{"abstract": "   The BGP Flow Specification enables the distribution of traffic filter\n   policies (traffic filters and actions) via BGP, facilitating DDoS\n   traffic filtering.  However, the traffic filter in FSv1 and FSv2\n   predominantly focuses on IP header fields, which may not adequately\n   address volumetric DDoS attack traffic characterized by fixed\n   patterns within the packet content.  This document introduces a new\n   flow specification filter type designed for packet content filtering.\n   The match field includes ptype, otype, offset, content-length,\n   content, and mask encoded in the Flowspec NLRI.  This new filter aims\n   to leverage network devices such as routers and switches to support\n   controlled traffic handling, traffic optimization, and mitigation of\n   simple volumetric DDoS attacks, reducing the overall processing cost\n   of carrier networks.\n", "ad": null, "expires": "2026-11-10T07:07:48Z", "external_url": "", "group": "/api/v1/group/group/1027/", "id": 135011, "intended_std_level": null, "keywords": "[]", "name": "draft-cui-idr-content-filter-flowspec", "note": "", "notify": "", "pages": 13, "resource_uri": "/api/v1/doc/document/draft-cui-idr-content-filter-flowspec/", "rev": "04", "rfc": null, "rfc_number": null, "shepherd": null, "states": ["/api/v1/doc/state/1/", "/api/v1/doc/state/150/"], "std_level": null, "stream": null, "submissions": ["/api/v1/submit/submission/141468/", "/api/v1/submit/submission/142409/", "/api/v1/submit/submission/144400/", "/api/v1/submit/submission/144986/", "/api/v1/submit/submission/162998/"], "tags": [], "time": "2026-05-09T07:07:48Z", "title": "Packet Content Filter for BGP FlowSpec", "type": "/api/v1/name/doctypename/draft/", "uploaded_filename": "", "words": null}