Skip to main content

Topic

Digital Identity and Credentials

Within the Topic facet, Digital Identity and Credentials topic intelligence connects articles that share a specific subject, signal focus, or monitoring theme. The page gives readers a richer path through related reporting, source evidence, market actors, and infrastructure implications, with enough context to understand why the topic matters across company movements, governance decisions, regional exposure, and operational risk. Readers can compare recurring signals, affected organisations, public evidence, market context, service continuity, procurement, competition, compliance, and strategic planning questions behind the subject instead of stopping at a thin list of matching articles. It explains what the topic covers, which infrastructure actors or policies are involved, what evidence supports the coverage, and why the subject may matter for operators, customers, investors, and policy readers.

AI editorial illustration of one cyan token-status cell selected in a long protected list, with four separate timing arcs, an issuer, a delivery cache, a decision gate and an external evidence receipt.

IETF

A Token Status Bit Is Not a Revocation Timeline

A relying party reads one compact value and declines a credential. The decision may be correct. Yet the bit alone cannot say when the underlying state changed, who authorised that change, when the list exposed it, which cached copy was consulted or why this application treated…

Sep 12, 2026
A complete two-part glass context seal receives a cyan source bead and an amber target bead, while a lower one-way seal remains missing the target half.

History

The Target Added No Random Value. The Context ID Was Not a Bilateral Receipt: RFC 2025

A context identifier can look like proof that two peers jointly established something new. RFC 2025 makes the harder question unavoidable: whose fresh value actually went into that identifier?

Sep 11, 2026
A protected blue conduit ends at a receiver that creates three separate amber-sealed custody artifacts for extraction, storage and forwarding.

IETF

The Channel Ended. The Claims Kept Moving: RFC 9781 and the UCCS Source Break

A verifier can receive an authenticated, integrity-protected claims set and still lose the basis for that assurance one function call later. RFC 9781 makes this boundary unusually concrete: tag 601 identifies an unprotected CWT Claims Set whose protection belongs to a channel…

Sep 11, 2026
Six distinct sealed payload forms approach one routing aperture before a separate sequence of evidence chambers reaches a final decision threshold.

IETF

The Header Found the Verifier. It Did Not Earn the Decision: RFC 9782

An API gateway can read `application/eat+cwt`, select a handler and produce a clean routing log before anyone has established what the bytes contain. RFC 9782 makes that first step interoperable. Its importance lies equally in what it refuses to collapse: a media type can name a…

Sep 11, 2026
A cyan status aperture illuminates only one contiguous glass message envelope while a forwarded capsule, detached attachments and an aging archive ring remain separate.

IETF

The Message Had One Security Badge. Its Layers Did Not Share One Status: RFC 9787

The comforting part of an encrypted-mail interface is the badge. The difficult part is deciding exactly which bytes are entitled to it. RFC 9787 makes that boundary explicit: one received message gets one cryptographic summary, calculated only from the contiguous protection…

Sep 11, 2026
An illustrative control enclosure shows four separate access channels, with one interrupted at an amber gate linked to a generic identity symbol while neighbouring channels continue.

Global Cloud Services Trends

Orchid Security's agent kill switch needs an outcome test

New identity controls promise a way to intervene when AI agents stray beyond their remit. Buyers still need to distinguish a recorded response from evidence that the relevant authority has actually ended.

Sep 11, 2026
A 1990s mail gateway passes two visually identical message sheets while their lower byte-pattern layers diverge after transit.

History

Before Email Could Be Signed, the Gateway Had to Stop Editing It: RFC 2015

A mail gateway could preserve every sentence a person cared about and still destroy a digital signature. RFC 2015 made that uncomfortable fact part of PGP/MIME's design: the evidence was not an abstract message but an exact MIME entity—content headers, transfer encoding…

Sep 10, 2026
A warm Onion identity key sends a nonce-bound proof through translucent descriptor layers while a separate teal certificate key remains outside the validation path.

IETF

The Hidden Service Answered. The Onion Key Had Not Yet Spoken: RFC 9799

The hidden service answered over Tor, the ACME account was valid, and the final CSR was ready. None of those facts yet proved that the applicant controlled the `.onion` identity. RFC 9799 makes that missing proof explicit—and shows why issuance authority, descriptor visibility…

Sep 10, 2026
A 1996 operations desk holds one floating PGP message opened into a printable paper veil, packet tiles, a dark ciphertext chamber, a compressed translucent shell and a sealed signed core, with separate brass session-key capsules approaching from different recipients.

