﻿<?xml version="1.0" encoding="UTF-8"?>
<?xml-model href="rfc7991bis.rnc"?>
<!DOCTYPE rfc [
  <!ENTITY nbsp "&#160;">
]>
<?rfc toc="yes"?>
<?rfc tocompact="yes"?>
<?rfc tocdepth="3"?>
<?rfc tocindent="yes"?>
<?rfc symrefs="yes"?>
<?rfc sortrefs="yes"?>
<?rfc comments="yes"?>
<?rfc inline="yes"?>
<?rfc compact="yes"?>
<?rfc subcompact="no"?>
<rfc
  xmlns:xi="http://www.w3.org/2001/XInclude"
  category="std"
  docName="draft-ietf-pim-ipv6-zeroconf-assignment-11"
  ipr="trust200902"
  submissionType="IETF"
  consensus="true">

  <front>
    <title abbrev="Zeroconf Assignment of IPv6 Mcast Addrs">Zero-Configuration Assignment of IPv6 Multicast Addresses Using mDNS</title>

    <author fullname="Nate Karstens" initials="N" surname="Karstens">
      <organization abbrev="Garmin">Garmin International, Inc.</organization>
      <address>
        <postal>
          <street>1200 E. 151st St.</street>
          <city>Olathe</city>
          <region>KS</region>
          <code>66062-3426</code>
          <country>United States of America</country>
        </postal>
        <email>nate.karstens@gmail.com</email>
      </address>
    </author>

    <author fullname="Dino Farinacci" initials="D" surname="Farinacci">
      <organization>lispers.net</organization>
      <address>
        <postal>
          <city>San Jose</city>
          <region>CA</region>
          <country>United States of America</country>
        </postal>
        <email>farinacci@gmail.com</email>
      </address>
    </author>

    <author fullname="Mike McBride" initials="M" surname="McBride">
      <organization>Futurewei</organization>
      <address>
        <postal>
          <country>United States of America</country>
        </postal>
        <email>michael.mcbride@futurewei.com</email>
      </address>
    </author>

    <date day="1" month="September" year="2026"/>

    <abstract>
      <t>This document describes a zero-configuration protocol for dynamically assigning IPv6 multicast addresses that are unique at the link-layer. Applications randomly assign multicast group IDs from a specified range and prevent collisions by using Multicast DNS (mDNS) to publish resource records under a new "eth-addr.arpa" domain. This protocol satisfies all of the criteria listed in RFC 10019.</t>
    </abstract>
  </front>

  <middle>
    <section title="Introduction">
      <t><xref target="RFC10019"/> includes a problem statement and requirements for a zero-configuration method for dynamically assigning multicast addresses. This document describes a process that fulfills these requirements by having applications randomly assign IPv6 multicast group IDs from a specified range and using mDNS <xref target="RFC6762"/> to prevent collisions in both IPv6 and link-layer addresses.</t>

      <t>Note that DNS-based Service Discovery (DNS-SD) <xref target="RFC6763"/> uses several different DNS resource record types, published using either Unicast or Multicast DNS, to facilitate service discovery. This document uses a single DNS resource record type (PTR), published using Multicast DNS (mDNS), to coordinate IPv6 multicast address assignment in a zero-configuration environment. The DNS resource records in this protocol may be published alongside records for other domain name services, such as DNS-SD, or they may be published alone. mDNS is used rather than a new protocol with the expectation that functionality for address assignment can be achieved using existing mDNS implementations.</t>

      <t>The protocol described in this document is well-suited for networks that rely on IPv6 multicast and already deploy mDNS. This document makes IANA assignments for use on Ethernet and other protocols based on the IEEE 802 architecture. It may be adapted for use with other link layers, but that is outside the scope of this document.</t>

      <t>As mentioned in <xref target="RFC6762" sectionFormat="comma" section="21"/>, mDNS is an algorithm that assumes cooperating participants. Due to its reliance on mDNS, this assumption applies to the protocol described in this document as well.</t>

      <section anchor="requirements">
        <name>Requirements Language</name>
        <t>The key words "MUST", "MUST NOT", "REQUIRED", "SHALL", "SHALL NOT", "SHOULD", "SHOULD NOT", "RECOMMENDED", "NOT RECOMMENDED", "MAY", and "OPTIONAL" in this document are to be interpreted as described in BCP 14 <xref target="RFC2119"/> <xref target="RFC8174"/> when, and only when, they appear in all capitals, as shown here.</t>
      </section>
    </section>

