@techreport{ietf-opsec-filter-caps-09, number = {draft-ietf-opsec-filter-caps-09}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-ietf-opsec-filter-caps/09/}, author = {Chris Morrow}, title = {{Filtering and Rate Limiting Capabilities for IP Network Infrastructure}}, pagetotal = 30, year = 2007, month = jul, day = 13, abstract = {{[}RFC4778{]} lists operator practices related to securing networks. This document lists filtering and rate limiting capabilities needed to support those practices. Capabilities are limited to filtering and rate limiting packets as they enter or leave the device. Route filters and service specific filters (e.g. SNMP, telnet) are not addressed. Capabilities are defined without reference to specific technologies. This is done to leave room for deployment of new technologies that implement the capability. Each capability cites the practices it supports. Current implementations that support the capability are cited. Special considerations are discussed as appropriate listing operational and resource constraints, limitations of current implementations, trade-offs, etc.}, }