Service Function Chaining-Enabled I2NSF Architecture

Document Type Expired Internet-Draft (individual)
Authors Sangwon Hyun  , Jaehoon (Paul) Jeong  , Park Jung-Soo  , Susan Hares 
Last updated 2019-01-03 (latest revision 2018-07-02)
Stream (None)
Intended RFC status (None)
Expired & archived
plain text xml pdf htmlized pdfized bibtex
Stream Stream state (No stream defined)
Consensus Boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This document describes an architecture of the I2NSF framework using security function chaining for security policy enforcement. Security function chaining enables composite inspection of network traffic by steering the traffic through multiple types of network security functions according to the information model for NSFs capabilities in the I2NSF framework. This document explains the additional components integrated into the I2NSF framework and their functionalities to achieve security function chaining. It also describes representative use cases to address major benefits from the proposed architecture.


Sangwon Hyun (
Jaehoon (Paul) Jeong (
Park Jung-Soo (
Susan Hares (

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)