    <section title="Procedure">
      <t>This section describes how an application dynamically generates an IPv6 multicast address, uses mDNS to coordinate use of that address with other applications on the network, and begins transmitting its multicast stream.</t>

      <t>Because this protocol is focused specifically on allocating IPv6 multicast addresses, applications MUST send and receive mDNS messages using the IPv6 multicast address for mDNS. In order to be compatible with existing mDNS implementations that require IPv4, applications MAY also send and receive mDNS messages using the IPv4 multicast address for mDNS.</t>

      <t>mDNS implementations used with this protocol MUST coordinate with all applications using the same mDNS implementation, as well as with other mDNS implementations running on the same host. Such coordination ensures that conflicts arising from independently generated, identical group IDs are detected during the probing phase, allowing the affected applications to select alternate group IDs. Note that coordination between mDNS implementations running on the same host tends to happen naturally if transmitted multicast packets are looped back into the receive pipeline.</t>

      <t>The process an application uses from initialization to transmitting a multicast stream is divided into a series of steps, outlined below:</t>

      <section title="Address Generation" anchor="address-generation">
        <t>When an application is preparing to transmit a multicast stream, it SHALL begin by generating three multicast identifiers:</t>
        <ol>
          <li>
            <t>Multicast Group ID</t>
            <t>The first identifier is a multicast group ID randomly selected from the range <tt>0x90000000-0x9FFFFFFF</tt>. IANA is REQUESTED to assign this range from the "Dynamic Multicast Group IDs" registry (see <xref target="iana" format="title"/>).</t>
          </li>
          <li>
            <t>IPv6 Multicast Address</t>
            <t>This is a link-scoped IPv6 multicast address, calculated by combining the multicast group ID with the Interface Identifier (IID) of the intended source address for the multicast stream, according to the format given in <xref target="RFC4489" sectionFormat="comma" section="3"/>.</t>
          </li>
          <li>
            <t>Multicast Ethernet Address</t>
            <t>The final address is the corresponding multicast Ethernet address that will be used to transmit the data. This is calculated from the IPv6 multicast address, as described in <xref target="RFC2464" sectionFormat="comma" section="7"/>.</t>
          </li>
        </ol>

        <t>For example, consider a source address of <tt>fe80::a12:34ff:fe56:7890</tt>. If the selected group ID is <tt>9abc:def0</tt>, then the calculated IPv6 multicast address would be <tt>ff32:ff:a12:34ff:fe56:7890:9abc:def0</tt> and the multicast Ethernet address would be <tt>33:33:9A:BC:DE:F0</tt>.</t>
      </section>

      <section title="Domain Name Assembly">
        <t>Once the multicast Ethernet address is determined, the application SHALL use this to assemble a domain name by encoding nibbles from the multicast Ethernet address as a sequence of lower-case hexadecimal digits, separated by dots, in reverse order, and ending with the suffix <tt>".eth-addr.arpa"</tt> (a new domain in the .arpa registry).</t>

        <t>Considering the example in <xref target="address-generation" format="title"/>, the resulting domain name would be <tt>"0.f.e.d.c.b.a.9.3.3.3.3.eth-addr.arpa"</tt>.</t>

        <t>Note that this is similar to how DNS resource records used for reverse mapping IPv6 addresses are created (see <xref target="RFC3596" sectionFormat="comma" section="2.5"/>). As such, this document reserves the domain <tt>"9.3.3.3.3.eth-addr.arpa"</tt> as a special-use domain in the "Special-Use Domain Names" registry (see <xref target="iana" format="title"/>). The <tt>"3.3.3.3"</tt> component of this is taken from the <tt>33:33</tt> prefix used for mapping IPv6 multicast addresses to Ethernet multicast addresses and the <tt>"9"</tt> component indicates a multicast group ID in the range <tt>0x90000000-0x9FFFFFFF</tt>.</t>
      </section>

      <section title="Record Construction">
        <t>Once the domain name is assembled, the application SHALL construct a unique PTR record using that domain name. The <tt>PTRDNAME</tt> field of this record SHALL consist of a unique application identifier, in the form of one or more DNS labels, followed by the device's host name (for example, "application.example.local."). Integrating a unique identifier in this manner allows for multiple applications to be on the same host.</t>

