.</t>
              <t>Also, this document defines a YANG module to manage Ethernet segments and the initial versions of two IANA-maintained modules that include a set of identities of BGP Layer 2 encapsulation types and pseudowire types.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9291"/>
          <seriesInfo name="DOI" value="10.17487/RFC9291"/>
        </reference>
        <reference anchor="RFC8309">
          <front>
            <title>Service Models Explained</title>
            <author fullname="Q. Wu" initials="Q." surname="Wu"/>
            <author fullname="W. Liu" initials="W." surname="Liu"/>
            <author fullname="A. Farrel" initials="A." surname="Farrel"/>
            <date month="January" year="2018"/>
            <abstract>
              <t>The IETF has produced many modules in the YANG modeling language. The majority of these modules are used to construct data models to model devices or monolithic functions.</t>
              <t>A small number of YANG modules have been defined to model services (for example, the Layer 3 Virtual Private Network Service Model (L3SM) produced by the L3SM working group and documented in RFC 8049).</t>
              <t>This document describes service models as used within the IETF and also shows where a service model might fit into a software-defined networking architecture. Note that service models do not make any assumption of how a service is actually engineered and delivered for a customer; details of how network protocols and devices are engineered to deliver a service are captured in other modules that are not exposed through the interface between the customer and the provider.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8309"/>
          <seriesInfo name="DOI" value="10.17487/RFC8309"/>
        </reference>
        <reference anchor="RFC8299">
          <front>
            <title>YANG Data Model for L3VPN Service Delivery</title>
            <author fullname="Q. Wu" initials="Q." role="editor" surname="Wu"/>
            <author fullname="S. Litkowski" initials="S." surname="Litkowski"/>
            <author fullname="L. Tomotaki" initials="L." surname="Tomotaki"/>
            <author fullname="K. Ogaki" initials="K." surname="Ogaki"/>
            <date month="January" year="2018"/>
            <abstract>
              <t>This document defines a YANG data model that can be used for communication between customers and network operators and to deliver a Layer 3 provider-provisioned VPN service. This document is limited to BGP PE-based VPNs as described in RFCs 4026, 4110, and 4364. This model is intended to be instantiated at the management system to deliver the overall service. It is not a configuration model to be used directly on network elements. This model provides an abstracted view of the Layer 3 IP VPN service configuration components. It will be up to the management system to take this model as input and use specific configuration models to configure the different network elements to deliver the service. How the configuration of network elements is done is out of scope for this document.</t>
              <t>This document obsoletes RFC 8049; it replaces the unimplementable module in that RFC with a new module with the same name that is not backward compatible. The changes are a series of small fixes to the YANG module and some clarifications to the text.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8299"/>
          <seriesInfo name="DOI" value="10.17487/RFC8299"/>
        </reference>
        <reference anchor="RFC8466">
          <front>
            <title>A YANG Data Model for Layer 2 Virtual Private Network (L2VPN) Service Delivery</title>
            <author fullname="B. Wen" initials="B." surname="Wen"/>
            <author fullname="G. Fioccola" initials="G." role="editor" surname="Fioccola"/>
            <author fullname="C. Xie" initials="C." surname="Xie"/>
            <author fullname="L. Jalil" initials="L." surname="Jalil"/>
            <date month="October" year="2018"/>
            <abstract>
              <t>This document defines a YANG data model that can be used to configure a Layer 2 provider-provisioned VPN service. It is up to a management system to take this as an input and generate specific configuration models to configure the different network elements to deliver the service. How this configuration of network elements is done is out of scope for this document.</t>
              <t>The YANG data model defined in this document includes support for point-to-point Virtual Private Wire Services (VPWSs) and multipoint Virtual Private LAN Services (VPLSs) that use Pseudowires signaled using the Label Distribution Protocol (LDP) and the Border Gateway Protocol (BGP) as described in RFCs 4761 and 6624.</t>
              <t>The YANG data model defined in this document conforms to the Network Management Datastore Architecture defined in RFC 8342.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8466"/>
          <seriesInfo name="DOI" value="10.17487/RFC8466"/>
        </reference>
        <reference anchor="RFC3139">
          <front>
            <title>Requirements for Configuration Management of IP-based Networks</title>
            <author fullname="L. Sanchez" initials="L." surname="Sanchez"/>
            <author fullname="K. McCloghrie" initials="K." surname="McCloghrie"/>
            <author fullname="J. Saperia" initials="J." surname="Saperia"/>
            <date month="June" year="2001"/>
