<?xml version='1.0' encoding='utf-8'?>
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" version="3" category="std" consensus="true" docName="draft-ietf-babel-source-specific-08" indexInclude="true" ipr="trust200902" number="9079" prepTime="2021-08-26T15:47:49" scripts="Common,Latin" sortRefs="true" submissionType="IETF" symRefs="true" tocDepth="2" tocInclude="true" xml:lang="en">
  <link href="https://datatracker.ietf.org/doc/draft-ietf-babel-source-specific-08" rel="prev"/>
  <link href="https://dx.doi.org/10.17487/rfc9079" rel="alternate"/>
  <link href="urn:issn:2070-1721" rel="alternate"/>
  <front>
    <title abbrev="Source-Specific Routing in Babel">Source-Specific Routing in the Babel Routing Protocol</title>
    <seriesInfo name="RFC" value="9079" stream="IETF"/>
    <author fullname="Matthieu Boutier" initials="M." surname="Boutier">
      <organization showOnFrontPage="true">IRIF, University of Paris</organization>
      <address>
        <postal>
          <street>Case 7014</street>
          <city>Paris Cedex 13</city>
          <region/>
          <code>75205</code>
          <country>France</country>
        </postal>
        <email>boutier@irif.fr</email>
      </address>
    </author>
    <author fullname="Juliusz Chroboczek" initials="J." surname="Chroboczek">
      <organization showOnFrontPage="true">IRIF, University of Paris</organization>
      <address>
        <postal>
          <street>Case 7014</street>
          <city>Paris Cedex 13</city>
          <region/>
          <code>75205</code>
          <country>France</country>
        </postal>
        <email>jch@irif.fr</email>
      </address>
    </author>
    <date month="08" year="2021"/>
    <keyword>SADR</keyword>
    <keyword>source address-dependent routing</keyword>
    <keyword>source address</keyword>
    <keyword>multihoming</keyword>
    <keyword>multihoming with multiple addresses</keyword>
    <keyword>multiple addresses</keyword>
    <keyword>source address selection</keyword>
    <keyword>multiple routes</keyword>
    <keyword>multipath</keyword>
    <keyword>disjoint routes</keyword>
    <keyword>route diversity</keyword>
    <abstract pn="section-abstract">
      <t indent="0" pn="section-abstract-1">Source-specific routing, also known as Source Address Dependent
Routing (SADR), is an extension to traditional next-hop routing where
packets are forwarded according to both their destination address and their source
address.  This document describes an extension for source-specific routing
to the Babel routing protocol.</t>
    </abstract>
    <boilerplate>
      <section anchor="status-of-memo" numbered="false" removeInRFC="false" toc="exclude" pn="section-boilerplate.1">
        <name slugifiedName="name-status-of-this-memo">Status of This Memo</name>
        <t indent="0" pn="section-boilerplate.1-1">
            This is an Internet Standards Track document.
        </t>
        <t indent="0" pn="section-boilerplate.1-2">
            This document is a product of the Internet Engineering Task Force
            (IETF).  It represents the consensus of the IETF community.  It has
            received public review and has been approved for publication by
            the Internet Engineering Steering Group (IESG).  Further
            information on Internet Standards is available in Section 2 of 
            RFC 7841.
        </t>
        <t indent="0" pn="section-boilerplate.1-3">
            Information about the current status of this document, any
            errata, and how to provide feedback on it may be obtained at
            <eref target="https://www.rfc-editor.org/info/rfc9079" brackets="none"/>.
        </t>
      </section>
      <section anchor="copyright" numbered="false" removeInRFC="false" toc="exclude" pn="section-boilerplate.2">
        <name slugifiedName="name-copyright-notice">Copyright Notice</name>
        <t indent="0" pn="section-boilerplate.2-1">
            Copyright (c) 2021 IETF Trust and the persons identified as the
            document authors. All rights reserved.
        </t>
        <t indent="0" pn="section-boilerplate.2-2">
            This document is subject to BCP 78 and the IETF Trust's Legal
            Provisions Relating to IETF Documents
            (<eref target="https://trustee.ietf.org/license-info" brackets="none"/>) in effect on the date of
            publication of this document. Please review these documents
            carefully, as they describe your rights and restrictions with
            respect to this document. Code Components extracted from this
            document must include Simplified BSD License text as described in
            Section 4.e of the Trust Legal Provisions and are provided without
            warranty as described in the Simplified BSD License.
        </t>
      </section>
    </boilerplate>
    <toc>
      <section anchor="toc" numbered="false" removeInRFC="false" toc="exclude" pn="section-toc.1">
        <name slugifiedName="name-table-of-contents">Table of Contents</name>
        <ul bare="true" empty="true" indent="2" spacing="compact" pn="section-toc.1-1">
          <li pn="section-toc.1-1.1">
            <t indent="0" pn="section-toc.1-1.1.1"><xref derivedContent="1" format="counter" sectionFormat="of" target="section-1"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-introduction-and-background">Introduction and Background</xref></t>
            <ul bare="true" empty="true" indent="2" spacing="compact" pn="section-toc.1-1.1.2">
              <li pn="section-toc.1-1.1.2.1">
                <t indent="0" keepWithNext="true" pn="section-toc.1-1.1.2.1.1"><xref derivedContent="1.1" format="counter" sectionFormat="of" target="section-1.1"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-application-to-multihoming">Application to Multihoming</xref></t>
              </li>
              <li pn="section-toc.1-1.1.2.2">
                <t indent="0" keepWithNext="true" pn="section-toc.1-1.1.2.2.1"><xref derivedContent="1.2" format="counter" sectionFormat="of" target="section-1.2"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-other-applications">Other Applications</xref></t>
              </li>
              <li pn="section-toc.1-1.1.2.3">
                <t indent="0" keepWithNext="true" pn="section-toc.1-1.1.2.3.1"><xref derivedContent="1.3" format="counter" sectionFormat="of" target="section-1.3"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-specificity-of-prefix-pairs">Specificity of Prefix Pairs</xref></t>
              </li>
            </ul>
          </li>
          <li pn="section-toc.1-1.2">
            <t indent="0" pn="section-toc.1-1.2.1"><xref derivedContent="2" format="counter" sectionFormat="of" target="section-2"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-specification-of-requiremen">Specification of Requirements</xref></t>
          </li>
          <li pn="section-toc.1-1.3">
            <t indent="0" pn="section-toc.1-1.3.1"><xref derivedContent="3" format="counter" sectionFormat="of" target="section-3"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-data-structures">Data Structures</xref></t>
            <ul bare="true" empty="true" indent="2" spacing="compact" pn="section-toc.1-1.3.2">
              <li pn="section-toc.1-1.3.2.1">
                <t indent="0" pn="section-toc.1-1.3.2.1.1"><xref derivedContent="3.1" format="counter" sectionFormat="of" target="section-3.1"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-the-source-table">The Source Table</xref></t>
