Protocol reference

RFC coverage for modern web traffic.

Interceptor tracks standards support explicitly so testers can distinguish full runtime behavior, protocol primitives, and diagnostic-only awareness.

HTTP

HTTP core

RFC 9110, RFC 9111, RFC 9112, and RFC 3986 cover semantics, caching, HTTP/1.1, and URI handling.

H2

HTTP/2

RFC 9113 and RFC 7541 cover HTTP/2 frames, streams, SETTINGS, flow-control accounting, and HPACK.

H3

HTTP/3

RFC 9114 and RFC 9204 cover HTTP/3 frames, h3 ALPN, SETTINGS validation, safe frame serialization, and hardened QPACK field representation.

QUIC

QUIC

RFC 9000, RFC 9001, and RFC 9002 are tracked for QUIC transport, TLS, and congestion-control expectations.

Implemented or recognized

Standards map

24 references

RFC 9110 - HTTP Semantics

Core request and response semantics, methods, status codes, and field behavior.

RFC 9111 - HTTP Caching

Cache-related passive observations and header analysis.

RFC 9112 - HTTP/1.1

Proxy parsing, forwarding, chunked bodies, trailers, and connection handling.

RFC 3986 - URI Generic Syntax

Authority, path, query, and URL processing.

RFC 9113 - HTTP/2

Frames, streams, SETTINGS, priorities, and client-side HTTP/2 bridge behavior.

RFC 7541 - HPACK

Header compression and decompression for HTTP/2.

RFC 9218 - Extensible Priorities

Priority header and reprioritization diagnostics.

RFC 8441 - WebSocket over HTTP/2

Extended CONNECT WebSocket bootstrapping over HTTP/2.

RFC 9000 - QUIC Transport

QUIC-aware modeling for HTTP/3 features.

RFC 9001 - QUIC TLS

TLS and ALPN implications for QUIC/HTTP/3.

RFC 9002 - QUIC Recovery

Tracked as part of complete QUIC runtime expectations.

RFC 9114 - HTTP/3

HTTP/3 frame and SETTINGS codec support with QUIC varint bounds, reserved SETTINGS rejection, and safe serializers.

RFC 9204 - QPACK

HTTP/3 field representation with Huffman literals, dynamic references, safe serialization, pseudo-header validation, and integer bounds checks.

RFC 9220 - WebSocket over HTTP/3

Extended CONNECT WebSocket semantics for HTTP/3 with CONNECT, :protocol websocket, :scheme https, absolute :path, and :authority validation.

RFC 9297 - HTTP Datagrams and Capsules

Capsule parsing, safe capsule serialization, truncated payload rejection, and HTTP/3 datagram payload mapping.

RFC 9298 - CONNECT-UDP

CONNECT-UDP and MASQUE-like UDP tunnel primitives including HTTPS scheme checks, well-known target validation, IPv6 zone identifiers, and context-id bounds.

draft-ietf-webtrans-http3 - WebTransport

WebTransport over HTTP/3 session, stream, datagram, and capsule primitives with SETTINGS dependency validation, initial limit checks, and stream varint hardening.

RFC 8446 - TLS 1.3

Runtime TLS support through OpenSSL; MITM remains opt-in.

RFC 6066 - TLS Extensions / SNI

SNI diagnostics and certificate generation context.

RFC 7301 - ALPN

ALPN diagnostics and protocol negotiation visibility.

RFC 7838 - Alt-Svc

Detects h3 advertisements in response headers.

RFC 9460 - SVCB and HTTPS RR

DNS HTTPS resource record awareness for ALPN, ECH, and h3 advertisements.

RFC 9848 - ECH with DNS Service Bindings

ECH parameter awareness in HTTPS/SVCB records.

RFC 9849 - Encrypted ClientHello

Outer ClientHello ECH detection without decryption or bypass.

Support level

Explicit boundaries.

Some entries are complete runtime features, some are hardened codecs or protocol primitives, and some are diagnostics. Interceptor records these boundaries deliberately so traffic analysis stays accurate and auditable.

View product features