            <abstract>
              <t>This memo discusses different approaches to configure networks and identifies a set of configuration management requirements for IP-based networks. This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="3139"/>
          <seriesInfo name="DOI" value="10.17487/RFC3139"/>
        </reference>
        <reference anchor="RFC3198">
          <front>
            <title>Terminology for Policy-Based Management</title>
            <author fullname="A. Westerinen" initials="A." surname="Westerinen"/>
            <author fullname="J. Schnizlein" initials="J." surname="Schnizlein"/>
            <author fullname="J. Strassner" initials="J." surname="Strassner"/>
            <author fullname="M. Scherling" initials="M." surname="Scherling"/>
            <author fullname="B. Quinn" initials="B." surname="Quinn"/>
            <author fullname="S. Herzog" initials="S." surname="Herzog"/>
            <author fullname="A. Huynh" initials="A." surname="Huynh"/>
            <author fullname="M. Carlson" initials="M." surname="Carlson"/>
            <author fullname="J. Perry" initials="J." surname="Perry"/>
            <author fullname="S. Waldbusser" initials="S." surname="Waldbusser"/>
            <date month="November" year="2001"/>
            <abstract>
              <t>This document is a glossary of policy-related terms. It provides abbreviations, explanations, and recommendations for use of these terms. The intent is to improve the comprehensibility and consistency of writing that deals with network policy, particularly Internet Standards documents (ISDs). This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="3198"/>
          <seriesInfo name="DOI" value="10.17487/RFC3198"/>
        </reference>
        <reference anchor="RFC5198">
          <front>
            <title>Unicode Format for Network Interchange</title>
            <author fullname="J. Klensin" initials="J." surname="Klensin"/>
            <author fullname="M. Padlipsky" initials="M." surname="Padlipsky"/>
            <date month="March" year="2008"/>
            <abstract>
              <t>The Internet today is in need of a standardized form for the transmission of internationalized "text" information, paralleling the specifications for the use of ASCII that date from the early days of the ARPANET. This document specifies that format, using UTF-8 with normalization and specific line-ending sequences. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5198"/>
          <seriesInfo name="DOI" value="10.17487/RFC5198"/>
        </reference>
        <reference anchor="RFC2975">
          <front>
            <title>Introduction to Accounting Management</title>
            <author fullname="B. Aboba" initials="B." surname="Aboba"/>
            <author fullname="J. Arkko" initials="J." surname="Arkko"/>
            <author fullname="D. Harrington" initials="D." surname="Harrington"/>
            <date month="October" year="2000"/>
            <abstract>
              <t>This document describes and discusses the issues involved in the design of the modern accounting systems. The field of Accounting Management is concerned with the collection the collection of resource consumption data for the purposes of capacity and trend analysis, cost allocation, auditing, and billing. This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="2975"/>
          <seriesInfo name="DOI" value="10.17487/RFC2975"/>
        </reference>
        <reference anchor="RFC2544">
          <front>
            <title>Benchmarking Methodology for Network Interconnect Devices</title>
            <author fullname="S. Bradner" initials="S." surname="Bradner"/>
            <author fullname="J. McQuaid" initials="J." surname="McQuaid"/>
            <date month="March" year="1999"/>
            <abstract>
              <t>This document is a republication of RFC 1944 correcting the values for the IP addresses which were assigned to be used as the default addresses for networking test equipment. This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="2544"/>
          <seriesInfo name="DOI" value="10.17487/RFC2544"/>
        </reference>
        <reference anchor="RFC2330">
          <front>
            <title>Framework for IP Performance Metrics</title>
            <author fullname="V. Paxson" initials="V." surname="Paxson"/>
            <author fullname="G. Almes" initials="G." surname="Almes"/>
            <author fullname="J. Mahdavi" initials="J." surname="Mahdavi"/>
            <author fullname="M. Mathis" initials="M." surname="Mathis"/>
            <date month="May" year="1998"/>
            <abstract>
              <t>The purpose of this memo is to define a general framework for particular metrics to be developed by the IETF's IP Performance Metrics effort. This memo provides information for the Internet community. It does not specify an Internet standard of any kind.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="2330"/>
          <seriesInfo name="DOI" value="10.17487/RFC2330"/>
        </reference>
        <reference anchor="RFC5415">
          <front>
            <title>Control And Provisioning of Wireless Access Points (CAPWAP) Protocol Specification</title>
            <author fullname="P. Calhoun" initials="P." role="editor" surname="Calhoun"/>
            <author fullname="M. Montemurro" initials="M." role="editor" surname="Montemurro"/>
            <author fullname="D. Stanley" initials="D." role="editor" surname="Stanley"/>
