<?xml version='1.0' encoding='utf-8'?>
<!DOCTYPE rfc [
  <!ENTITY nbsp    "&#160;">
  <!ENTITY zwsp   "&#8203;">
  <!ENTITY nbhy   "&#8209;">
  <!ENTITY wj     "&#8288;">
]>
<?xml-stylesheet type="text/xsl" href="rfc2629.xslt" ?>
<!-- generated by https://github.com/cabo/kramdown-rfc version 1.7.17 (Ruby 3.0.2) -->
<rfc xmlns:xi="http://www.w3.org/2001/XInclude" ipr="trust200902" docName="draft-ietf-mops-treedn-05" category="info" submissionType="IETF" tocInclude="true" sortRefs="true" symRefs="true" version="3">
  <!-- xml2rfc v2v3 conversion 3.22.0 -->
  <front>
    <title abbrev="TreeDN">TreeDN- Tree-based CDNs for Live Streaming to Mass Audiences</title>
    <seriesInfo name="Internet-Draft" value="draft-ietf-mops-treedn-05"/>
    <author initials="L." surname="Giuliano" fullname="Lenny Giuliano">
      <organization>Juniper Networks</organization>
      <address>
        <postal>
          <street>2251 Corporate Park Drive</street>
          <city>Herndon, VA 20171</city>
          <country>USA</country>
        </postal>
        <email>lenny@juniper.net</email>
      </address>
    </author>
    <author initials="C." surname="Lenart" fullname="Chris Lenart">
      <organization>Verizon</organization>
      <address>
        <postal>
          <street>22001 Loudoun County Parkway</street>
          <city>Ashburn, VA 20147</city>
          <country>USA</country>
        </postal>
        <email>chris.lenart@verizon.com</email>
      </address>
    </author>
    <author initials="R." surname="Adam" fullname="Rich Adam">
      <organization>GEANT</organization>
      <address>
        <postal>
          <street>City House</street>
          <street>126-130 Hills Road</street>
          <city>Cambridge</city>
          <code>CB2 1PQ</code>
          <country>UK</country>
        </postal>
        <email>richard.adam@geant.org</email>
      </address>
    </author>
    <date year="2024" month="July" day="11"/>
    <area>Ops</area>
    <workgroup>MOPS</workgroup>
    <keyword>multicast, SSM, AMT, LISP, CDN, PIM-SSM</keyword>
    <abstract>
      <?line 97?>

<t>As Internet audience sizes for high-interest live events reach unprecedented levels and bitrates climb to support 4K/8K/Augmented Reality (AR), live streaming can place a unique type of stress upon network resources.  TreeDN is a tree-based CDN architecture designed to address the distinctive scaling challenges of live streaming to mass audiences.  TreeDN enables operators to offer Replication-as-a-Service (RaaS) at a fraction the cost of traditional, unicast-based CDNs- in some cases, at no additional cost to the infrastructure.  In addition to efficiently utilizing network resources to deliver existing multi-destination traffic, this architecture also enables new types of content and use cases that previously were not possible or economically viable using traditional CDN approaches.  Finally, TreeDN is a decentralized architecture and a democratizing technology in the way that it makes content distribution more accessible to more people by dramatically reducing the costs of replication.</t>
    </abstract>
  </front>
  <middle>
    <?line 101?>

<section anchor="problem-statement">
      <name>Problem Statement</name>
      <t>Live streaming to mass audiences can impose unique demands on network resources.  For example, live sporting events broadcast over the Internet to end users has much lower tolerance for long playout buffers than typical on-demand video streaming.  Viewers of live sporting events have long been conditioned by broadcast television to expect to see the content in real time, with only very short buffers for broadcast delays to prevent profanity and other objectionable content from making on the air (the "seven-second delay" <xref target="BROADCAST-DELAY"/>).  With micro-betting, even this 5-10 second delay can be too long. By comparison, when watching on-demand movies, an extra one- or two-minute playout buffer tends to be perfectly acceptable for viewers.  If playout buffers for live sports are that long, viewers run the risk of being alerted to the game winning score from text messages from friends or cheers from the bar across the street, minutes before they view it themselves.</t>
      <t>Another unique characteristic of live streaming is join rate.  While on-demand video streaming can consume massive amounts of network resources, the viewing rates tend to be smooth and predictable.  Service Providers observe gradual levels of traffic increases over the evening hours corresponding to prime-time viewing habits.  By comparison, viewing rates of live video streams can more closely resemble a step function with much less predictability as mass audiences of viewers tune in to watch the game at the same time.</t>
      <t>Previous efforts at more efficient network replication of multi-destination traffic have experienced mixed success in terms of adoption.  IP multicast is widely deployed on financial networks, video distribution networks, L3VPN networks and certain enterprises.  But most of these deployments are restricted to "walled-garden" networks.  Multicast over the global Internet has failed to gain traction, as only a very small portion of the Internet is multicast-enabled at this time.</t>
      <t>TreeDN is the result of the evolution of network-based replication mechanisms based on lessons learned from what has and has not worked well in the past.  TreeDN addresses the fundamental issues of what has hindered multicast from adoption on the global Internet and enables service providers the opportunity to deliver new Replication-as-a-Service (RaaS) offerings to content providers, while more efficiently utilizing network resources by eliminating duplicated traffic, and thus, improving the experience of end users.  Further, by more efficiently supporting multi-destination traffic, TreeDN is an architecture that can enable new types of content, such as Augmented Reality (AR) live streaming to mass audiences, that previously weren't possible or economically viable on the Internet due to the inefficiencies of unicast.</t>
      <section anchor="requirements-language">
        <name>Requirements Language</name>
        <t>The key words "<bcp14>MUST</bcp14>", "<bcp14>MUST NOT</bcp14>", "<bcp14>REQUIRED</bcp14>", "<bcp14>SHALL</bcp14>", "<bcp14>SHALL
NOT</bcp14>", "<bcp14>SHOULD</bcp14>", "<bcp14>SHOULD NOT</bcp14>", "<bcp14>RECOMMENDED</bcp14>", "<bcp14>NOT RECOMMENDED</bcp14>",
"<bcp14>MAY</bcp14>", and "<bcp14>OPTIONAL</bcp14>" in this document are to be interpreted as
described in BCP 14 <xref target="RFC2119"/> <xref target="RFC8174"/> when, and only when, they
appear in all capitals, as shown here.</t>
        <?line -18?>

</section>
    </section>
    <section anchor="applicability">
      <name>Applicability</name>
      <t>While the primary use case mentioned throughout this document is live streaming of multimedia content (audio, video, AR, real-time telemetry data), the TreeDN architecture can provide efficient delivery for any content that needs to be replicated and delivered to multiple destinations.  For example, large software file updates (eg, OS upgrades) that need to be delivered to many end users in a very short window of time can cause significant strain on network resources.  Using TreeDN, this use case be handled much more efficiently by the network.</t>
