On the Generation of Transient Numeric Identifiers

The information below is for an old version of the document
Document Type Expired Internet-Draft (pearg RG)
Authors Fernando Gont  , Ivan Arce 
Last updated 2020-02-24 (latest revision 2019-08-23)
Replaces draft-gont-predictable-protocol-ids, draft-gont-numeric-ids-generation
Stream Internet Research Task Force (IRTF)
Expired & archived
plain text pdf htmlized bibtex
Stream IRTF state (None)
Consensus Boilerplate Unknown
Document shepherd No shepherd assigned
IESG IESG state Expired
Telechat date
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft can be found at


This document performs an analysis of the security and privacy implications of different types of "numeric identifiers" used in IETF protocols, and tries to categorize them based on their interoperability requirements and the associated failure severity when such requirements are not met. Subsequently, it provides advice on possible algorithms that could be employed to satisfy the interoperability requirements of each identifier type, while minimizing the security and privacy implications, thus providing guidance to protocol designers and protocol implementers. Finally, this describes a number of algorithms that have been employed in real implementations to generate transient numeric identifiers and analyzes their security and privacy properties.


Fernando Gont (fgont@si6networks.com)
Ivan Arce (iarce@quarkslab.com)

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)