            <date month="March" year="2009"/>
            <abstract>
              <t>This specification defines the Control And Provisioning of Wireless Access Points (CAPWAP) Protocol, meeting the objectives defined by the CAPWAP Working Group in RFC 4564. The CAPWAP protocol is designed to be flexible, allowing it to be used for a variety of wireless technologies. This document describes the base CAPWAP protocol, while separate binding extensions will enable its use with additional wireless technologies. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5415"/>
          <seriesInfo name="DOI" value="10.17487/RFC5415"/>
        </reference>
        <reference anchor="RFC4251">
          <front>
            <title>The Secure Shell (SSH) Protocol Architecture</title>
            <author fullname="T. Ylonen" initials="T." surname="Ylonen"/>
            <author fullname="C. Lonvick" initials="C." role="editor" surname="Lonvick"/>
            <date month="January" year="2006"/>
            <abstract>
              <t>The Secure Shell (SSH) Protocol is a protocol for secure remote login and other secure network services over an insecure network. This document describes the architecture of the SSH protocol, as well as the notation and terminology used in SSH protocol documents. It also discusses the SSH algorithm naming system that allows local extensions. The SSH protocol consists of three major components: The Transport Layer Protocol provides server authentication, confidentiality, and integrity with perfect forward secrecy. The User Authentication Protocol authenticates the client to the server. The Connection Protocol multiplexes the encrypted tunnel into several logical channels. Details of these protocols are described in separate documents. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="4251"/>
          <seriesInfo name="DOI" value="10.17487/RFC4251"/>
        </reference>
        <reference anchor="RFC8341">
          <front>
            <title>Network Configuration Access Control Model</title>
            <author fullname="A. Bierman" initials="A." surname="Bierman"/>
            <author fullname="M. Bjorklund" initials="M." surname="Bjorklund"/>
            <date month="March" year="2018"/>
            <abstract>
              <t>The standardization of network configuration interfaces for use with the Network Configuration Protocol (NETCONF) or the RESTCONF protocol requires a structured and secure operating environment that promotes human usability and multi-vendor interoperability. There is a need for standard mechanisms to restrict NETCONF or RESTCONF protocol access for particular users to a preconfigured subset of all available NETCONF or RESTCONF protocol operations and content. This document defines such an access control model.</t>
              <t>This document obsoletes RFC 6536.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="91"/>
          <seriesInfo name="RFC" value="8341"/>
          <seriesInfo name="DOI" value="10.17487/RFC8341"/>
        </reference>
        <reference anchor="NEMOPS">
          <front>
            <title>Report from the IAB Workshop on the Next Era of Network Management Operations (NEMOPS)</title>
            <author fullname="W. Hardaker" initials="W." surname="Hardaker"/>
            <author fullname="D. Dhody" initials="D." surname="Dhody"/>
            <date month="May" year="2026"/>
            <abstract>
              <t>The "Next Era of Network Management Operations (NEMOPS)" workshop was convened by the Internet Architecture Board (IAB) from December 3-5, 2024 as a three-day online meeting. It builds on a previous 2002 workshop, the outcome of which was documented in RFC 3535, identifying 14 operator requirements for consideration in future network management protocol design and related data models, along with some recommendations for the IETF. Much has changed in the Internet's operation and technological foundations since then. The NEMOPS workshop reviewed the past outcomes and discussed any operational barriers that prevented these technologies from being widely implemented. With the industry, network operators and protocol engineers working in collaboration, the workshop developed a suggested plan of action and network management recommendations for the IETF and IRTF. Building on RFC 3535, this document provides the report of the follow-up IAB workshop on network management.</t>
              <t>Note that this document is a report on the proceedings of the workshop. The views and positions documented in this report are those of the workshop participants and do not necessarily reflect IAB views and positions.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9968"/>
          <seriesInfo name="DOI" value="10.17487/RFC9968"/>
        </reference>
      </references>
    </references>
    <?line 1662?>

<section anchor="sec-checklist">
      <name>Operational Considerations Checklist</name>
      <t>This appendix provides a concise checklist of key questions that Protocol Designers should address in the "Operational Considerations" section of their specifications. Each item references the relevant section of this document for detailed guidance.</t>
      <t>This checklist is intended for use by document authors and the working groups that develop protocol documents. A separate list
of guidelines and a checklist of questions to consider when reviewing a document to evaluate whether the document address common