              </li>
              <li pn="section-toc.1-1.3.2.2">
                <t indent="0" pn="section-toc.1-1.3.2.2.1"><xref derivedContent="3.2" format="counter" sectionFormat="of" target="section-3.2"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-the-route-table">The Route Table</xref></t>
              </li>
              <li pn="section-toc.1-1.3.2.3">
                <t indent="0" pn="section-toc.1-1.3.2.3.1"><xref derivedContent="3.3" format="counter" sectionFormat="of" target="section-3.3"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-the-table-of-pending-seqno-">The Table of Pending Seqno Requests</xref></t>
              </li>
            </ul>
          </li>
          <li pn="section-toc.1-1.4">
            <t indent="0" pn="section-toc.1-1.4.1"><xref derivedContent="4" format="counter" sectionFormat="of" target="section-4"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-data-forwarding">Data Forwarding</xref></t>
          </li>
          <li pn="section-toc.1-1.5">
            <t indent="0" pn="section-toc.1-1.5.1"><xref derivedContent="5" format="counter" sectionFormat="of" target="section-5"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-protocol-operation">Protocol Operation</xref></t>
            <ul bare="true" empty="true" indent="2" spacing="compact" pn="section-toc.1-1.5.2">
              <li pn="section-toc.1-1.5.2.1">
                <t indent="0" pn="section-toc.1-1.5.2.1.1"><xref derivedContent="5.1" format="counter" sectionFormat="of" target="section-5.1"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-protocol-messages">Protocol Messages</xref></t>
              </li>
              <li pn="section-toc.1-1.5.2.2">
                <t indent="0" pn="section-toc.1-1.5.2.2.1"><xref derivedContent="5.2" format="counter" sectionFormat="of" target="section-5.2"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-wildcard-messages">Wildcard Messages</xref></t>
              </li>
            </ul>
          </li>
          <li pn="section-toc.1-1.6">
            <t indent="0" pn="section-toc.1-1.6.1"><xref derivedContent="6" format="counter" sectionFormat="of" target="section-6"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-compatibility-with-the-base">Compatibility with the Base Protocol</xref></t>
            <ul bare="true" empty="true" indent="2" spacing="compact" pn="section-toc.1-1.6.2">
              <li pn="section-toc.1-1.6.2.1">
                <t indent="0" pn="section-toc.1-1.6.2.1.1"><xref derivedContent="6.1" format="counter" sectionFormat="of" target="section-6.1"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-starvation-and-blackholes">Starvation and Blackholes</xref></t>
              </li>
            </ul>
          </li>
          <li pn="section-toc.1-1.7">
            <t indent="0" pn="section-toc.1-1.7.1"><xref derivedContent="7" format="counter" sectionFormat="of" target="section-7"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-protocol-encoding">Protocol Encoding</xref></t>
            <ul bare="true" empty="true" indent="2" spacing="compact" pn="section-toc.1-1.7.2">
              <li pn="section-toc.1-1.7.2.1">
                <t indent="0" pn="section-toc.1-1.7.2.1.1"><xref derivedContent="7.1" format="counter" sectionFormat="of" target="section-7.1"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-source-prefix-sub-tlv">Source Prefix Sub-TLV</xref></t>
              </li>
              <li pn="section-toc.1-1.7.2.2">
                <t indent="0" pn="section-toc.1-1.7.2.2.1"><xref derivedContent="7.2" format="counter" sectionFormat="of" target="section-7.2"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-source-specific-update">Source-Specific Update</xref></t>
              </li>
              <li pn="section-toc.1-1.7.2.3">
                <t indent="0" pn="section-toc.1-1.7.2.3.1"><xref derivedContent="7.3" format="counter" sectionFormat="of" target="section-7.3"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-source-specific-route-reque">Source-Specific Route Request</xref></t>
              </li>
              <li pn="section-toc.1-1.7.2.4">
                <t indent="0" pn="section-toc.1-1.7.2.4.1"><xref derivedContent="7.4" format="counter" sectionFormat="of" target="section-7.4"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-source-specific-seqno-reque">Source-Specific Seqno Request</xref></t>
              </li>
            </ul>
          </li>
          <li pn="section-toc.1-1.8">
            <t indent="0" pn="section-toc.1-1.8.1"><xref derivedContent="8" format="counter" sectionFormat="of" target="section-8"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-iana-considerations">IANA Considerations</xref></t>
          </li>
          <li pn="section-toc.1-1.9">
            <t indent="0" pn="section-toc.1-1.9.1"><xref derivedContent="9" format="counter" sectionFormat="of" target="section-9"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-security-considerations">Security Considerations</xref></t>
          </li>
          <li pn="section-toc.1-1.10">
            <t indent="0" pn="section-toc.1-1.10.1"><xref derivedContent="10" format="counter" sectionFormat="of" target="section-10"/>. <xref derivedContent="" format="title" sectionFormat="of" target="name-references">References</xref></t>
            <ul bare="true" empty="true" indent="2" spacing="compact" pn="section-toc.1-1.10.2">
              <li pn="section-toc.1-1.10.2.1">
                <t indent="0" pn="section-toc.1-1.10.2.1.1"><xref derivedContent="10.1" format="counter" sectionFormat="of" target="section-10.1"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-normative-references">Normative References</xref></t>
              </li>
              <li pn="section-toc.1-1.10.2.2">
                <t indent="0" pn="section-toc.1-1.10.2.2.1"><xref derivedContent="10.2" format="counter" sectionFormat="of" target="section-10.2"/>.  <xref derivedContent="" format="title" sectionFormat="of" target="name-informative-references">Informative References</xref></t>
              </li>
            </ul>
          </li>
          <li pn="section-toc.1-1.11">
            <t indent="0" pn="section-toc.1-1.11.1"><xref derivedContent="" format="none" sectionFormat="of" target="section-appendix.a"/><xref derivedContent="" format="title" sectionFormat="of" target="name-acknowledgments">Acknowledgments</xref></t>
          </li>
          <li pn="section-toc.1-1.12">
            <t indent="0" pn="section-toc.1-1.12.1"><xref derivedContent="" format="none" sectionFormat="of" target="section-appendix.b"/><xref derivedContent="" format="title" sectionFormat="of" target="name-authors-addresses">Authors' Addresses</xref></t>
          </li>
        </ul>
      </section>
    </toc>
  </front>
  <middle>
    <section numbered="true" toc="include" removeInRFC="false" pn="section-1">
      <name slugifiedName="name-introduction-and-background">Introduction and Background</name>
      <t indent="0" pn="section-1-1">The Babel routing protocol <xref target="RFC8966" format="default" sectionFormat="of" derivedContent="RFC8966"/> is a distance vector
routing protocol for next-hop routing.  In next-hop routing, each node
maintains a forwarding table that maps destination prefixes to next hops.