    </section>
    <section anchor="multicast-challenges-in-the-past">
      <name>Multicast Challenges in the Past</name>
      <t>The following issues have been the primary challenges for deployment of IP multicast over the global Internet:</t>
      <ul spacing="normal">
        <li>
          <t>The "All or Nothing" Problem: IP multicast requires every layer-3 hop between source and receivers to be multicast-enabled.  To achieve ubiquitous availability on the global Internet, this essentially means nearly every interface on every router and firewall between all end hosts must support a multicast routing protocol like Protocol Independent Multicast - Sparse Mode (PIM-SM) <xref target="RFC7761"/> or Multipoint Label Distribution Protocol (mLDP) <xref target="RFC6388"/>.  This requirement creates a bar to deployment that is practically impossible to overcome.</t>
        </li>
        <li>
          <t>The "It's Too Complex" Problem: operators have long complained that multicast routing protocols like PIM-SM are simply too complex, making it costly to design, configure, manage and troubleshoot IP multicast in the network.</t>
        </li>
        <li>
          <t>The "Chicken and Egg" Problem: there's not much multicast content because there's not much of a multicast-enabled audience, but there's not much of a multicast-enabled audience because there's not much multicast content.</t>
        </li>
      </ul>
      <t>TreeDN is the evolution of network-based replication based on lessons learned over decades and is designed to address the problems listed above.</t>
    </section>
    <section anchor="treedn-architecture">
      <name>TreeDN Architecture</name>
      <t>TreeDN leverages a simplified model for multicast deployment combined with network overlays to deliver traffic to receiving hosts on unicast-only networks.  With network overlays, a service can be achieved and delivered to end users while recognizing and tolerating the practical realities of what is possible over a network as diverse as the global Internet.  That is, the replication service is available to users and applications across the global Internet regardless of what protocols may exist in the underlying networks that constitute the underlay.</t>
      <figure anchor="block">
        <name>TreeDN Provider Example</name>
        <artwork><![CDATA[
                        TreeDN Provider
                +-------------------------------+
                |                               |
                |   Native Multicast On-Net     |
+----------+    |         (PIM-SSM)             |
| Content/ |----+                               |
| Mcast    |    |                               |
| Source   |    |                   +-----------+
+----------+    +---|-------|-------| AMT Relay |  +--------------+
                    |       |       +----|------+  | Unicast-Only |
                   +-+     +-+           .         |    Network   |
                   +-+     +-+           ..........|........      |
                 Native Content        AMT Tunnel  +-------.------+
                    Receivers                              .
                                                  AMT     +-+
                                                  Gateway +-+
                                                           |
                                                       Content
                                                       Receiver
]]></artwork>
      </figure>
      <section anchor="treedn-overlays">
        <name>TreeDN Overlays</name>
        <t>One overlay technology that TreeDN leverages is Automatic Multicast Tunneling (AMT) <xref target="RFC7450"/>.  With AMT, end hosts on unicast-only networks (AMT Gateways) can dynamically build tunnels to routers on the multicast-enabled part of the network (AMT Relays) and receive multicast streams.  The AMT Gateway is a thin software client which typically sits on the receiving end host and initiates the tunnel at an AMT Relay, which is a tunnel server that typically sits at the border of the multicast network.  AMT allows any end host on the Internet to receive multicast content regardless of whether their local provider supports multicast (aka, "off-net receivers"), which addresses the "All or Nothing" Problem.  Links and devices that do not support multicast are simply tunneled over- they no longer present a barrier to the overall replication service for end users.  Those networks that do deploy and support multicast, as well as the content providers that serve up multicast content, are able to enjoy the benefits of efficient replication and delivery.  Further, these benefits can serve as incentives for operators who do not yet support multicast to enable it on their networks, a key benefit of incremental deployment described in section 4.3 of <xref target="RFC9049"/>.  Once the cost of carrying duplicated unicast tunnels is perceived by those operators to exceed the cost of deploying multicast, they are more likely to enable multicast on their networks.  In this way, TreeDN effectively supports incremental deployment in a way that was not previously possible with traditional (non-overlay) multicast networking.  Finally, AMT also addresses the "Chicken and Egg" Problem, as all end hosts on the global Internet that have access to an AMT Relay are capable of becoming audience members.</t>
        <t>To support receiving on both native and non-native networks, receiving hosts can first attempt to join the traffic natively and, if no multicast traffic is received, fallback to AMT.  This fallback mechanism can be handled by the application layer.</t>
        <t>In addition to AMT, other overlay technologies like Locator/ID Separation Protocol (LISP) <xref target="RFC9300"/> can be utilized to deliver content from multicast-enabled networks to end hosts that are separated by portions of the network (at the last/middle/first mile) that do not support multicast.</t>
      </section>
      <section anchor="treedn-native-on-net">
        <name>TreeDN Native On-Net</name>
        <t>Networks that support multicast provide the native on-net component of TreeDN.  The primary requirement of the native on-net is to support Source-Specific Multicast (SSM) <xref target="RFC4607"/>.  PIM-SSM, which is merely a subset of PIM-SM, is the multicast routing protocol typically used in SSM.  However, any multicast routing protocol capable of supporting SSM can be used as a TreeDN native on-net, such as mLDP, Global Table Multicast (GTM) <xref target="RFC7716"/> and BGP-based Multicast <xref target="I-D.ietf-bess-bgp-multicast"/>, or even BGP-MVPN <xref target="RFC6513"/> for those operators who carry the global routing table in a VRF.  Likewise, any data plane technology that supports SSM, including BIER <xref target="RFC8279"/> and SR-P2MP <xref target="I-D.ietf-spring-sr-replication-segment"/> can be used.</t>
        <t>The key benefit of SSM as the native on-net component of TreeDN is that it radically simplifies the control plane needed to support replication in the network.  This benefit addresses the "It's Too Complex" Problem.  Most of the complexity of multicast is eliminated in SSM, which reduces the cost of deploying and operating a multicast network.  Further rationale for this SSM-only approach can be found in Any-Source Multicast (ASM) Deprecation <xref target="RFC8815"/>.</t>
