<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.wdh-srv6ops-secservice" target="https://datatracker.ietf.org/doc/html/draft-wdh-srv6ops-secservice-02">
   <front>
      <title>ESP Protection for Services over SRv6</title>
      <author initials="H." surname="Wang" fullname="Haibo Wang">
         <organization>Huawei</organization>
      </author>
      <author initials="L." surname="Dunbar" fullname="Linda Dunbar">
         <organization>Futurewei</organization>
      </author>
      <author initials="H. J." surname="Cjk" fullname="CJK UNIFIED IDEOGRAPH-80E1 CJK UNIFIED IDEOGRAPH-4FCA CJK UNIFIED IDEOGRAPH-7406">
         <organization>Huawei</organization>
      </author>
      <author initials="" surname="YaoYang" fullname="YaoYang">
         <organization>Huawei</organization>
      </author>
      <date month="March" day="17" year="2026" />
      <abstract>
	 <t>   This document describes a mechanism for protecting selected service
   traffic using IPsec ESP while transporting the traffic over an SRv6
   domain.  The approach enables service payloads to be encrypted prior
   to SRv6 encapsulation, allowing the SRv6 header to remain visible for
   segment-based forwarding within the provider network.  This mechanism
   supports services or applications that require additional
   confidentiality and integrity protection, even when carried over an
   operator-managed SRv6 domain.


	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-wdh-srv6ops-secservice-02" />
   
</reference>