The forwarding decision is a per-packet operation that depends on the
destination address of the packets and on the entries of the forwarding
table.  When a packet is about to be routed, its destination address is
compared to the prefixes of the routing table: the entry with the most
specific prefix containing the destination address of the packet is
chosen, and the packet is forwarded to the associated next hop.  Next-hop
routing is a simple, well-understood paradigm that works satisfactorily in
a large number of cases.</t>
      <t indent="0" pn="section-1-2">The use of next-hop routing limits the flexibility of the routing
system in two ways.  First, since the routing decision is local to each
router, a router A can only select a route ABC...Z if its neighbouring
router B has selected the route BC...Z.  Second, the only criterion used
by a router to choose a route is the destination address: two packets with
the same destination follow the same route.  Yet, there are other data in
the IP header that could conceivably be used to guide the routing decision
-- the Type of Service (ToS) octet and, of course, the source address.</t>
      <t indent="0" pn="section-1-3">Source-specific routing <xref target="SS-ROUTING" format="default" sectionFormat="of" derivedContent="SS-ROUTING"/>, or Source Address
Dependent Routing (SADR), is a modest extension to next-hop routing where
the forwarding decision depends not only on the destination address but
also on the source address of the packet being routed, which makes it
possible for two packets with the same destination but different source
addresses to be routed following different paths.</t>
      <t indent="0" pn="section-1-4">This document describes a source-specific routing extension for the
Babel routing protocol <xref target="RFC8966" format="default" sectionFormat="of" derivedContent="RFC8966"/>.  This involves minor
changes to the data structures, which must include a source prefix in
addition to the destination prefix already present, and some changes to
the Update, Route Request, and Seqno Request TLVs, which are extended with
a source prefix.  The source prefix is encoded using a mandatory sub-TLV
(<xref target="RFC8966" sectionFormat="comma" section="4.4" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-4.4" derivedContent="RFC8966"/>).</t>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-1.1">
        <name slugifiedName="name-application-to-multihoming">Application to Multihoming</name>
        <t indent="0" pn="section-1.1-1">Multihoming is the practice of connecting a single network to two or
more transit networks.  The main application of source-specific routing is
a form of multihoming known as "multihoming with multiple addresses".</t>
        <t indent="0" pn="section-1.1-2">Classical multihoming consists of assigning a provider-independent
range of addresses to the multihomed network and announcing it to all
transit providers.  While classical multihoming works well for large
networks, the cost of obtaining a provider-independent address range and
announcing it globally in the Internet is prohibitive for small networks.
Unfortunately, it is not possible to implement classical multihoming with
ordinary provider-dependent addresses: in a network connected to two
providers A and B, a packet with a source address allocated by A needs to
be routed through the edge router connected to A.  If it is routed through
the edge router connected to B, it will most likely be filtered (dropped),
in accordance with <xref target="BCP84" format="default" sectionFormat="of" derivedContent="BCP84"/>.</t>
        <t indent="0" pn="section-1.1-3">In multihoming with multiple addresses, every host in the multihomed
network is assigned multiple addresses, one for each transit provider.
Additional mechanisms are needed in order (i) to choose, for each packet,
a source address that is associated with a provider that is currently up,
and (ii) to route each packet towards the router connected to the provider
associated with its source address.  One might argue that multihoming with
multiple addresses splits the difficult problem of multihoming into two
simpler sub-problems.</t>
        <t indent="0" pn="section-1.1-4">The issue of choosing a suitable source address is a decision local to
the sending host and is an area of active research.  The simplest solution
is to use a traditional transport-layer protocol, such as TCP, and to
probe all available source addresses at connection time, analogously to
what is already done with destination addresses, either sequentially
<xref target="RFC6724" format="default" sectionFormat="of" derivedContent="RFC6724"/> or in parallel <xref target="RFC8305" format="default" sectionFormat="of" derivedContent="RFC8305"/>.  Since
the transport-layer protocol is not aware of the multiple available
addresses, flows are interrupted when the selected provider goes down
(from the point of view of the user, all TCP connections are dropped when
the network environment changes).  A better user experience can be
provided by making all of the potential source and destination
addresses available to higher-layer protocols, either at the transport layer <xref target="RFC8684" format="default" sectionFormat="of" derivedContent="RFC8684"/> <xref target="RFC4960" format="default" sectionFormat="of" derivedContent="RFC4960"/> or at the application layer
<xref target="RFC8445" format="default" sectionFormat="of" derivedContent="RFC8445"/>.</t>
        <t indent="0" pn="section-1.1-5">Source-specific routing solves the problem of routing a packet to the
edge router indicated by its source address.  Every edge router announces into the routing domain a default route specific to the prefix associated
with the provider it is connected to.  This route is propagated all the
way to the routers on the access link, which are therefore able to route
every packet to the correct router.  Hosts simply send packets to their
default router -- no host changes are necessary at the network layer.</t>
      </section>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-1.2">
        <name slugifiedName="name-other-applications">Other Applications</name>
        <t indent="0" pn="section-1.2-1">In addition to multihoming with multiple addresses, we are aware of two applications of source-specific routing.  Tunnels and VPNs are packet
encapsulation techniques that are commonly used in the Internet to
establish a network-layer topology that is different from the physical
topology.  In some deployments, the default route points at the tunnel;
this causes the network stack to attempt to send encapsulated packets
through the tunnel, which causes it to break.  Various solutions to this
problem are possible, the most common of which is to point a host route at
the tunnel endpoint.</t>
        <t indent="0" pn="section-1.2-2">When source-specific routing is available, it becomes possible to
announce through the tunnel a default route that is specific to the prefix
served by the tunnel.  Since the encapsulated packets have a source
address that is not within that prefix, they are not routed through the
tunnel.</t>
        <t indent="0" pn="section-1.2-3">The third application of source-specific routing is controlled anycast.
Anycast is a technique in which a single destination address is used to
represent multiple network endpoints, collectively called an "anycast
group".  A packet destined to the anycast group is routed to an arbitrary
member of the group, typically the one that is nearest according to the
routing protocol.</t>
        <t indent="0" pn="section-1.2-4">In many applications of anycast, such as DNS root servers, the
nondeterminism of anycast is acceptable; some applications, however,
require finer control.  For example, in some Content Distribution Networks
(CDNs), every endpoint is expected to handle a well-defined subset of the
client population.  With source-specific routing, it is possible for each
member of the anycast group to announce a route specific to its client
population, a technique that is both simpler and more robust than manually
tweaking the routing protocol's metric ("prepending" in BGP).</t>
      </section>
      <section anchor="specificity" numbered="true" toc="include" removeInRFC="false" pn="section-1.3">
        <name slugifiedName="name-specificity-of-prefix-pairs">Specificity of Prefix Pairs</name>
        <t indent="0" pn="section-1.3-1">In ordinary next-hop routing, when multiple routing table entries match
the destination of a packet, the "longest prefix rule" mandates that the
most specific entry applies.  The reason why this rule makes sense is that
the set of prefixes has the following "tree property":
</t>
        <ul empty="true" bare="false" indent="3" spacing="normal" pn="section-1.3-2">
          <li pn="section-1.3-2.1">
For any prefixes P and P', either P and P' are disjoint, or one is more
specific than the other.
        </li>
        </ul>
        <t indent="0" pn="section-1.3-3">It would be a natural proposition to order pairs of prefixes pointwise:
to define that (D,S) is more specific than (D',S') when D is more specific
than D and S is more specific than S'.  Unfortunately, the set of pairs of
prefixes with the pointwise ordering doesn't satisfy the tree property.