      </section>
    </section>
    <section anchor="replication-as-a-service-raas">
      <name>Replication-as-a-Service (RaaS)</name>
      <t>Content providers have traditionally used CDNs to distribute content that needs to be delivered to large audiences, essentially outsourcing the task of replication to CDN providers.  Most CDNs utilize unicast delivery, as multicast is not an option due to its lack of general availability on the global Internet.  TreeDN is a CDN architecture that leverages tree-based replication to more efficiently utilize network resources to deliver simultaneous multi-destination traffic.  By leveraging overlay networking to address the "All or Nothing" and "Chicken and Egg" Problems and SSM to address the "It's Too Complex" Problem, TreeDN avoids the practical issues that previously prevented multicast from being a viable option for CDN providers.</t>
      <t>TreeDN has several advantages over traditional unicast-based CDN approaches.  First, the TreeDN functionality can be delivered entirely by the existing network infrastructure.  Specifically, for operators with routers that support AMT natively, multicast traffic can be delivered directly to end users without the need for specialized CDN devices, which typically are servers that need to be racked, powered, cooled and connected to ports on routers that could otherwise have been consumed by paying customers.  In this way, SPs can offer new RaaS functionality to content providers at potentially zero additional cost in new equipment.</t>
      <t>Additionally, TreeDN is an open architecture that leverages mature, IETF-specified and widely implemented network protocols.  TreeDN also requires far less coordination between the content provider and the CDN operator.  That is, there are no storage requirements for the data, nor group-key management issues since a TreeDN provider merely forwards packets.  A TreeDN provider simply needs to have enough accounting data (eg, traffic data, number of AMT tunnels, etc) to properly bill customers for the service.  By contrast, traditional unicast-based CDNs often incorporate proprietary, non-interoperable technologies and require significant coordination between the content provider and the CDN to handle such things as file storage, data protection and key-management.</t>
      <t>TreeDN introduces a deployment model that requires new considerations for transport layer mechanisms that are frequently relied upon by traditional unicast-based CDNs.  A discussion on these considerations and differences can be found in section 7.</t>
    </section>
    <section anchor="decentralizationdemocratization-of-content-sourcing">
      <name>Decentralization/Democratization of Content Sourcing</name>
      <t>TreeDN is an inherently decentralized architecture.  This reduces the cost for content sourcing, as any host connected to a multicast-enabled network, or on a source-capable overlay, can send out a single data stream that can be reached by an arbitrarily large audience.  By effectively reducing to zero the marginal cost of reaching each additional audience member, from the perspective of the source, TreeDN democratizes content sourcing on the Internet.</t>
    </section>
    <section anchor="transport-layer-related-differences-between-treedn-and-traditional-cdns">
      <name>Transport Layer-Related Differences between TreeDN and Traditional CDNs</name>
      <t>The focus of this document is on the network layer components that comprise the TreeDN architecture.  This section introduces some of the key transport layer-related differences between TreeDN and traditional unicast-based CDNs that should be taken into consideration when deploying TreeDN-based services.  In many cases, these issues are more related to TCP-UDP differences than unicast-multicast differences, thus UDP-based solutions can be leveraged to address most gaps.  The aim of this section is to point to some of the existing work to address these gaps, as well as suggest further work that could be undertaken within the IETF.  Further details of these transport layer mechanisms are beyond the scope of this document.</t>
      <section anchor="integration-with-unicast">
        <name>Integration with Unicast</name>
        <t>Since SSM inherently implies unidirectional traffic flows from one to many, mechanisms that rely on bidirectional communication between receivers and the content provider, such as bespoke advertising, telemetry data from receivers detailing end user experience, distribution of decryption keys, switching to higher/lower bandwidth streams, etc, are not well suited to SSM delivery.  As such, separate unicast streams between receivers and content providers may be used for this type of "out-of-band" functions while SSM is used to deliver the actual content of interest.  These "out-of-band" unicast streams <bcp14>SHOULD</bcp14> use the same congestion control and authentication mechanisms that are used today for mass audience unicast delivery.  Generally speaking, this hybrid unicast-multicast approach is best handled by the application layer and further detail is beyond the scope of this document.</t>
      </section>
      <section anchor="reliability-adaptive-bitrate-and-congestion-control">
        <name>Reliability, Adaptive Bitrate and Congestion Control</name>
        <t>Traditional unicast-based CDNs frequently rely on HTTPS over TCP transport and are thus able to leverage the granularity of TCP-based mechanisms for reliability, congestion control and adaptive bitrate streaming.  But this granularity comes at a cost of sending a separate datastream to each viewer.  Multicast transmissions usually employ UDP, which inherently lacks many of the aforementioned benefits of TCP, but can scale much better for mass audiences of simultaneous viewers.  Forward Error Correction (FEC) is a mechanism that has demonstrated full recovery for up to 5% packet loss and interruptions up to 400ms for multicast datastreams in <xref target="EUMETSAT-TERRESTRIAL"/>.  NACK-Oriented Reliable Multicast (NORM) <xref target="RFC5740"/> leverages FEC-based repair and other Reliable Multicast Transport building blocks to provide end-to-end reliable transport over multicast networks.</t>
        <t>Section 4.1 of <xref target="RFC8085"/> describes how a sender can distribute data across multiple multicast source-group channels so that each receiver can join the most appropriate channels for its own reception rate capability, thus providing adaptive bitrate capabilities for multicast streams.  DVB MABR <xref target="DVB-MABR"/> and MAUD <xref target="MAUD"/> extensively describe an architecture that enables reliability and dynamic bitrate adaptation.</t>
        <t>TreeDN deployments <bcp14>MUST</bcp14> follow the congestion control guidelines described in Section 4.1.4.2 of <xref target="RFC7450"/>.  Multicast applications being distributed over TreeDN deployments <bcp14>SHOULD</bcp14> implement congestion control for its data transmission as described in Section 4.1 in <xref target="RFC8085"/>.  The AMT gateway <bcp14>SHOULD</bcp14> use the topologically closes AMT relay. Section 3.1 of <xref target="RFC8777"/> describes a set of procedures for optimal relay selection.</t>
