@techreport{ietf-ippm-encrypted-pdmv2-13, number = {draft-ietf-ippm-encrypted-pdmv2-13}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-ippm-encrypted-pdmv2/13/}, author = {Nalini Elkins and michael ackermann and Ameya Deshpande and Tommaso Pecorella and Adnan Rashid and Lorenzo Fedi}, title = {{IPv6 Performance and Diagnostic Metrics Version 2 (PDMv2) Destination Option}}, pagetotal = 16, year = 2026, month = jan, day = 18, abstract = {RFC 8250 defines an IPv6 Destination Option that carries Performance and Diagnostic Metrics (PDM) such as sequence numbers and timing information. While useful for measurement and troubleshooting, clear-text PDM data may expose operational characteristics of endpoints and networks. This document defines PDMv2, a revised version of PDM that introduces a registration-based security model. Instead of specifying cryptographic algorithms or inline key negotiation, PDMv2 relies on a prior registration process to authenticate entities, authorize participation, and establish shared secrets. These secrets are then used by endpoints and authorized analyzers to protect and interpret PDMv2 data according to local policy. This document specifies the PDMv2 semantics, header structure, and operational model. Cryptographic algorithms, key derivation functions, and cipher negotiation are explicitly out of scope.}, }