Indeed, consider the following two pairs:
</t>
        <t indent="3" pn="section-1.3-4">(2001:db8:0:1::/64, ::/0) and (::/0, 2001:db8:0:2::/64)</t>
        <t indent="0" pn="section-1.3-5">These two pairs are not disjoint (a packet with destination
2001:db8:0:1::1 and source 2001:db8:0:2::1 is matched by both), but
neither is more specific than the other.  The effect is that there is no
natural, unambiguous way to interpret a routing table such as the
following:</t>
        <artwork name="" type="" align="left" pn="section-1.3-6">
          destination                source     next-hop
    2001:db8:0:1::/64                  ::/0            A
                 ::/0     2001:db8:0:2::/64            B
</artwork>
        <t indent="0" pn="section-1.3-7">A finer ordering of pairs of prefixes is required in order to
avoid all ambiguities.  There are two natural choices: destination-first ordering, where (D,S) is more specific than (D',S')
when
</t>
        <ul spacing="normal" bare="false" empty="false" indent="3" pn="section-1.3-8">
          <li pn="section-1.3-8.1">D is strictly more specific than D', or</li>
          <li pn="section-1.3-8.2">D = D', and S is more specific than S'</li>
        </ul>
        <t indent="0" pn="section-1.3-9">
and, symmetrically, source-first ordering, in which sources are
compared first and destinations second.</t>
        <t indent="0" pn="section-1.3-10">Expedient as it would be to leave the choice to the implementation,
this is not possible: all routers in a routing domain must use the same
ordering lest persistent routing loops occur.  Indeed, consider the
following topology:</t>
        <artwork name="" type="" align="left" alt="" pn="section-1.3-11">
   A --- B --- C --- D
</artwork>
        <t indent="0" pn="section-1.3-12">Suppose that A announces a route for (::/0, 2001:db8:0:2::/64), while
D announces a route for (2001:db8:0:1::/64, ::/0).  Suppose further that
B uses destination-first ordering while C uses source-first
ordering.  Then a packet that matches both routes, say, with destination
2001:db8:0:1::1 and source 2001:db8:0:2::1, would be sent by B towards
D and by C towards A and would therefore loop indefinitely between B and
C.</t>
        <t indent="0" pn="section-1.3-13">This document mandates (<xref target="forwarding" format="default" sectionFormat="of" derivedContent="Section 4"/>) that all routers
use destination-first ordering, which is generally believed to be more
useful than source-first ordering.  Consider the following topology,
where A is an edge router connected to the Internet and B is an internal
router connected to an access network N:</t>
        <artwork name="" type="" align="left" alt="" pn="section-1.3-14">
  (::/0, S)             (D, ::/0)
   Internet --- A --- B --- N
</artwork>
        <t indent="0" pn="section-1.3-15">A announces a source-specific default route with source
S (::/0, S), while B announces a nonspecific route to prefix D.
Consider what happens to a packet with a destination in D and a source in
S.  With destination-first ordering, the packet is routed towards the
network N, which is the only way it can possibly reach its destination.
With source-first ordering, on the other hand, the packet is sent
towards the Internet, with no hope of ever reaching its destination in N.</t>
      </section>
    </section>
    <section numbered="true" toc="include" removeInRFC="false" pn="section-2">
      <name slugifiedName="name-specification-of-requiremen">Specification of Requirements</name>
      <t indent="0" pn="section-2-1">
    The key words "<bcp14>MUST</bcp14>", "<bcp14>MUST NOT</bcp14>", "<bcp14>REQUIRED</bcp14>", "<bcp14>SHALL</bcp14>", "<bcp14>SHALL NOT</bcp14>", "<bcp14>SHOULD</bcp14>", "<bcp14>SHOULD NOT</bcp14>", "<bcp14>RECOMMENDED</bcp14>", "<bcp14>NOT RECOMMENDED</bcp14>",
    "<bcp14>MAY</bcp14>", and "<bcp14>OPTIONAL</bcp14>" in this document are to be interpreted as
    described in BCP 14 <xref target="RFC2119" format="default" sectionFormat="of" derivedContent="RFC2119"/> <xref target="RFC8174" format="default" sectionFormat="of" derivedContent="RFC8174"/> 
    when, and only when, they appear in all capitals, as shown here.
      </t>
    </section>
    <section numbered="true" toc="include" removeInRFC="false" pn="section-3">
      <name slugifiedName="name-data-structures">Data Structures</name>
      <t indent="0" pn="section-3-1">A number of the conceptual data structures described in <xref target="RFC8966" sectionFormat="of" section="3.2" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.2" derivedContent="RFC8966"/> contain a destination prefix.  This specification
extends these data structures with a source prefix.  Data from the
original protocol, which do not specify a source prefix, are stored with
a zero-length source prefix, which matches the exact same set of packets
as the original, non-source-specific data.</t>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-3.1">
        <name slugifiedName="name-the-source-table">The Source Table</name>
        <t indent="0" pn="section-3.1-1">Every Babel node maintains a source table, as described in <xref target="RFC8966" sectionFormat="comma" section="3.2.5" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.2.5" derivedContent="RFC8966"/>.  A source-specific Babel node
extends this table with the following field:
</t>
        <ul spacing="normal" bare="false" empty="false" indent="3" pn="section-3.1-2">
          <li pn="section-3.1-2.1">The source prefix (sprefix, splen) specifying the source address of
packets to which this entry applies.</li>
        </ul>
        <t indent="0" pn="section-3.1-3">The source table is now indexed by 5-tuples of the form (prefix, plen,
sprefix, splen, router-id).</t>
        <t indent="0" pn="section-3.1-4">Note that the route entry contains a source (see Sections <xref target="RFC8966" section="2" sectionFormat="bare" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-2" derivedContent="RFC8966"/> and <xref target="RFC8966" sectionFormat="bare" section="3.2.5" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.2.5" derivedContent="RFC8966"/>
of <xref target="RFC8966" format="default" sectionFormat="of" derivedContent="RFC8966"/>) that itself contains both destination and
source prefixes.  These are two different concepts and must not be
confused.</t>
      </section>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-3.2">
        <name slugifiedName="name-the-route-table">The Route Table</name>
        <t indent="0" pn="section-3.2-1">Every Babel node maintains a route table, as described in <xref target="RFC8966" sectionFormat="comma" section="3.2.6" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.2.6" derivedContent="RFC8966"/>.  Each route table entry contains,
among other data, a source, which this specification extends with a source
prefix as described above.  The route table is now indexed by 5-tuples of
the form (prefix, plen, sprefix, splen, neighbour), where the first four
components are obtained from the source.</t>
      </section>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-3.3">
        <name slugifiedName="name-the-table-of-pending-seqno-">The Table of Pending Seqno Requests</name>
        <t indent="0" pn="section-3.3-1">Every Babel node maintains a table of pending seqno requests, as
described in <xref target="RFC8966" sectionFormat="comma" section="3.2.7" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.2.7" derivedContent="RFC8966"/>.  A
source-specific Babel node extends this table with the following entry:</t>
        <ul spacing="normal" bare="false" empty="false" indent="3" pn="section-3.3-2">
          <li pn="section-3.3-2.1">The source prefix (sprefix, splen) being requested.</li>
        </ul>
        <t indent="0" pn="section-3.3-3">The table of pending seqno requests is now indexed by 5-tuples of the
form (prefix, plen, sprefix, splen, router-id).</t>
      </section>
    </section>
    <section anchor="forwarding" numbered="true" toc="include" removeInRFC="false" pn="section-4">
      <name slugifiedName="name-data-forwarding">Data Forwarding</name>
      <t indent="0" pn="section-4-1">As noted in <xref target="specificity" format="default" sectionFormat="of" derivedContent="Section 1.3"/>, source-specific tables
can, in general, be ambiguous, and all routers in a routing domain must
use the same algorithm for choosing applicable routes.  An implementation
of the extension described in this document <bcp14>MUST</bcp14> choose routing table
entries by using destination-first ordering, where routing table
entry R1 is preferred to routing table entry R2 when either R1's
destination prefix is more specific than R2's or the destination prefixes
are equal and R1's source prefix is more specific than R2's.</t>
      <t indent="0" pn="section-4-2">In practice, this means that a source-specific Babel implementation
must take care that any lower layer that performs packet forwarding obey
these semantics.  More precisely:</t>
      <ul spacing="normal" bare="false" empty="false" indent="3" pn="section-4-3">
        <li pn="section-4-3.1">if the lower layers implement destination-first ordering, then the
Babel implementation <bcp14>SHOULD</bcp14> use them directly;</li>
        <li pn="section-4-3.2">if the lower layers can hold source-specific routes but not with the