      </section>
      <section anchor="authorization-and-encryption">
        <name>Authorization and Encryption</name>
        <t>A multicast sender typically has little to no control or visibility about which end hosts may receive the datastream.  Encryption can be used to ensure that only authorized receivers are able to access meaningful data.  That is, even if unauthorized end hosts (eg, non-paying) receive the datastream, without decryption keys, the data is useless.  <xref target="I-D.ietf-ipsecme-g-ikev2"/> describes an extension to IKEv2 for the purpose of group key management.  DVB MABR <xref target="DVB-MABR"/> and MAUD <xref target="MAUD"/> extensively describe an architecture that includes encryption of multicast streams.  Multicast extensions to QUIC have been proposed in <xref target="I-D.jholland-quic-multicast"/>.</t>
      </section>
    </section>
    <section anchor="treedn-deployments">
      <name>TreeDN Deployments</name>
      <t>EUMETCast Terrestrial is a service from EUMETSAT that delivers meteorological satellite data to end users for purposes such as operational monitoring of climate and the detection of global
climate changes.  EUMETCast Terrestrial connects to the GEANT network, which provides TreeDN services to deliver this data natively to end users on multicast-enabled networks as well as to end users on unicast-only networks via a global deployment of AMT relays.  Details of the EUMETCast Terrestrial service over the GEANT TreeDN network are described in <xref target="EUMETCast-TERRESTRIAL-over-AMT"/>.  Additional details on how this deployment uses encryption, authorization, reliability and unicast feedback channels for end-to-end file delivery monitoring can be found in <xref target="EUMETSAT-TERRESTRIAL"/>.</t>
      <t>The Multicast Menu is a web-based portal that lists and can launch active multicast streams that are available on a global TreeDN network of various research and educations networks.  Details of the this TreeDN network, as well as the Multicast Menu, are described in <xref target="Multicast-Menu"/>.</t>
      <t>The RARE network is a global testbed interconnecting several national research and education networks (NRENs) via routers running BIER.  AMT relays are deployed to deliver multicast traffic from sources on the RARE network to receivers on unicast-only networks across the Internet.  Details of the RARE network are described in <xref target="BIER-AMT-Deployment"/>.</t>
    </section>
    <section anchor="security-consideration">
      <name>Security Consideration</name>
      <t>TreeDN is essentially the synthesis of SSM plus overlay networking technologies like AMT.  As such, the TreeDN architecture introduces no new security threats that are not already documented in SSM and the overlay technologies that comprise it.  In particular, Section 6 of <xref target="RFC7450"/> candidly notes that AMT, like UDP, IGMP and MLD provide no mechanisms for ensuring message delivery or integrity, nor does it provide confidentiality, since sources/groups joined through IGMP/MLD could be associated with the particular content being requested.</t>
      <t><xref target="RFC4609"/> and <xref target="RFC8815"/> describes the additional security benefits of using SSM instead of ASM.</t>
    </section>
    <section anchor="iana-considerations">
      <name>IANA Considerations</name>
      <t>This document has no IANA actions.</t>
    </section>
    <section anchor="acknowledgements">
      <name>Acknowledgements</name>
      <t>Many thanks to those who have contributed to building and operating the first TreeDN network on the Internet, including Pete Morasca, William Zhang, Lauren Delwiche, Natalie Landsberg, Wayne Brassem, Jake Holland, Andrew Gallo, Casey Russell, Janus Varmarken, Csaba Mate, Frederic Loui, Max Franke, Todor Moskov, Erik Herz, Bradley Cao, Katie Merrill, Karel Hendrych, Haruna Oseni and Isabelle Xiong.  The writing of this document to describe the TreeDN architecture was inspired by a conversation with Dino Farinacci and Mike McBride.  Thanks also to Jeff Haas and Vinod Kumar for their thoughtful reviews and suggestions, Chris Lemmons for his detailed shepherd review and Stephen Farrell, Magnus Westerlund, Reese Enghardt, and Jurgen Schonwalder for their last call reviews.</t>
    </section>
  </middle>
  <back>
    <references>
      <name>References</name>
      <references anchor="sec-normative-references">
        <name>Normative References</name>
        <reference anchor="RFC2119" target="https://www.rfc-editor.org/info/rfc2119" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.2119.xml">
          <front>
            <title>Key words for use in RFCs to Indicate Requirement Levels</title>
            <author fullname="S. Bradner" initials="S." surname="Bradner"/>
            <date month="March" year="1997"/>
            <abstract>
              <t>In many standards track documents several words are used to signify the requirements in the specification. These words are often capitalized. This document defines these words as they should be interpreted in IETF documents. This document specifies an Internet Best Current Practices for the Internet Community, and requests discussion and suggestions for improvements.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="2119"/>
          <seriesInfo name="DOI" value="10.17487/RFC2119"/>
        </reference>
        <reference anchor="RFC8174" target="https://www.rfc-editor.org/info/rfc8174" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.8174.xml">
          <front>
            <title>Ambiguity of Uppercase vs Lowercase in RFC 2119 Key Words</title>
            <author fullname="B. Leiba" initials="B." surname="Leiba"/>
            <date month="May" year="2017"/>
            <abstract>
              <t>RFC 2119 specifies common key words that may be used in protocol specifications. This document aims to reduce the ambiguity by clarifying that only UPPERCASE usage of the key words have the defined special meanings.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="14"/>
          <seriesInfo name="RFC" value="8174"/>
          <seriesInfo name="DOI" value="10.17487/RFC8174"/>
        </reference>
        <reference anchor="RFC7761" target="https://www.rfc-editor.org/info/rfc7761" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.7761.xml">
          <front>
            <title>Protocol Independent Multicast - Sparse Mode (PIM-SM): Protocol Specification (Revised)</title>
            <author fullname="B. Fenner" initials="B." surname="Fenner"/>
            <author fullname="M. Handley" initials="M." surname="Handley"/>
            <author fullname="H. Holbrook" initials="H." surname="Holbrook"/>
            <author fullname="I. Kouvelas" initials="I." surname="Kouvelas"/>
            <author fullname="R. Parekh" initials="R." surname="Parekh"/>
            <author fullname="Z. Zhang" initials="Z." surname="Zhang"/>
            <author fullname="L. Zheng" initials="L." surname="Zheng"/>
            <date month="March" year="2016"/>
            <abstract>