operations and management needs is provided in <xref target="CHECKLIST"/>.</t>
      <t>The decision to incorporate all or part of these items into their work remains with Protocol Designers and WGs themselves.</t>
      <section anchor="documentation-requirements">
        <name>Documentation Requirements</name>
        <ul spacing="normal">
          <li>
            <t>Does the specification include an "Operational Considerations" section, placed immediately before the Security Considerations section? (<xref target="sec-oper-manag-considerations"/>, <xref target="sec-placement-sec"/>)</t>
          </li>
          <li>
            <t>If one or more of the topics raised in this document is not relevant, does the section briefly explain why? (<xref target="sec-oper-manag-considerations"/>)</t>
          </li>
          <li>
            <t>If there are no new operational considerations, does the section include the appropriate boilerplate with explanation? (<xref target="sec-null-sec"/>)</t>
          </li>
          <li>
            <t>If the considerations are described elsewhere in the same document, does the section summarize them and point to those sections? (<xref target="sec-oper-manag-considerations"/>)</t>
          </li>
          <li>
            <t>If the considerations are documented separately, does the section give a short overview and a normative reference to that document? (<xref target="sec-this-doc"/>)</t>
          </li>
        </ul>
      </section>
      <section anchor="operational-fit">
        <name>Operational Fit</name>
        <ul spacing="normal">
          <li>
            <t>How does this protocol operate "out of the box"? (<xref target="sec-install"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What are the default values, modes, timers, and states? (<xref target="sec-install"/>)</t>
              </li>
              <li>
                <t>What is the rationale for chosen default values, especially if they affect operations or are expected to change over time? (<xref target="sec-install"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>What is the migration path for existing deployments? (<xref target="sec-migration"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>How will deployments transition from older versions or technologies? (<xref target="sec-migration"/>)</t>
              </li>
              <li>
                <t>Does the protocol require infrastructure changes, and how can these be introduced? (<xref target="sec-migration"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>What are the requirements or dependencies on other protocols and functional components? (<xref target="sec-other"/>)</t>
          </li>
          <li>
            <t>What is the impact on network operation? (<xref target="sec-impact"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What are the scaling implications and interactions with other protocols? (<xref target="sec-impact"/>)</t>
              </li>
              <li>
                <t>What are the impacts on traffic patterns or performance (e.g., delay or jitter)? (<xref target="sec-impact"/>)</t>
              </li>
              <li>
                <t>Does management traffic account for MTU constraints and avoid reliance on IP fragmentation? (<xref target="sec-impact"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>What is the impact on Security Operations? (<xref target="sec-impact-secops"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>How does deployment affect Indicators of Compromise or their availability? (<xref target="sec-impact-secops"/>)</t>
              </li>
              <li>
                <t>What logging is needed for digital forensics? (<xref target="sec-impact-secops"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>How can correct operation be verified? (<xref target="sec-oper-verify"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What status and health indicators does the protocol provide? (<xref target="sec-oper-verify"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>How are human-readable messages handled? (<xref target="sec-messages"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>Do messages contain codes that enable local language mapping for internationalization? (<xref target="sec-messages"/>)</t>
              </li>
            </ul>
          </li>
        </ul>
      </section>
      <section anchor="management-information">
        <name>Management Information</name>
        <ul spacing="normal">
          <li>
            <t>What needs to be managed? (<xref target="sec-mgmt-consid"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What are the manageable entities (e.g., protocol endpoints, network elements, and services)? (<xref target="sec-mgmt-consid"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>Which standardized management technologies are applicable? (<xref target="sec-mgmt-tech"/>)</t>
          </li>
          <li>
            <t>What essential information is required? (<xref target="sec-interop"/>, <xref target="sec-mgmt-info"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What configuration and operational (state, statistical, etc.) information is needed? (<xref target="sec-interop"/>)</t>
              </li>
              <li>
                <t>Is an Information Model needed, especially if multiple Data Model representations are required? (<xref target="sec-interop"/>)</t>
              </li>