right semantics, then the Babel implementation <bcp14>MUST</bcp14> either silently ignore
any source-specific routes or disambiguate the routing table by using
a suitable disambiguation algorithm (see Section V.B of
<xref target="SS-ROUTING" format="default" sectionFormat="of" derivedContent="SS-ROUTING"/> for such an algorithm);</li>
        <li pn="section-4-3.3">if the lower layers cannot hold source-specific routes, then a Babel
implementation <bcp14>MUST</bcp14> silently ignore any source-specific routes.</li>
      </ul>
    </section>
    <section numbered="true" toc="include" removeInRFC="false" pn="section-5">
      <name slugifiedName="name-protocol-operation">Protocol Operation</name>
      <t indent="0" pn="section-5-1">This extension does not fundamentally change the operation of the Babel
protocol, and we therefore only describe differences between the original
protocol and the extended protocol.</t>
      <t indent="0" pn="section-5-2">In the original protocol, three TLVs carry a destination prefix:
Update, Route Request, and Seqno Request TLVs.  This specification extends
these messages so that they may carry a Source Prefix sub-TLV, as
described in <xref target="protocol-encoding" format="default" sectionFormat="of" derivedContent="Section 7"/>.  The sub-TLV is
marked as mandatory so that an unextended implementation will silently
ignore the whole enclosing TLV.  A node obeying this specification <bcp14>MUST NOT</bcp14> send a TLV with a zero-length source prefix; instead, it sends a TLV
with no Source Prefix sub-TLV.  Conversely, an extended implementation
<bcp14>MUST</bcp14> interpret an unextended TLV as carrying a source prefix of zero
length.  Taken together, these properties ensure interoperability between
the original and extended protocols (see <xref target="compatibility" format="default" sectionFormat="of" derivedContent="Section 6"/>).</t>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-5.1">
        <name slugifiedName="name-protocol-messages">Protocol Messages</name>
        <t indent="0" pn="section-5.1-1">This extension allows three TLVs of the original Babel protocol to
carry a source prefix: Update TLVs, Route Request TLVs, and Seqno Request
TLVs.</t>
        <t indent="0" pn="section-5.1-2">In order to advertise a route with a non-zero length source prefix,
a node sends a source-specific update, i.e., an update with a Source
Prefix sub-TLV.  When a node receives a source-specific update (prefix,
source prefix, router-id, seqno, metric) from a neighbour neigh, it
behaves as described in <xref target="RFC8966" sectionFormat="comma" section="3.5.3" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.5.3" derivedContent="RFC8966"/>,
except that the entry under consideration is indexed by (prefix, plen,
sprefix, splen, neigh) rather than just (prefix, plen, neigh).</t>
        <t indent="0" pn="section-5.1-3">Similarly, when a node needs to send a request of either kind that
applies to a route with a non-zero length source prefix, it sends
a source-specific request, i.e., a request with a Source Prefix sub-TLV.
When a node receives a source-specific request, it behaves as described in
<xref target="RFC8966" sectionFormat="of" section="3.8" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.8" derivedContent="RFC8966"/>, except that the request applies to
the route table entry carrying the source prefix indicated by the
Source Prefix sub-TLV.</t>
      </section>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-5.2">
        <name slugifiedName="name-wildcard-messages">Wildcard Messages</name>
        <t indent="0" pn="section-5.2-1">In the original protocol, the address encoding (AE) value 0 is used for
wildcard messages: messages that apply to all routes of any address
family and with any destination prefix.  Wildcard messages are allowed in
two places in the protocol: wildcard retractions are used to retract all
of the routes previously advertised by a node on a given interface, and
wildcard route requests are used to request a full dump of the route table
from a given node.  Wildcard messages are intended to apply to all routes,
including routes decorated with additional data and AE values to be
defined by future extensions; hence, this specification extends
wildcard operations to apply to all routes, whatever the value of the
source prefix.</t>
        <t indent="0" pn="section-5.2-2">More precisely, a node receiving an update with the AE field set to
0 and the Metric field set to infinity (a wildcard retraction) <bcp14>MUST</bcp14> apply
the route acquisition procedure described in <xref target="RFC8966" sectionFormat="of" section="3.5.3" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.5.3" derivedContent="RFC8966"/> to all of the routes that it has learned from the sending
node, whatever the value of the source prefix.  A node <bcp14>MUST NOT</bcp14> send
a wildcard retraction with an attached source prefix, and a node that
receives a wildcard retraction with a source prefix <bcp14>MUST</bcp14> ignore the
retraction.</t>
        <t indent="0" pn="section-5.2-3">Similarly, a node that receives a route request with the AE field set
to 0 (a wildcard route request) <bcp14>SHOULD</bcp14> send a full routing table dump,
including routes with a non-zero length source prefix.  A node <bcp14>MUST NOT</bcp14>
send a wildcard request that carries a source prefix, and a node receiving
a wildcard request with a source prefix <bcp14>MUST</bcp14> ignore the request.</t>
      </section>
    </section>
    <section anchor="compatibility" numbered="true" toc="include" removeInRFC="false" pn="section-6">
      <name slugifiedName="name-compatibility-with-the-base">Compatibility with the Base Protocol</name>
      <t indent="0" pn="section-6-1">The protocol extension defined in this document is, to a great extent,
interoperable with the base protocol defined in <xref target="RFC8966" format="default" sectionFormat="of" derivedContent="RFC8966"/>
(and all previously standardised extensions).  More precisely, if
non-source-specific routers and source-specific routers are mixed in
a single routing domain, Babel's loop-avoidance properties are preserved,
and, in particular, no persistent routing loops will occur.</t>
      <t indent="0" pn="section-6-2">However, this extension is encoded using mandatory sub-TLVs, introduced
in <xref target="RFC8966" format="default" sectionFormat="of" derivedContent="RFC8966"/>, and therefore is not compatible with the
older version of the Babel routing protocol <xref target="RFC6126" format="default" sectionFormat="of" derivedContent="RFC6126"/>, which
does not support mandatory sub-TLVs.  Consequently, this extension <bcp14>MUST NOT</bcp14> be used in a routing domain in which some routers implement <xref target="RFC6126" format="default" sectionFormat="of" derivedContent="RFC6126"/>;
otherwise, persistent routing loops may occur.</t>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-6.1">
        <name slugifiedName="name-starvation-and-blackholes">Starvation and Blackholes</name>
        <t indent="0" pn="section-6.1-1">In general, the discarding of source-specific routes by
non-source-specific routers will cause route starvation.  Intuitively,
unless there are enough non-source-specific routes in the network,
non-source-specific routers will suffer starvation and discard packets
for destinations that are only announced by source-specific routers.</t>
        <t indent="0" pn="section-6.1-2">In the common case where all source-specific routes are originated at
one of a small set of edge routers, a simple yet sufficient condition for
avoiding starvation is to build a connected source-specific backbone that
includes all of the edge routers and announce a non-source-specific
default route towards the backbone.</t>
      </section>
    </section>
    <section anchor="protocol-encoding" numbered="true" toc="include" removeInRFC="false" pn="section-7">
      <name slugifiedName="name-protocol-encoding">Protocol Encoding</name>
      <t indent="0" pn="section-7-1">This extension defines a new sub-TLV used to carry a source prefix: the
Source Prefix sub-TLV.  It can be used within an Update, Route Request,
or Seqno Request TLV to match a source-specific entry of the route
table in conjunction with the destination prefix natively carried by
these TLVs.</t>
      <t indent="0" pn="section-7-2">Since a source-specific routing entry is characterised by a single
destination prefix and a single source prefix, a source-specific message contains
exactly one Source Prefix sub-TLV.  A node <bcp14>MUST NOT</bcp14> send more
than one Source Prefix sub-TLV in a TLV, and a node receiving more than
one Source Prefix sub-TLV in a single TLV <bcp14>MUST</bcp14> ignore the TLV.  It <bcp14>MAY</bcp14>
ignore the whole packet.</t>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-7.1">
        <name slugifiedName="name-source-prefix-sub-tlv">Source Prefix Sub-TLV</name>
        <artwork name="" type="" align="left" alt="" pn="section-7.1-1">
 0                   1                   2                   3
 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1 2 3 4 5 6 7 8 9 0 1
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+
|   Type = 128  |    Length     |  Source Plen  | Source Prefix...