              <t>This document specifies Protocol Independent Multicast - Sparse Mode (PIM-SM). PIM-SM is a multicast routing protocol that can use the underlying unicast routing information base or a separate multicast-capable routing information base. It builds unidirectional shared trees rooted at a Rendezvous Point (RP) per group, and it optionally creates shortest-path trees per source.</t>
              <t>This document obsoletes RFC 4601 by replacing it, addresses the errata filed against it, removes the optional (*,*,RP), PIM Multicast Border Router features and authentication using IPsec that lack sufficient deployment experience (see Appendix A), and moves the PIM specification to Internet Standard.</t>
            </abstract>
          </front>
          <seriesInfo name="STD" value="83"/>
          <seriesInfo name="RFC" value="7761"/>
          <seriesInfo name="DOI" value="10.17487/RFC7761"/>
        </reference>
        <reference anchor="RFC6388" target="https://www.rfc-editor.org/info/rfc6388" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.6388.xml">
          <front>
            <title>Label Distribution Protocol Extensions for Point-to-Multipoint and Multipoint-to-Multipoint Label Switched Paths</title>
            <author fullname="IJ. Wijnands" initials="IJ." role="editor" surname="Wijnands"/>
            <author fullname="I. Minei" initials="I." role="editor" surname="Minei"/>
            <author fullname="K. Kompella" initials="K." surname="Kompella"/>
            <author fullname="B. Thomas" initials="B." surname="Thomas"/>
            <date month="November" year="2011"/>
            <abstract>
              <t>This document describes extensions to the Label Distribution Protocol (LDP) for the setup of point-to-multipoint (P2MP) and multipoint-to-multipoint (MP2MP) Label Switched Paths (LSPs) in MPLS networks. These extensions are also referred to as multipoint LDP. Multipoint LDP constructs the P2MP or MP2MP LSPs without interacting with or relying upon any other multicast tree construction protocol. Protocol elements and procedures for this solution are described for building such LSPs in a receiver-initiated manner. There can be various applications for multipoint LSPs, for example IP multicast or support for multicast in BGP/MPLS Layer 3 Virtual Private Networks (L3VPNs). Specification of how such applications can use an LDP signaled multipoint LSP is outside the scope of this document. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6388"/>
          <seriesInfo name="DOI" value="10.17487/RFC6388"/>
        </reference>
        <reference anchor="RFC7450" target="https://www.rfc-editor.org/info/rfc7450" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.7450.xml">
          <front>
            <title>Automatic Multicast Tunneling</title>
            <author fullname="G. Bumgardner" initials="G." surname="Bumgardner"/>
            <date month="February" year="2015"/>
            <abstract>
              <t>This document describes Automatic Multicast Tunneling (AMT), a protocol for delivering multicast traffic from sources in a multicast-enabled network to receivers that lack multicast connectivity to the source network. The protocol uses UDP encapsulation and unicast replication to provide this functionality.</t>
              <t>The AMT protocol is specifically designed to support rapid deployment by requiring minimal changes to existing network infrastructure.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7450"/>
          <seriesInfo name="DOI" value="10.17487/RFC7450"/>
        </reference>
        <reference anchor="RFC4607" target="https://www.rfc-editor.org/info/rfc4607" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.4607.xml">
          <front>
            <title>Source-Specific Multicast for IP</title>
            <author fullname="H. Holbrook" initials="H." surname="Holbrook"/>
            <author fullname="B. Cain" initials="B." surname="Cain"/>
            <date month="August" year="2006"/>
            <abstract>
              <t>IP version 4 (IPv4) addresses in the 232/8 (232.0.0.0 to 232.255.255.255) range are designated as source-specific multicast (SSM) destination addresses and are reserved for use by source-specific applications and protocols. For IP version 6 (IPv6), the address prefix FF3x::/32 is reserved for source-specific multicast use. This document defines an extension to the Internet network service that applies to datagrams sent to SSM addresses and defines the host and router requirements to support this extension. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="4607"/>
          <seriesInfo name="DOI" value="10.17487/RFC4607"/>
        </reference>
      </references>
      <references anchor="sec-informative-references">
        <name>Informative References</name>
        <reference anchor="BROADCAST-DELAY" target="https://en.wikipedia.org/wiki/Broadcast_delay">
          <front>
            <title>Broadcast Delay</title>
            <author>
              <organization/>
            </author>
            <date>n.d.</date>
          </front>
          <seriesInfo name="Wikipedia" value=""/>
        </reference>
        <reference anchor="EUMETSAT-TERRESTRIAL" target="https://datatracker.ietf.org/meeting/110/materials/slides-110-mboned-eumetsat-multicast-over-the-mbone-00">
          <front>
            <title>EUMETSAT Terrestrial Service</title>
            <author>
              <organization/>
            </author>
            <date>n.d.</date>
          </front>
          <seriesInfo name="IETF110 Proceedings" value=""/>
        </reference>
        <reference anchor="EUMETCast-TERRESTRIAL-over-AMT" target="https://datatracker.ietf.org/meeting/115/materials/slides-115-mboned-eumetcast-over-amt">
          <front>
            <title>EUMETCast Terrestrial over AMT</title>
            <author>
              <organization/>
            </author>
            <date>n.d.</date>
          </front>
          <seriesInfo name="IETF115 Proceedings" value=""/>
        </reference>
        <reference anchor="DVB-MABR" target="https://dvb.org/wp-content/uploads/2022/01/A176r3_Adaptive-Media-Streaming-over-IP-Multicast_Interim-Draft-TS-103-769-v121_March_2023.pdf">
          <front>
            <title>Adaptive media streaming over IP multicast</title>
            <author>
              <organization/>
            </author>
            <date>n.d.</date>
          </front>
          <seriesInfo name="DVB Document A176 Rev.3 (Fourth edition)" value=""/>
        </reference>
        <reference anchor="MAUD" target="https://www.ibc.org/technical-papers/ibc2023-tech-papers-multicast-assisted-unicast-delivery/10235.article">
          <front>
            <title>Multicast-Assisted Unicast Delivery</title>
            <author>
              <organization/>
            </author>
            <date>n.d.</date>
          </front>
          <seriesInfo name="IBC2023 Tech Papers" value=""/>
        </reference>
        <reference anchor="Multicast-Menu" target="https://datatracker.ietf.org/meeting/114/materials/slides-114-mboned-offnet-sourcing-with-the-multicast-menu-01">
          <front>
            <title>Offnet Sourcing with the Multicast Menu</title>
            <author>
              <organization/>
            </author>
            <date>n.d.</date>
          </front>
          <seriesInfo name="IETF114 Proceedings" value=""/>
        </reference>