        <t>Note that A/AAAA records may also be published for this same host name (for example, "example.local."), though this is not a requirement for this design.</t>
      </section>

      <section title="Probing" anchor="probing">
        <t>After the PTR record is constructed, the application SHALL use the mDNS probing algorithm described in <xref target="RFC6762" sectionFormat="comma" section="8.1"/> to probe for a PTR record with the same name.</t>

        <t>Due to the large range of values for group IDs, it is unlikely that two applications would randomly choose the same group ID and begin probing at the same time. However, in that event, the conflict SHALL be resolved according to the procedure in <xref target="RFC6762" sectionFormat="comma" section="8.2"/>. The loser of the conflict SHALL return to <xref target="address-generation" format="title"/> and choose a different group ID.</t>
      </section>

      <section title="Announcing and Responding">
        <t>If the probing algorithm started in <xref target="probing" format="title"/> completes without any conflict, then the application SHALL announce the PTR record according to the procedure in <xref target="RFC6762" sectionFormat="comma" section="8.3"/> and SHALL respond to queries for the PTR record according to <xref target="RFC6762" sectionFormat="comma" section="6"/>.</t>
      </section>

      <section title="Conflict Detection">
        <t>The application SHALL start a continuous query for the PTR record according to <xref target="RFC6762" sectionFormat="comma" section="5.2"/>. This helps detect a conflict in the event of a network partition and repair (see <xref target="collision-detection-after-partition-repair" format="title"/>). If a conflict is detected at any time, then the application SHALL stop transmitting that multicast stream and return to <xref target="address-generation" format="title"/>, choosing a new group ID. As before, this new group ID is also retained in persistent storage, overwriting any group ID previously saved for this multicast stream.</t>

        <t>The host network stack may optionally monitor the network for traffic that uses the same destination multicast Ethernet address, but a different destination multicast IPv6 address. If this is detected, then the application SHALL respond the same as with a collision.</t>
      </section>

      <section title="Transmitting">
        <t>Once the PTR record is advertised and the continuous query started, the host MAY then begin transmitting multicast data using the multicast addresses from <xref target="address-generation" format="title"/>.</t>
      </section>

      <section title="Optimization">
        <t>The application SHALL retain the group ID value in persistent storage and use it the next time the multicast stream is transmitted. This allows the network to quickly settle on a configuration that will never have another collision as long as the network is unchanged.</t>
      </section>

      <section title="Defending">
        <t>The application SHALL defend the PTR record from probes as described in <xref target="RFC6762" sectionFormat="comma" section="6"/>.</t>
      </section>
    </section>

    <section title="Veto Records">
      <t>Veto records are used to address collisions that occur in the network infrastructure (for example, the address table in a switch is discussed in <xref target="RFC10019" sectionFormat="comma" section="2"/>).</t>

      <t>When a network infrastructure component detects a collision it cannot resolve, it triggers a conflict with the application by publishing a veto record. A veto record is a unique PTR record using the string generated for the address as its name and the <tt>PTRDNAME</tt> field set to the string <tt>"veto"</tt>, formatted as a DNS label. The veto record is published without probing.</t>

      <t>Applications SHALL respond to the conflict the same as to a collision, eventually resulting in a new group ID being acquired. As before, the application retains its new group ID in persistent storage, ensuring the same conflict is not repeated in the future. As such, it is unnecessary to store vetoes to persistent storage. Veto records may be deleted as soon as the conflict is resolved.</t>
    </section>

    <section title="Use on Networks with Multiple Subnets" anchor="scopes">
      <t>The protocol can be extended across multiple subnets if PTR records are distributed between subnets (for example, by using an mDNS reflector or the Discovery Proxy described in <xref target="RFC8766"/>). Note that the stream MUST use a unicast-prefix based IPv6 multicast address (<xref target="RFC3306"/>), as the link-scoped IPv6 multicast address used above is scoped to the local link.</t>

      <t>The protocol's reliance on cooperating hosts (see <xref target="security"/>) makes it unsuited for use on the global Internet. <xref target="RFC8815"/> recommends Source-Specific Multicast in this environment.</t>
    </section>

    <section title="Evaluation of Solution">
      <t><xref target="RFC10019"/> contains a list of criteria to evaluate potential solutions. The following is an analysis of how this protocol satisfies the requirements listed in that document:</t>