              <li>
                <t>Is the model kept minimal, with each object serving a distinct purpose and no data that can be derived from other objects? (<xref target="sec-im-design"/>)</t>
              </li>
              <li>
                <t>What is manageable, what needs configuration, and what protocol-specific events might occur? (<xref target="sec-mgmt-info"/>)</t>
              </li>
              <li>
                <t>How are configuration data, operational state, and statistics distinguished? (<xref target="sec-mgmt-info"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>If YANG Data Models are defined, what type is appropriate? (<xref target="sec-yang-dm"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>Should Device Models, Network Models, or Service Models be specified? (<xref target="sec-yang-dm"/>)</t>
              </li>
            </ul>
          </li>
        </ul>
      </section>
      <section anchor="fault-management">
        <name>Fault Management</name>
        <ul spacing="normal">
          <li>
            <t>What Faults and events should be reported? (<xref target="sec-fm-mgmt"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What essential Faults, health indicators, alarms, and events should be exposed? (<xref target="sec-fm-mgmt"/>)</t>
              </li>
              <li>
                <t>How will Fault information be propagated? (<xref target="sec-fm-mgmt"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>How is liveness monitored? (<xref target="sec-monitor"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What testing and liveness detection features are built into the protocol? (<xref target="sec-monitor"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>How are Faults determined? (<xref target="sec-fault-determ"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What error counters or diagnostics help pinpoint Faults? (<xref target="sec-fault-determ"/>)</t>
              </li>
              <li>
                <t>What distinguishes faulty from correct messages? (<xref target="sec-fault-determ"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>How are Faults localized and contained? (<xref target="sec-cause-analysis"/>, <xref target="sec-fault-isol"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>Can the Probable Root Cause of a Fault be identified using management information? (<xref target="sec-cause-analysis"/>)</t>
              </li>
              <li>
                <t>Can Faults be isolated or quarantined to prevent them from propagating? (<xref target="sec-fault-isol"/>)</t>
              </li>
            </ul>
          </li>
        </ul>
      </section>
      <section anchor="configuration-management">
        <name>Configuration Management</name>
        <ul spacing="normal">
          <li>
            <t>What configuration parameters are defined? (<xref target="sec-config-mgmt"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What parameters need to be configurable, including their valid ranges? (<xref target="sec-config-mgmt"/>)</t>
              </li>
              <li>
                <t>What information persists across reboots? (<xref target="sec-config-mgmt"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>How is configuration managed across multiple devices? (<xref target="sec-config-mgmt"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>Can configuration changes be applied across several devices as a coordinated operation, with a way to back out on failure? (<xref target="sec-config-mgmt"/>)</t>
              </li>
              <li>
                <t>Is there a way to dump and restore configuration? (<xref target="sec-config-mgmt"/>)</t>
              </li>
            </ul>
          </li>
        </ul>
      </section>
      <section anchor="accounting-management">
        <name>Accounting Management</name>
        <ul spacing="normal">
          <li>
            <t>Is it appropriate to collect usage information for this protocol, and if so, what information should be collected? (<xref target="sec-acc-mgmt"/>)</t>
          </li>
        </ul>
      </section>
      <section anchor="performance-management">
        <name>Performance Management</name>
        <ul spacing="normal">
          <li>
            <t>What are the performance implications? (<xref target="sec-perf-mgmt"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What are the hardware/software performance impacts (e.g., CPU, memory, and forwarding)? (<xref target="sec-perf-mgmt"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>What performance information should be available? (<xref target="sec-monitor-proto"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What protocol counters are defined (e.g., packets received, sent, or dropped)? (<xref target="sec-monitor-proto"/>)</t>
              </li>
              <li>
                <t>What is the counter behavior at maximum values? (<xref target="sec-monitor-proto"/>)</t>
              </li>
              <li>
                <t>What are the protocol limitations and behavior when limits are exceeded? (<xref target="sec-monitor-proto"/>)</t>
              </li>
            </ul>
          </li>
        </ul>
      </section>
      <section anchor="security-management">
        <name>Security Management</name>
        <ul spacing="normal">
          <li>