        <reference anchor="BIER-AMT-Deployment" target="https://datatracker.ietf.org/meeting/112/materials/slides-112-mboned-bier-amt-depolyment-in-geantrare-network-00">
          <front>
            <title>BIER + AMT Deployment in GEANT/RARE Network</title>
            <author>
              <organization/>
            </author>
            <date>n.d.</date>
          </front>
          <seriesInfo name="IETF112 Proceedings" value=""/>
        </reference>
        <reference anchor="RFC9049" target="https://www.rfc-editor.org/info/rfc9049" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.9049.xml">
          <front>
            <title>Path Aware Networking: Obstacles to Deployment (A Bestiary of Roads Not Taken)</title>
            <author fullname="S. Dawkins" initials="S." role="editor" surname="Dawkins"/>
            <date month="June" year="2021"/>
            <abstract>
              <t>This document is a product of the Path Aware Networking Research Group (PANRG). At the first meeting of the PANRG, the Research Group agreed to catalog and analyze past efforts to develop and deploy Path Aware techniques, most of which were unsuccessful or at most partially successful, in order to extract insights and lessons for Path Aware networking researchers.</t>
              <t>This document contains that catalog and analysis.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9049"/>
          <seriesInfo name="DOI" value="10.17487/RFC9049"/>
        </reference>
        <reference anchor="RFC9300" target="https://www.rfc-editor.org/info/rfc9300" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.9300.xml">
          <front>
            <title>The Locator/ID Separation Protocol (LISP)</title>
            <author fullname="D. Farinacci" initials="D." surname="Farinacci"/>
            <author fullname="V. Fuller" initials="V." surname="Fuller"/>
            <author fullname="D. Meyer" initials="D." surname="Meyer"/>
            <author fullname="D. Lewis" initials="D." surname="Lewis"/>
            <author fullname="A. Cabellos" initials="A." role="editor" surname="Cabellos"/>
            <date month="October" year="2022"/>
            <abstract>
              <t>This document describes the data plane protocol for the Locator/ID Separation Protocol (LISP). LISP defines two namespaces: Endpoint Identifiers (EIDs), which identify end hosts; and Routing Locators (RLOCs), which identify network attachment points. With this, LISP effectively separates control from data and allows routers to create overlay networks. LISP-capable routers exchange encapsulated packets according to EID-to-RLOC mappings stored in a local Map-Cache.</t>
              <t>LISP requires no change to either host protocol stacks or underlay routers and offers Traffic Engineering (TE), multihoming, and mobility, among other features.</t>
              <t>This document obsoletes RFC 6830.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="9300"/>
          <seriesInfo name="DOI" value="10.17487/RFC9300"/>
        </reference>
        <reference anchor="RFC7716" target="https://www.rfc-editor.org/info/rfc7716" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.7716.xml">
          <front>
            <title>Global Table Multicast with BGP Multicast VPN (BGP-MVPN) Procedures</title>
            <author fullname="J. Zhang" initials="J." surname="Zhang"/>
            <author fullname="L. Giuliano" initials="L." surname="Giuliano"/>
            <author fullname="E. Rosen" initials="E." role="editor" surname="Rosen"/>
            <author fullname="K. Subramanian" initials="K." surname="Subramanian"/>
            <author fullname="D. Pacella" initials="D." surname="Pacella"/>
            <date month="December" year="2015"/>
            <abstract>
              <t>RFCs 6513, 6514, and others describe protocols and procedures that a Service Provider (SP) may deploy in order to offer Multicast Virtual Private Network (Multicast VPN or MVPN) service to its customers. Some of these procedures use BGP to distribute VPN-specific multicast routing information across a backbone network. With a small number of relatively minor modifications, the same BGP procedures can also be used to distribute multicast routing information that is not specific to any VPN. Multicast that is outside the context of a VPN is known as "Global Table Multicast", or sometimes simply as "Internet multicast". In this document, we describe the modifications that are needed to use the BGP-MVPN procedures for Global Table Multicast.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="7716"/>
          <seriesInfo name="DOI" value="10.17487/RFC7716"/>
        </reference>
        <reference anchor="I-D.ietf-bess-bgp-multicast" target="https://datatracker.ietf.org/doc/html/draft-ietf-bess-bgp-multicast-08" xml:base="https://bib.ietf.org/public/rfc/bibxml3/reference.I-D.ietf-bess-bgp-multicast.xml">
          <front>
            <title>BGP Based Multicast</title>
            <author fullname="Zhaohui (Jeffrey) Zhang" initials="Z. J." surname="Zhang">
              <organization>Juniper Networks</organization>
            </author>
            <author fullname="Lenny Giuliano" initials="L." surname="Giuliano">
              <organization>Juniper Networks</organization>
            </author>
            <author fullname="Keyur Patel" initials="K." surname="Patel">
              <organization>Arrcus</organization>
            </author>
            <author fullname="IJsbrand Wijnands" initials="I." surname="Wijnands">
              <organization>Arrcus</organization>
            </author>
            <author fullname="Mankamana Prasad Mishra" initials="M. P." surname="Mishra">
              <organization>Cisco Systems</organization>
            </author>
            <author fullname="Arkadiy Gulko" initials="A." surname="Gulko">
              <organization>EdwardJones</organization>
            </author>
            <date day="3" month="June" year="2024"/>
            <abstract>
              <t>This document specifies a BGP address family and related procedures that allow BGP to be used for setting up multicast distribution trees. This document also specifies procedures that enable BGP to be used for multicast source discovery, and for showing interest in receiving particular multicast flows. Taken together, these procedures allow BGP to be used as a replacement for other multicast routing protocols, such as PIM or mLDP. The BGP procedures specified here are based on the BGP multicast procedures that were originally designed for use by providers of Multicast Virtual Private Network service. This document also describes how various signaling mechanisms can be used to set up end-to-end inter-region multicast trees.</t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-bess-bgp-multicast-08"/>
        </reference>
        <reference anchor="RFC6513" target="https://www.rfc-editor.org/info/rfc6513" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.6513.xml">
          <front>
            <title>Multicast in MPLS/BGP IP VPNs</title>
            <author fullname="E. Rosen" initials="E." role="editor" surname="Rosen"/>
            <author fullname="R. Aggarwal" initials="R." role="editor" surname="Aggarwal"/>
            <date month="February" year="2012"/>
            <abstract>