+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-
</artwork>
        <t indent="0" pn="section-7.1-2">Fields:
</t>
        <dl newline="false" spacing="normal" indent="15" pn="section-7.1-3">
          <dt pn="section-7.1-3.1">Type</dt>
          <dd pn="section-7.1-3.2">Set to 128 to indicate a Source Prefix
sub-TLV.</dd>
          <dt pn="section-7.1-3.3">Length</dt>
          <dd pn="section-7.1-3.4">The length of the body, in octets, exclusive of the
Type and Length fields.</dd>
          <dt pn="section-7.1-3.5">Source Plen</dt>
          <dd pn="section-7.1-3.6">The length of the advertised source prefix, in
bits.  This <bcp14>MUST NOT</bcp14> be 0.</dd>
          <dt pn="section-7.1-3.7">Source Prefix</dt>
          <dd pn="section-7.1-3.8">The source prefix being advertised.  This
field's size is (Source Plen)/8 octets rounded upwards.</dd>
        </dl>
        <t indent="0" pn="section-7.1-4">The length of the body TLV is normally of size 1+(Source Plen)/8
rounded upwards.  If the Length field indicates a length smaller than
that, then the sub-TLV is corrupt, and the whole enclosing TLV must be
ignored; if the Length field indicates a length that is larger, then the
extra octets contained in the sub-TLV <bcp14>MUST</bcp14> be silently ignored.</t>
        <t indent="0" pn="section-7.1-5">The contents of the Source Prefix sub-TLV are interpreted according to
the AE of the enclosing TLV.  If a TLV with AE equal to 0 contains
a Source Prefix sub-TLV, then the whole enclosing TLV <bcp14>MUST</bcp14> be ignored.  If
a TLV contains multiple Source Prefix sub-TLVs, then the whole TLV <bcp14>MUST</bcp14> be
ignored.</t>
        <t indent="0" pn="section-7.1-6">Note that this sub-TLV is a mandatory sub-TLV.  Therefore, as described
in <xref target="RFC8966" sectionFormat="of" section="4.4" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-4.4" derivedContent="RFC8966"/>, the whole TLV <bcp14>MUST</bcp14> be ignored if
that sub-TLV is not understood (or malformed).</t>
      </section>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-7.2">
        <name slugifiedName="name-source-specific-update">Source-Specific Update</name>
        <t indent="0" pn="section-7.2-1">The source-specific update is an Update TLV with a Source Prefix
sub-TLV.  It advertises or retracts source-specific routes in the same
manner as routes with non-source-specific updates (see <xref target="RFC8966" format="default" sectionFormat="of" derivedContent="RFC8966"/>).  A wildcard retraction (update with AE equal to 0) <bcp14>MUST NOT</bcp14> carry a Source Prefix sub-TLV.</t>
        <t indent="0" pn="section-7.2-2">Babel uses a stateful compression scheme to reduce the size taken by
destination prefixes in Update TLVs (see <xref target="RFC8966" sectionFormat="of" section="4.5" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-4.5" derivedContent="RFC8966"/>).  The source prefix defined by this extension is not
compressed.  On the other hand, compression is allowed for the destination
prefixes carried by source-specific updates.  As described in <xref target="RFC8966" sectionFormat="of" section="4.5" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-4.5" derivedContent="RFC8966"/>, unextended implementations will correctly
update their parser state while otherwise ignoring the whole TLV.</t>
      </section>
      <section anchor="ss-request" numbered="true" toc="include" removeInRFC="false" pn="section-7.3">
        <name slugifiedName="name-source-specific-route-reque">Source-Specific Route Request</name>
        <t indent="0" pn="section-7.3-1">A source-specific route request is a Route Request TLV with a Source
Prefix sub-TLV.  It prompts the receiver to send an update for a given
pair of destination and source prefixes, as described in <xref target="RFC8966" sectionFormat="of" section="3.8.1.1" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.8.1.1" derivedContent="RFC8966"/>.  A wildcard request (route request with AE
equal to 0) <bcp14>MUST NOT</bcp14> carry a Source Prefix sub-TLV; if a wildcard request
with a Source Prefix sub-TLV is received, then the request <bcp14>MUST</bcp14> be
ignored.</t>
      </section>
      <section numbered="true" toc="include" removeInRFC="false" pn="section-7.4">
        <name slugifiedName="name-source-specific-seqno-reque">Source-Specific Seqno Request</name>
        <t indent="0" pn="section-7.4-1">A source-specific seqno request is a Seqno Request TLV with a Source
Prefix sub-TLV.  It requests that the receiving node perform the procedure
described in <xref target="RFC8966" sectionFormat="of" section="3.8.1.2" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#section-3.8.1.2" derivedContent="RFC8966"/> but applied to
a pair consisting of a destination and source prefix.</t>
      </section>
    </section>
    <section numbered="true" toc="include" removeInRFC="false" pn="section-8">
      <name slugifiedName="name-iana-considerations">IANA Considerations</name>
      <t indent="0" pn="section-8-1">IANA has allocated sub-TLV number 128 for the Source Prefix sub-TLV in
the "Babel Sub-TLV Types" registry.</t>
    </section>
    <section numbered="true" toc="include" removeInRFC="false" pn="section-9">
      <name slugifiedName="name-security-considerations">Security Considerations</name>
      <t indent="0" pn="section-9-1">The extension defined in this document adds a new sub-TLV to three
sub-TLVs already present in the original Babel protocol and does not
change the security properties of the protocol itself.  However, the
additional flexibility provided by source-specific routing might
invalidate the assumptions made by some network administrators, which
could conceivably lead to security issues.</t>
      <t indent="0" pn="section-9-2">For example, a network administrator might be tempted to abuse route
filtering (<xref target="RFC8966" sectionFormat="of" section="C" format="default" derivedLink="https://rfc-editor.org/rfc/rfc8966#appendix-C" derivedContent="RFC8966"/>) as a security mechanism.