      <ol type="[REQ-%d]" spacing="normal" indent="9">
        <li>Unique Address Assignment: Use of the protocol results in a unique address being assigned to the multicast group at both the network and link layers.</li>
        <li>Resilience to Single Points of Failure: The protocol uses mDNS, which uses a peer-to-peer communication model and so has no single points of failure, as long as network connectivity is not interrupted.</li>
        <li>Zero User Configuration: The protocol operates without requiring user or administrator configuration.</li>
        <li>Coexistence with Multicast Address Allocation Solutions: This document assigns a range of group IDs from the "Dynamic Multicast Group IDs" registry for use with the protocol, which allows the protocol to coexist with other multicast IP address allocation solutions (see <xref target="RFC10028"/>).</li>
        <li>Single-Subnet Operation: The protocol supports operation within a single IPv6 subnet.</li>
        <li>No External Connectivity: The protocol does not require Internet access or connectivity to external infrastructure.</li>
        <li>Supports Multiple Host Applications: Multiple applications on the same host are supported by 1) incorporating a unique application identifier into the PTR record's <tt>PTRDNAME</tt> field and by 2) requiring the mDNS implementation(s) on a host to facilitate interaction between those applications.</li>
        <li>Collision Detection and Resolution: The protocol includes a mechanism to detect and resolve multicast address collisions at both the network and link layers. See <xref target="collision-detection-after-partition-repair"/> for additional discussion about detecting and resolving collisions after a network partition is repaired.</li>
      </ol>

      <t>The following is an analysis of how this protocol satisfies the desirable characteristics listed in <xref target="RFC10019"/>:</t>

      <ol type="[CONS-%d]" indent="10">
        <li>Multi-Subnet Support: The protocol can operate across multiple subnets (see <xref target="scopes"/>).</li>
        <li>Standards Compatibility: The protocol uses existing protocols without requiring any changes.</li>
        <li>Cross-Platform Availability: The protocol uses mDNS, which is implemented on many host platforms and operating systems.</li>
        <li>Minimal Dependency on Manufacturing Data: The protocol does not rely on pre-loaded configuration or device-specific manufacturing data.</li>
        <li>Low Overhead: The protocol uses mDNS, which is designed to minimize the volume and frequency of network traffic generated during normal operation.</li>
        <li>Advertisement: This document does not prescribe any mechanism for advertising the IPv6 address used for the multicast stream. However, because the protocol already uses mDNS, a natural option for doing so would be to use DNS-SD (<xref target="RFC6763"/>) to advertise a "_udp" service and publish the address used for the multicast stream in a TXT record.</li>
        <li>Network Topology: Veto records ensure that the protocol works regardless of the underlying topology and adjacencies.</li>
      </ol>

      <section title="Collision Detection After Partition Repair" anchor="collision-detection-after-partition-repair">
        <t>A network partition occurs when one part of a network is temporarily unable to communicate with another part of the network. This may happen, for example, if a switch goes offline. A partition repair happens when communication is fully restored to all parts of the network.</t>

        <t>Because mDNS is designed to be a low-bandwidth protocol, it can take a signficant amount of time to detect a resource record collision after a network partition is repaired. This is not a concern on networks where all multicast streams are established before any likely partition event because all group IDs will have been selected and stored for future use.</t>

        <t>It is a greater concern on networks where multicast streams may be established at any time. Deployments on these networks may consider engaging supplemental detection and resolution mechanisms. Specifics of this functionality are open to future enhancement, but are considered out-of-scope for this document.</t>
      </section>
    </section>

    <section title="IANA Considerations" anchor="iana">
      <t>IANA should allocate a block of group IDs from the "Dynamic Multicast Group IDs" registry in the "IPv6 Multicast Address Space" registry group that was created by <xref target="RFC10028"/>. The range of this block should be <tt>0x90000000-0x9FFFFFFF</tt> and the description should be "Zero-Configuration Assignment of IPv6 Multicast Addresses Using mDNS".</t>

      <t>IANA manages two registries that contain entries used for mapping addresses to names. This document introduces <tt>"eth-addr.arpa"</tt> for use in a similar capacity and so requests that it be added to these registries as well.</t>

      <t>The domain <tt>"eth-addr.arpa"</tt> should be registered in the .arpa registry (https://www.iana.org/domains/arpa). The usage should be "For mapping Ethernet addresses to local domain names for Zero-Configuration Assignment of IPv6 Multicast Addresses" and the reference should be [I-D.draft-ietf-pim-ipv6-zeroconf-assignment].</t>