              <t>In order for IP multicast traffic within a BGP/MPLS IP VPN (Virtual Private Network) to travel from one VPN site to another, special protocols and procedures must be implemented by the VPN Service Provider. These protocols and procedures are specified in this document. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="6513"/>
          <seriesInfo name="DOI" value="10.17487/RFC6513"/>
        </reference>
        <reference anchor="RFC8279" target="https://www.rfc-editor.org/info/rfc8279" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.8279.xml">
          <front>
            <title>Multicast Using Bit Index Explicit Replication (BIER)</title>
            <author fullname="IJ. Wijnands" initials="IJ." role="editor" surname="Wijnands"/>
            <author fullname="E. Rosen" initials="E." role="editor" surname="Rosen"/>
            <author fullname="A. Dolganow" initials="A." surname="Dolganow"/>
            <author fullname="T. Przygienda" initials="T." surname="Przygienda"/>
            <author fullname="S. Aldrin" initials="S." surname="Aldrin"/>
            <date month="November" year="2017"/>
            <abstract>
              <t>This document specifies a new architecture for the forwarding of multicast data packets. It provides optimal forwarding of multicast packets through a "multicast domain". However, it does not require a protocol for explicitly building multicast distribution trees, nor does it require intermediate nodes to maintain any per-flow state. This architecture is known as "Bit Index Explicit Replication" (BIER). When a multicast data packet enters the domain, the ingress router determines the set of egress routers to which the packet needs to be sent. The ingress router then encapsulates the packet in a BIER header. The BIER header contains a bit string in which each bit represents exactly one egress router in the domain; to forward the packet to a given set of egress routers, the bits corresponding to those routers are set in the BIER header. The procedures for forwarding a packet based on its BIER header are specified in this document. Elimination of the per-flow state and the explicit tree-building protocols results in a considerable simplification.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8279"/>
          <seriesInfo name="DOI" value="10.17487/RFC8279"/>
        </reference>
        <reference anchor="I-D.ietf-spring-sr-replication-segment" target="https://datatracker.ietf.org/doc/html/draft-ietf-spring-sr-replication-segment-19" xml:base="https://bib.ietf.org/public/rfc/bibxml3/reference.I-D.ietf-spring-sr-replication-segment.xml">
          <front>
            <title>SR Replication segment for Multi-point Service Delivery</title>
            <author fullname="Daniel Voyer" initials="D." surname="Voyer">
              <organization>Bell Canada</organization>
            </author>
            <author fullname="Clarence Filsfils" initials="C." surname="Filsfils">
              <organization>Cisco Systems, Inc.</organization>
            </author>
            <author fullname="Rishabh Parekh" initials="R." surname="Parekh">
              <organization>Cisco Systems, Inc.</organization>
            </author>
            <author fullname="Hooman Bidgoli" initials="H." surname="Bidgoli">
              <organization>Nokia</organization>
            </author>
            <author fullname="Zhaohui (Jeffrey) Zhang" initials="Z. J." surname="Zhang">
              <organization>Juniper Networks</organization>
            </author>
            <date day="28" month="August" year="2023"/>
            <abstract>
              <t>This document describes the Segment Routing Replication segment for Multi-point service delivery. A Replication segment allows a packet to be replicated from a Replication node to Downstream nodes.</t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-spring-sr-replication-segment-19"/>
        </reference>
        <reference anchor="RFC8815" target="https://www.rfc-editor.org/info/rfc8815" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.8815.xml">
          <front>
            <title>Deprecating Any-Source Multicast (ASM) for Interdomain Multicast</title>
            <author fullname="M. Abrahamsson" initials="M." surname="Abrahamsson"/>
            <author fullname="T. Chown" initials="T." surname="Chown"/>
            <author fullname="L. Giuliano" initials="L." surname="Giuliano"/>
            <author fullname="T. Eckert" initials="T." surname="Eckert"/>
            <date month="August" year="2020"/>
            <abstract>
              <t>This document recommends deprecation of the use of Any-Source Multicast (ASM) for interdomain multicast. It recommends the use of Source-Specific Multicast (SSM) for interdomain multicast applications and recommends that hosts and routers in these deployments fully support SSM. The recommendations in this document do not preclude the continued use of ASM within a single organization or domain and are especially easy to adopt in existing deployments of intradomain ASM using PIM Sparse Mode (PIM-SM).</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="229"/>
          <seriesInfo name="RFC" value="8815"/>
          <seriesInfo name="DOI" value="10.17487/RFC8815"/>
        </reference>
        <reference anchor="RFC5740" target="https://www.rfc-editor.org/info/rfc5740" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.5740.xml">
          <front>
            <title>NACK-Oriented Reliable Multicast (NORM) Transport Protocol</title>
            <author fullname="B. Adamson" initials="B." surname="Adamson"/>
            <author fullname="C. Bormann" initials="C." surname="Bormann"/>
            <author fullname="M. Handley" initials="M." surname="Handley"/>
            <author fullname="J. Macker" initials="J." surname="Macker"/>
            <date month="November" year="2009"/>
            <abstract>
              <t>This document describes the messages and procedures of the Negative- ACKnowledgment (NACK) Oriented Reliable Multicast (NORM) protocol. This protocol can provide end-to-end reliable transport of bulk data objects or streams over generic IP multicast routing and forwarding services. NORM uses a selective, negative acknowledgment mechanism for transport reliability and offers additional protocol mechanisms to allow for operation with minimal a priori coordination among senders and receivers. A congestion control scheme is specified to allow the NORM protocol to fairly share available network bandwidth with other transport protocols such as Transmission Control Protocol (TCP). It is capable of operating with both reciprocal multicast routing among senders and receivers and with asymmetric connectivity (possibly a unicast return path) between the senders and receivers. The protocol offers a number of features to allow different types of applications or possibly other higher-level transport protocols to utilize its service in different ways. The protocol leverages the use of FEC-based (forward error correction) repair and other IETF Reliable Multicast Transport (RMT) building blocks in its design. This document obsoletes RFC 3940. [STANDARDS-TRACK]</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="5740"/>
          <seriesInfo name="DOI" value="10.17487/RFC5740"/>
        </reference>