            <t>What security-related monitoring is needed? (<xref target="sec-security-mgmt"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>What security events should be logged, and do any log entries contain privacy-sensitive information that must be controlled? (<xref target="sec-security-mgmt"/>)</t>
              </li>
              <li>
                <t>What statistics help detect attacks, and what threats do management operations themselves introduce? (<xref target="sec-security-mgmt"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>What access controls are needed on management interfaces? (<xref target="sec-security-mgmt"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>Do management interfaces support role-based access control and the principle of least privilege? (<xref target="sec-security-mgmt"/>)</t>
              </li>
              <li>
                <t>How are ACLs maintained, updated, and verified for consistency across devices? (<xref target="sec-security-mgmt"/>)</t>
              </li>
            </ul>
          </li>
          <li>
            <t>How are secure transport, authentication, identity, and key/credential management addressed for management operations? (<xref target="sec-security-mgmt"/>)</t>
          </li>
        </ul>
      </section>
      <section anchor="operational-and-management-tooling">
        <name>Operational and Management Tooling</name>
        <ul spacing="normal">
          <li>
            <t>Can existing tooling be adapted or extended to deploy, monitor, and manage this specification before new tools are considered? (<xref target="sec-oper-mgmt-tooling"/>)
            </t>
            <ul spacing="normal">
              <li>
                <t>Where new tooling is required, are its requirements limited to functions that adaptation or extension cannot provide? (<xref target="sec-oper-mgmt-tooling"/>)</t>
              </li>
              <li>
                <t>Is the management interface designed to remain stable under high-frequency automated query patterns, including those from AI-driven tools? (<xref target="sec-ai-tooling"/>)</t>
              </li>
            </ul>
          </li>
        </ul>
      </section>
    </section>
    <section numbered="false" anchor="sec-ack">
      <name>Acknowledgements</name>
      <t>The authors thank the following individuals and groups,
whose efforts have helped to improve this document:</t>
      <dl>
        <dt>The IETF Ops Directorate (OpsDir):</dt>
        <dd>
          <t>The IETF OpsDir <xref target="IETF-OPS-Dir"/> reviewer team, which has been providing document reviews for more than a decade, and its Chairs past and present: Gunter Van de Velde, Carlos Pignataro, Bo Wu, and Daniele Ceccarelli.</t>
        </dd>
        <dt>The Area Director (AD) championing the update:</dt>
        <dd>
          <t>Med Boucadair, who initiated and championed the effort to refresh RFC 5706, 15 years after its publication, building on an idea originally suggested by Carlos Pignataro.</t>
        </dd>
        <dt>Reviewers of this document, in roughly chronological order:</dt>
        <dd>
          <t>Mahesh Jethanandani, Chongfeng Xie, Alvaro Retana, Michael P., Scott Hollenbeck, Ron Bonica, Italo Busi, Brian Trammell, Aijun Wang, Richard Shockey, Tina Tsou, Lars Eggert, Joel Halpern, Johan Stenstam, Dave Thaler, Harald Alvestrand, Greg Mirsky, Marco Tiloca, Jacqueline McCall, Tim Winters, Eliot Lear, Giuseppe Fioccola, Bo Wu, Qin Wu, Saumya Dikshit, and Paul Aitken.</t>
        </dd>
        <dt>The document shepherd who has gone beyond normal shepherding duties to improve this document:</dt>
        <dd>
          <t>Alvaro Retana</t>
        </dd>
      </dl>
      <t>Claude Opus was used to distill document content into <xref target="sec-checklist"/>.</t>
      <dl>
        <dt>The author of RFC 5706:</dt>
        <dd>
          <t>David Harrington</t>
        </dd>
        <dt>Acknowledgments from RFC 5706:</dt>
        <dd>
          <t>The following acknowledgments apply to RFC 5706, the predecessor of this document. Some individuals listed below as reviewers of RFC 5706 are now authors or contributors of this document.</t>
        </dd>
        <dt/>
        <dd>
          <t>This document started from an earlier document edited by Adrian
Farrel, which itself was based on work exploring the need for
Manageability Considerations sections in all Internet-Drafts produced
within the Routing Area of the IETF. That earlier work was produced
by Avri Doria, Loa Andersson, and Adrian Farrel, with valuable
feedback provided by Pekka Savola and Bert Wijnen.</t>
        </dd>
        <dt/>
        <dd>
          <t>Some of the discussion about designing for manageability came from
private discussions between Dan Romascanu, Bert Wijnen, Jürgen Schönwälder, Andy Bierman, and David Harrington.</t>
        </dd>
        <dt/>
        <dd>
          <t>Thanks to reviewers who helped fashion RFC 5706, including
Harald Alvestrand, Ron Bonica, Brian Carpenter, Benoît Claise, Adrian
Farrel, David Kessens, Dan Romascanu, Pekka Savola, Jürgen Schönwälder, Bert Wijnen, Ralf Wolter, and Lixia Zhang.</t>
        </dd>
      </dl>
    </section>
    <section anchor="contributors" numbered="false" toc="include" removeInRFC="false">
      <name>Contributors</name>
      <contact fullname="Thomas Graf">
        <organization>Swisscom</organization>
        <address>
          <email>thomas.graf@swisscom.com</email>
        </address>
      </contact>
    </section>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
