Skip to main content

BGP FlowSpec with Time Constraints
draft-liang-idr-bgp-flowspec-time-00

Document Type Expired Internet-Draft (idr WG)
Expired & archived
Authors liangqiandeng , Jianjie You , Shunwan Zhuang
Last updated 2016-04-20 (Latest revision 2015-10-18)
RFC stream Internet Engineering Task Force (IETF)
Intended RFC status (None)
Formats
Additional resources Mailing list discussion
Stream WG state Candidate for WG Adoption
Document shepherd (None)
IESG IESG state Expired
Consensus boilerplate Unknown
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

The BGP flow specification (FlowSpec) is an additional tool to mitigate the effects of Distributed Denial of Service (DDoS) attacks. Since DDoS attacks are dynamic, filtering of a flow may only be necessary for some specified time, and be undesirable at other times. This document proposes a new BGP path attribute called "Flow Extended Attribute", which carries expected valid period information for a FlowSpec rule. So network administrators can control certain types of traffic in a specified period.

Authors

liangqiandeng
Jianjie You
Shunwan Zhuang

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)