        <reference anchor="RFC8085" target="https://www.rfc-editor.org/info/rfc8085" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.8085.xml">
          <front>
            <title>UDP Usage Guidelines</title>
            <author fullname="L. Eggert" initials="L." surname="Eggert"/>
            <author fullname="G. Fairhurst" initials="G." surname="Fairhurst"/>
            <author fullname="G. Shepherd" initials="G." surname="Shepherd"/>
            <date month="March" year="2017"/>
            <abstract>
              <t>The User Datagram Protocol (UDP) provides a minimal message-passing transport that has no inherent congestion control mechanisms. This document provides guidelines on the use of UDP for the designers of applications, tunnels, and other protocols that use UDP. Congestion control guidelines are a primary focus, but the document also provides guidance on other topics, including message sizes, reliability, checksums, middlebox traversal, the use of Explicit Congestion Notification (ECN), Differentiated Services Code Points (DSCPs), and ports.</t>
              <t>Because congestion control is critical to the stable operation of the Internet, applications and other protocols that choose to use UDP as an Internet transport must employ mechanisms to prevent congestion collapse and to establish some degree of fairness with concurrent traffic. They may also need to implement additional mechanisms, depending on how they use UDP.</t>
              <t>Some guidance is also applicable to the design of other protocols (e.g., protocols layered directly on IP or via IP-based tunnels), especially when these protocols do not themselves provide congestion control.</t>
              <t>This document obsoletes RFC 5405 and adds guidelines for multicast UDP usage.</t>
            </abstract>
          </front>
          <seriesInfo name="BCP" value="145"/>
          <seriesInfo name="RFC" value="8085"/>
          <seriesInfo name="DOI" value="10.17487/RFC8085"/>
        </reference>
        <reference anchor="RFC8777" target="https://www.rfc-editor.org/info/rfc8777" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.8777.xml">
          <front>
            <title>DNS Reverse IP Automatic Multicast Tunneling (AMT) Discovery</title>
            <author fullname="J. Holland" initials="J." surname="Holland"/>
            <date month="April" year="2020"/>
            <abstract>
              <t>This document updates RFC 7450, "Automatic Multicast Tunneling" (or AMT), by modifying the relay discovery process. A new DNS resource record named AMTRELAY is defined for publishing AMT relays for source-specific multicast channels. The reverse IP DNS zone for a multicast sender's IP address is configured to use AMTRELAY resource records to advertise a set of AMT relays that can receive and forward multicast traffic from that sender over an AMT tunnel. Other extensions and clarifications to the relay discovery process are also defined.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="8777"/>
          <seriesInfo name="DOI" value="10.17487/RFC8777"/>
        </reference>
        <reference anchor="I-D.ietf-ipsecme-g-ikev2" target="https://datatracker.ietf.org/doc/html/draft-ietf-ipsecme-g-ikev2-11" xml:base="https://bib.ietf.org/public/rfc/bibxml3/reference.I-D.ietf-ipsecme-g-ikev2.xml">
          <front>
            <title>Group Key Management using IKEv2</title>
            <author fullname="Valery Smyslov" initials="V." surname="Smyslov">
              <organization>ELVIS-PLUS</organization>
            </author>
            <author fullname="Brian Weis" initials="B." surname="Weis">
              <organization>Independent</organization>
            </author>
            <date day="26" month="February" year="2024"/>
            <abstract>
              <t>This document presents an extension to the Internet Key Exchange version 2 (IKEv2) protocol for the purpose of a group key management. The protocol is in conformance with the Multicast Security (MSEC) key management architecture, which contains two components: member registration and group rekeying. Both components are required for a GCKS (Group Controller/Key Server) to provide authorized Group Members (GMs) with IPsec group security associations. The group members then exchange IP multicast or other group traffic as IPsec packets. This document obsoletes RFC 6407. This documents also updates RFC 7296 by renaming a transform type 5 from "Extended Sequence Numbers (ESN)" to the "Replay Protection (RP)" and by renaming IKEv2 authentication method 0 from "Reserved" to "NONE".</t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-ietf-ipsecme-g-ikev2-11"/>
        </reference>
        <reference anchor="I-D.jholland-quic-multicast" target="https://datatracker.ietf.org/doc/html/draft-jholland-quic-multicast-05" xml:base="https://bib.ietf.org/public/rfc/bibxml3/reference.I-D.jholland-quic-multicast.xml">
          <front>
            <title>Multicast Extension for QUIC</title>
            <author fullname="Jake Holland" initials="J." surname="Holland">
              <organization>Akamai Technologies, Inc.</organization>
            </author>
            <author fullname="Lucas Pardue" initials="L." surname="Pardue"/>
            <author fullname="Max Franke" initials="M." surname="Franke">
              <organization>TU Berlin</organization>
            </author>
            <date day="7" month="July" year="2024"/>
            <abstract>
              <t>This document defines a multicast extension to QUIC to enable the efficient use of multicast-capable networks to send identical data streams to many clients at once, coordinated through individual unicast QUIC connections.</t>
            </abstract>
          </front>
          <seriesInfo name="Internet-Draft" value="draft-jholland-quic-multicast-05"/>
        </reference>
        <reference anchor="RFC4609" target="https://www.rfc-editor.org/info/rfc4609" xml:base="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.4609.xml">
          <front>
            <title>Protocol Independent Multicast - Sparse Mode (PIM-SM) Multicast Routing Security Issues and Enhancements</title>
            <author fullname="P. Savola" initials="P." surname="Savola"/>
            <author fullname="R. Lehtonen" initials="R." surname="Lehtonen"/>
            <author fullname="D. Meyer" initials="D." surname="Meyer"/>
            <date month="October" year="2006"/>
            <abstract>
              <t>This memo describes security threats for the larger (intra-domain or inter-domain) multicast routing infrastructures. Only Protocol Independent Multicast - Sparse Mode (PIM-SM) is analyzed, in its three main operational modes: the traditional Any-Source Multicast (ASM) model, the source-specific multicast (SSM) model, and the ASM model enhanced by the Embedded Rendezvous Point (Embedded-RP) group-to-RP mapping mechanism. This memo also describes enhancements to the protocol operations that mitigate the identified threats. This memo provides information for the Internet community.</t>
            </abstract>
          </front>
          <seriesInfo name="RFC" value="4609"/>
          <seriesInfo name="DOI" value="10.17487/RFC4609"/>
        </reference>
      </references>
    </references>
  </back>
  <!-- ##markdown-source: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-->

</rfc>