      <t>The special-use domain <tt>"9.3.3.3.3.eth-addr.arpa."</tt> should be registered in the "Special-Use Domain Names" registry (https://www.iana.org/assignments/special-use-domain-names). This domain should not be delegated.</t>

      <section title="Domain Name Reservation Considerations">
        <t><xref target="RFC6761" sectionFormat="comma" section="5"/> includes a list of questions that must be answered when reserving a new Special-Use Domain Name. The answers to these questions for the <tt>"9.3.3.3.3.eth-addr.arpa"</tt> Special-Use Domain, and any names falling within this domain, are as follows:</t>

        <ol>
          <li>Users are free to use these names as they would for any other reverse mapping domain. Because this mapping is closely-related to the local network, users SHOULD be aware that these names are likely to yield different results on different networks.</li>
          <li>Application software SHOULD recognize these names as a reverse mapping domain and MAY associate them with the protocol described in this document.</li>
          <li>Name resolution APIs and libraries SHOULD recognize these names as being used exclusively with mDNS, and so SHOULD NOT send queries for these names to their configured unicast DNS server(s).</li>
          <li>Caching DNS servers SHOULD recognize these names as being used exclusively with mDNS, SHOULD NOT attempt to look up resource records associated with these names, and SHOULD respond to any query with NXDOMAIN.</li>
          <li>Authoritative DNS servers SHOULD recognize these names as being used exclusively with mDNS and SHOULD respond to any query with NXDOMAIN.</li>
          <li>DNS server operators MUST NOT configure an authoritative DNS server to answer queries for these names.</li>
          <li>DNS Registries/Registrars MUST NOT register 9.3.3.3.3.eth-addr.arpa names.</li>
        </ol>
      </section>
    </section>

    <section title="Implementation Status">
      <t>Note to RFC Editor: please remove this entire section before publication, as well as the reference to <xref target="RFC7942"/>.</t>

      <t>This section records the status of known implementations of the protocol defined by this specification at the time of posting of this Internet-Draft, and is based on a proposal described in <xref target="RFC7942"/>.  The description of implementations in this section is intended to assist the IETF in its decision processes in progressing drafts to RFCs.  Please note that the listing of any individual implementation here does not imply endorsement by the IETF.  Furthermore, no effort has been spent to verify the information presented here that was supplied by IETF contributors. This is not intended as, and must not be construed to be, a catalog of available implementations or their features.  Readers are advised to note that other implementations may exist.</t>

      <t>According to <xref target="RFC7942"/>, "this will allow reviewers and working groups to assign due consideration to documents that have the benefit of running code, which may serve as evidence of valuable experimentation and feedback that have made the implemented protocols more mature.  It is up to the individual working groups to use this information as they see fit".</t>

      <t>A prototype for Linux using Avahi is available at <eref target="https://github.com/nkarstens/mdns-zeroconf-mcast/" brackets="angle"/>. The main program in this repository allocates a single IPv6 multicast address from a specified group ID. The repository also contains a README with instructions on how to simulate a network partition.</t>

      <t>This technology has been implemented in production in Garmin's GPSMAP 9000 series of marine multifunction displays.</t>
    </section>

    <section title="Security Considerations" anchor="security">
      <t>As with mDNS itself, this protocol only works in environments where all hosts are cooperating. A bad actor could prevent an application from being able to use this protocol to allocate a multicast address. In turn, this would prevent the application from being able to transmit its multicast stream, denying service to the multicast group.</t>
    </section>
  </middle>

  <back>
    <references title="Normative References">
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.2119.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.2464.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.3306.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.4489.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.6761.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.6762.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.8174.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.10028.xml"/>
    </references>
    <references title="Informative References">
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.3596.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.6763.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.7942.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.8766.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.8815.xml"/>
      <xi:include href="https://bib.ietf.org/public/rfc/bibxml/reference.RFC.10019.xml"/>
    </references>

    <section title="Acknowledgement" numbered="false">
      <t>Special thanks to the National Marine Electronics Association for their contributions in developing marine industry standards and their support for this work.</t>

      <t>Thanks also to the members of the PIM working group for their early brainstorming sessions and review of this draft, to Esko Dijk for his review of the draft, and to Gunter Van de Velde for his review and suggestions.</t>
    </section>
  </back>
</rfc>