Unless the filtering rules are designed to take source-specific routing
into account, they might be bypassed by a source-specific route, which
might cause traffic to reach a portion of a network that was thought to be
protected.  A network administrator might also assume that no route
is more specific than a host route and use a host route in order to
direct traffic for a given destination through a security device (e.g.,
a firewall); source-specific routing invalidates this assumption, and, in
some topologies, announcing a source-specific route might conceivably be
used to bypass the security device.</t>
    </section>
  </middle>
  <back>
    <references pn="section-10">
      <name slugifiedName="name-references">References</name>
      <references pn="section-10.1">
        <name slugifiedName="name-normative-references">Normative References</name>
        <referencegroup anchor="BCP84" target="https://www.rfc-editor.org/info/bcp84" derivedAnchor="BCP84">
          <reference anchor="RFC3704" target="https://www.rfc-editor.org/info/rfc3704" quoteTitle="true">
            <front>
              <title>Ingress Filtering for Multihomed Networks</title>
              <author initials="F." surname="Baker" fullname="F. Baker">
                <organization showOnFrontPage="true"/>
              </author>
              <author initials="P." surname="Savola" fullname="P. Savola">
                <organization showOnFrontPage="true"/>
              </author>
              <date year="2004" month="March"/>
              <abstract>
                <t indent="0">BCP 38, RFC 2827, is designed to limit the impact of distributed denial of service attacks, by denying traffic with spoofed addresses access to the network, and to help ensure that traffic is traceable to its correct source network.  As a side effect of protecting the Internet against such attacks, the network implementing the solution also protects itself from this and other attacks, such as spoofed management access to networking equipment.  There are cases when this may create problems, e.g., with multihoming.  This document describes the current ingress filtering operational mechanisms, examines generic issues related to ingress filtering, and delves into the effects on multihoming in particular.  This memo updates RFC 2827.  This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="84"/>
            <seriesInfo name="RFC" value="3704"/>
            <seriesInfo name="DOI" value="10.17487/RFC3704"/>
          </reference>
          <reference anchor="RFC8704" target="https://www.rfc-editor.org/info/rfc8704" quoteTitle="true">
            <front>
              <title>Enhanced Feasible-Path Unicast Reverse Path Forwarding</title>
              <author initials="K." surname="Sriram" fullname="K. Sriram">
                <organization showOnFrontPage="true"/>
              </author>
              <author initials="D." surname="Montgomery" fullname="D. Montgomery">
                <organization showOnFrontPage="true"/>
              </author>
              <author initials="J." surname="Haas" fullname="J. Haas">
                <organization showOnFrontPage="true"/>
              </author>
              <date year="2020" month="February"/>
              <abstract>
                <t indent="0">This document identifies a need for and proposes improvement of the unicast Reverse Path Forwarding (uRPF) techniques (see RFC 3704) for detection and mitigation of source address spoofing (see BCP 38). Strict uRPF is inflexible about directionality, the loose uRPF is oblivious to directionality, and the current feasible-path uRPF attempts to strike a balance between the two (see RFC 3704). However, as shown in this document, the existing feasible-path uRPF still has shortcomings. This document describes enhanced feasible-path uRPF (EFP-uRPF) techniques that are more flexible (in a meaningful way) about directionality than the feasible-path uRPF (RFC 3704). The proposed EFP-uRPF methods aim to significantly reduce false positives regarding invalid detection in source address validation (SAV). Hence, they can potentially alleviate ISPs' concerns about the possibility of disrupting service for their customers and encourage greater deployment of uRPF techniques. This document updates RFC 3704.</t>
              </abstract>
            </front>
            <seriesInfo name="BCP" value="84"/>
            <seriesInfo name="RFC" value="8704"/>
            <seriesInfo name="DOI" value="10.17487/RFC8704"/>
          </reference>
        </referencegroup>
        <reference anchor="RFC2119" target="https://www.rfc-editor.org/info/rfc2119" quoteTitle="true" derivedAnchor="RFC2119">
          <front>
            <title>Key words for use in RFCs to Indicate Requirement Levels</title>
            <author initials="S." surname="Bradner" fullname="S. Bradner">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="1997" month="March"/>
            <abstract>
              <t indent="0">In many standards track documents several words are used to signify the requirements in the specification.  These words are often capitalized. This document defines these words as they should be interpreted in IETF documents.  This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="2119"/>
          <seriesInfo name="DOI" value="10.17487/RFC2119"/>
        </reference>
        <reference anchor="RFC8174" target="https://www.rfc-editor.org/info/rfc8174" quoteTitle="true" derivedAnchor="RFC8174">
          <front>
            <title>Ambiguity of Uppercase vs Lowercase in RFC 2119 Key Words</title>
            <author initials="B." surname="Leiba" fullname="B. Leiba">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="2017" month="May"/>
            <abstract>
              <t indent="0">RFC 2119 specifies common key words that may be used in protocol  specifications.  This document aims to reduce the ambiguity by clarifying that only UPPERCASE usage of the key words have the  defined special meanings.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="8174"/>
          <seriesInfo name="DOI" value="10.17487/RFC8174"/>
        </reference>
        <reference anchor="RFC8966" target="https://www.rfc-editor.org/info/rfc8966" quoteTitle="true" derivedAnchor="RFC8966">
          <front>
            <title>The Babel Routing Protocol</title>
            <author initials="J." surname="Chroboczek" fullname="J. Chroboczek">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="D." surname="Schinazi" fullname="D. Schinazi">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="2021" month="January"/>
            <abstract>
              <t indent="0">Babel is a loop-avoiding, distance-vector routing protocol that is robust and efficient both in ordinary wired networks and in wireless mesh networks.  This document describes the Babel routing protocol and obsoletes RFC 6126 and RFC 7557.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8966"/>
          <seriesInfo name="DOI" value="10.17487/RFC8966"/>
        </reference>
      </references>
      <references pn="section-10.2">
        <name slugifiedName="name-informative-references">Informative References</name>
        <reference anchor="RFC4960" target="https://www.rfc-editor.org/info/rfc4960" quoteTitle="true" derivedAnchor="RFC4960">
          <front>
            <title>Stream Control Transmission Protocol</title>
            <author initials="R." surname="Stewart" fullname="R. Stewart" role="editor">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="2007" month="September"/>
            <abstract>
              <t indent="0">This document obsoletes RFC 2960 and RFC 3309.  It describes the Stream Control Transmission Protocol (SCTP).  SCTP is designed to transport Public Switched Telephone Network (PSTN) signaling messages over IP networks, but is capable of broader applications.</t>
              <t indent="0">SCTP is a reliable transport protocol operating on top of a connectionless packet network such as IP.  It offers the following services to its users:</t>
              <t indent="0">--  acknowledged error-free non-duplicated transfer of user data,</t>
              <t indent="0">--  data fragmentation to conform to discovered path MTU size,</t>
              <t indent="0">--  sequenced delivery of user messages within multiple streams, with an option for order-of-arrival delivery of individual user messages,</t>
              <t indent="0">--  optional bundling of multiple user messages into a single SCTP packet, and</t>
              <t indent="0">--  network-level fault tolerance through supporting of multi-homing at either or both ends of an association.</t>
              <t indent="0"> The design of SCTP includes appropriate congestion avoidance behavior and resistance to flooding and masquerade attacks.  [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="4960"/>
          <seriesInfo name="DOI" value="10.17487/RFC4960"/>
        </reference>
        <reference anchor="RFC6126" target="https://www.rfc-editor.org/info/rfc6126" quoteTitle="true" derivedAnchor="RFC6126">
          <front>
            <title>The Babel Routing Protocol</title>
