@misc{rfc8572, series = {Request for Comments}, number = 8572, howpublished = {RFC 8572}, publisher = {RFC Editor}, doi = {10.17487/RFC8572}, url = {https://www.rfc-editor.org/info/rfc8572}, author = {Kent Watsen and Mikael Abrahamsson and Ian Farrer}, title = {{Secure Zero Touch Provisioning (SZTP)}}, pagetotal = 87, year = 2019, month = apr, abstract = {This document presents a technique to securely provision a networking device when it is booting in a factory-default state. Variations in the solution enable it to be used on both public and private networks. The provisioning steps are able to update the boot image, commit an initial configuration, and execute arbitrary scripts to address auxiliary needs. The updated device is subsequently able to establish secure connections with other systems. For instance, a device may establish NETCONF (RFC 6241) and/or RESTCONF (RFC 8040) connections with deployment-specific network management systems.}, }