%% You should probably cite rfc8329 instead of this I-D. @techreport{ietf-i2nsf-framework-00, number = {draft-ietf-i2nsf-framework-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-i2nsf-framework/00/}, author = {Edward Lopez and Diego Lopez and Linda Dunbar and John Strassner and Xiaojun Zhuang and Joe Parrott and Ramki Krishnan and Seetharama Rao Durbha}, title = {{Framework for Interface to Network Security Functions}}, pagetotal = 23, year = 2016, month = may, day = 2, abstract = {This document defines the framework for guiding the functionality provided by I2NSF. Network security functions (NSFs) are packet- processing engines that inspect and optionally modify packets traversing networks, either directly or in the context of sessions in which the packet is associated. This document provides an overview of how NSFs are used, and describes how NSF software interfaces are controlled and monitored using rulesets. The design of these software interfaces must prevent the creation of implied constraints on NSF capability and functionality.}, }