            <author initials="J." surname="Chroboczek" fullname="J. Chroboczek">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="2011" month="April"/>
            <abstract>
              <t indent="0">Babel is a loop-avoiding distance-vector routing protocol that is robust and efficient both in ordinary wired networks and in wireless mesh networks.  This document defines an Experimental Protocol for  the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6126"/>
          <seriesInfo name="DOI" value="10.17487/RFC6126"/>
        </reference>
        <reference anchor="RFC6724" target="https://www.rfc-editor.org/info/rfc6724" quoteTitle="true" derivedAnchor="RFC6724">
          <front>
            <title>Default Address Selection for Internet Protocol Version 6 (IPv6)</title>
            <author initials="D." surname="Thaler" fullname="D. Thaler" role="editor">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="R." surname="Draves" fullname="R. Draves">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="A." surname="Matsumoto" fullname="A. Matsumoto">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="T." surname="Chown" fullname="T. Chown">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="2012" month="September"/>
            <abstract>
              <t indent="0">This document describes two algorithms, one for source address selection and one for destination address selection.  The algorithms specify default behavior for all Internet Protocol version 6 (IPv6) implementations.  They do not override choices made by applications or upper-layer protocols, nor do they preclude the development of more advanced mechanisms for address selection.  The two algorithms share a common context, including an optional mechanism for allowing administrators to provide policy that can override the default behavior.  In dual-stack implementations, the destination address selection algorithm can consider both IPv4 and IPv6 addresses -- depending on the available source addresses, the algorithm might prefer IPv6 addresses over IPv4 addresses, or vice versa.</t>
              <t indent="0">Default address selection as defined in this specification applies to all IPv6 nodes, including both hosts and routers.  This document obsoletes RFC 3484.  [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6724"/>
          <seriesInfo name="DOI" value="10.17487/RFC6724"/>
        </reference>
        <reference anchor="RFC8305" target="https://www.rfc-editor.org/info/rfc8305" quoteTitle="true" derivedAnchor="RFC8305">
          <front>
            <title>Happy Eyeballs Version 2: Better Connectivity Using Concurrency</title>
            <author initials="D." surname="Schinazi" fullname="D. Schinazi">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="T." surname="Pauly" fullname="T. Pauly">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="2017" month="December"/>
            <abstract>
              <t indent="0">Many communication protocols operating over the modern Internet use hostnames.  These often resolve to multiple IP addresses, each of which may have different performance and connectivity characteristics.  Since specific addresses or address families (IPv4 or IPv6) may be blocked, broken, or sub-optimal on a network, clients that attempt multiple connections in parallel have a chance of establishing a connection more quickly.  This document specifies requirements for algorithms that reduce this user-visible delay and provides an example algorithm, referred to as "Happy Eyeballs".  This document obsoletes the original algorithm description in RFC 6555.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8305"/>
          <seriesInfo name="DOI" value="10.17487/RFC8305"/>
        </reference>
        <reference anchor="RFC8445" target="https://www.rfc-editor.org/info/rfc8445" quoteTitle="true" derivedAnchor="RFC8445">
          <front>
            <title>Interactive Connectivity Establishment (ICE): A Protocol for Network Address Translator (NAT) Traversal</title>
            <author initials="A." surname="Keranen" fullname="A. Keranen">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="C." surname="Holmberg" fullname="C. Holmberg">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="J." surname="Rosenberg" fullname="J. Rosenberg">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="2018" month="July"/>
            <abstract>
              <t indent="0">This document describes a protocol for Network Address Translator (NAT) traversal for UDP-based communication.  This protocol is called Interactive Connectivity Establishment (ICE).  ICE makes use of the Session Traversal Utilities for NAT (STUN) protocol and its extension, Traversal Using Relay NAT (TURN).</t>
              <t indent="0">This document obsoletes RFC 5245.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8445"/>
          <seriesInfo name="DOI" value="10.17487/RFC8445"/>
        </reference>
        <reference anchor="RFC8684" target="https://www.rfc-editor.org/info/rfc8684" quoteTitle="true" derivedAnchor="RFC8684">
          <front>
            <title>TCP Extensions for Multipath Operation with Multiple Addresses</title>
            <author initials="A." surname="Ford" fullname="A. Ford">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="C." surname="Raiciu" fullname="C. Raiciu">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="M." surname="Handley" fullname="M. Handley">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="O." surname="Bonaventure" fullname="O. Bonaventure">
              <organization showOnFrontPage="true"/>
            </author>
            <author initials="C." surname="Paasch" fullname="C. Paasch">
              <organization showOnFrontPage="true"/>
            </author>
            <date year="2020" month="March"/>
            <abstract>
              <t indent="0">TCP/IP communication is currently restricted to a single path per connection, yet multiple paths often exist between peers. The simultaneous use of these multiple paths for a TCP/IP session would improve resource usage within the network and thus improve user experience through higher throughput and improved resilience to network failure.</t>
              <t indent="0">Multipath TCP provides the ability to simultaneously use multiple paths between peers. This document presents a set of extensions to traditional TCP to support multipath operation. The protocol offers the same type of service to applications as TCP (i.e., a reliable bytestream), and it provides the components necessary to establish and use multiple TCP flows across potentially disjoint paths.</t>
              <t indent="0">This document specifies v1 of Multipath TCP, obsoleting v0 as specified in RFC 6824, through clarifications and modifications primarily driven by deployment experience.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8684"/>
          <seriesInfo name="DOI" value="10.17487/RFC8684"/>
        </reference>
        <reference anchor="SS-ROUTING" target="http://arxiv.org/pdf/1403.0445" quoteTitle="true" derivedAnchor="SS-ROUTING">
          <front>
            <title>Source-Specific Routing</title>
            <author initials="M." surname="Boutier" fullname="Matthieu Boutier"/>
            <author initials="J." surname="Chroboczek" fullname="Juliusz Chroboczek"/>
            <date year="2015" month="May"/>
          </front>
          <seriesInfo name="DOI" value="10.1109/IFIPNetworking.2015.7145305"/>
          <refcontent>IFIP Networking Conference</refcontent>
        </reference>
      </references>
    </references>
    <section numbered="false" toc="include" removeInRFC="false" pn="section-appendix.a">
      <name slugifiedName="name-acknowledgments">Acknowledgments</name>
      <t indent="0" pn="section-appendix.a-1">The authors are indebted to <contact fullname="Donald Eastlake"/>, <contact fullname="Joel Halpern"/>, and <contact fullname="Toke Hoiland-Jorgensen"/> for their help with this document.</t>
    </section>
    <section anchor="authors-addresses" numbered="false" removeInRFC="false" toc="include" pn="section-appendix.b">
      <name slugifiedName="name-authors-addresses">Authors' Addresses</name>
      <author fullname="Matthieu Boutier" initials="M." surname="Boutier">
        <organization showOnFrontPage="true">IRIF, University of Paris</organization>
        <address>
          <postal>
            <street>Case 7014</street>
            <city>Paris Cedex 13</city>
            <region/>
            <code>75205</code>
            <country>France</country>
          </postal>
          <email>boutier@irif.fr</email>
        </address>
      </author>
      <author fullname="Juliusz Chroboczek" initials="J." surname="Chroboczek">
        <organization showOnFrontPage="true">IRIF, University of Paris</organization>
        <address>
          <postal>
            <street>Case 7014</street>
            <city>Paris Cedex 13</city>
            <region/>
            <code>75205</code>
            <country>France</country>
          </postal>
          <email>jch@irif.fr</email>
        </address>
      </author>
    </section>
  </back>
</rfc>