History

The Message Opened. That Did Not Mean the Evidence Was Complete: RFC 1991

An early PGP message could pass through six visibly successful operations—ASCII decoding, packet parsing, session-key recovery, decryption, decompression and signature verification—without any one of them proving who controlled the key, when the act occurred, whether it was…

Sep 10, 2026
A public paper certificate and embossing seal remain outside three separate glass vaults holding a brass signing token, a dark confidentiality key and an ephemeral thread of session light that never reaches the archive.

History

The Certificate Was Public. The Private Key Was Not: RFC 1984’s Trust Boundaries

In July 1996, two Internet standards bodies accepted that a government could operate a certification authority and still rejected the idea that a government, or any other third party, should hold a user’s private key. That is not a contradiction. It is the organising distinction…

Sep 10, 2026
A platform observes an isolated workload while distinct cyan and amber credential stages cross separate gates toward an execution chamber and returning receipt blocks.

IETF

A Workload Credential Is Not the Workload: Eight Proofs Between Bootstrap and Outcome

The WIMSE practices draft shows how platforms can replace embedded secrets with short-lived workload credentials. Its harder lesson is that every safer credential still sits inside a longer chain of facts that must not be compressed into one green authentication event.

Sep 10, 2026
AI editorial portrait of Jim Schaad beside one locator branching to two cryptographic key candidates before separate verification, identity and authorization layers

IETF

Jim Schaad and the Key ID That Was Only a Hint

Two keys sit in the same verifier under the same short label. The message supplies that label, the first key is tried, and a dashboard turns the result into the name of a device. Jim Schaad’s COSE specification draws a harder boundary: the label is a search hint; identity and…

Sep 10, 2026
AI editorial portrait of Patrik Fältström beside an ENUM number-to-DNS path that stops before an unanswered abstract endpoint

IETF

Patrik Fältström and the ENUM Answer That Did Not Complete the Call

The number resolved. A signed DNS answer yielded a URI. The phone still never rang. Patrik Fältström’s work on ENUM is most useful when those three facts remain separate.

Sep 9, 2026
AI editorial portrait of David Harrington behind distinct context, principal, access-control, proxy and device-state planes

IETF

David Harrington and the SNMP Context That Did Not Identify the Operator

The command named an engine, a context and an entity with precision. None of those fields said which human had chosen the change. David Harrington’s SNMP architecture makes that absence visible rather than filling it with an assumption.

Sep 9, 2026
An old amber voucher and a fresh cobalt request pass through key-possession, certificate-status and policy gates to a renewed voucher above an empty evidence frame

IETF

Revision 36 Turns Voucher Renewal Into a Control Decision Without a Decision Receipt

A short-lived onboarding voucher looks like a credential with a new end date. Revision 36 of the IETF's Voucher Artifact draft now makes the deeper operation explicit: renewal confirms that an earlier relationship still holds, checks continuing access to a Domain key, consults…

Sep 9, 2026
AI editorial portrait of Bernard Aboba beside a completed authentication proof, a separate policy gate, keying plane and closed network access path

IETF

Bernard Aboba and the EAP Method That Did Not Grant Network Access

The credential was valid and the authentication method finished cleanly. Yet the controlled port stayed closed. Bernard Aboba’s work on EAP explains why those two observations can coexist without contradiction.

Sep 9, 2026
AI editorial portrait of Chris Newman beside distinct transport, service identity, user credential, authorization and delivery checkpoints

IETF

Chris Newman and the Secure Mail Port That Did Not Authorize a User

Port 465 can require the conversation to begin with TLS, but it cannot decide who may send a message. Chris Newman’s work on secure mail access shows why transport, service identity, user authentication and authorization need separate receipts.

Sep 9, 2026
A 1990s initiator sends a compartmented Kerberos token to an acceptor; a teal reply and red error branch return separately, while an amber delegated credential stops at a closed downstream gate.

History

The Ticket Arrived. The Receipt Did Not: RFC 1964’s Authentication Boundaries

RFC 1964 gave Kerberos V5 a disciplined GSS-API wire vocabulary: a mechanism identifier, typed tokens, a digest for caller-supplied channel bindings, service flags and an optional delegated credential. The design is valuable precisely because each item stops at a boundary. A…

Sep 9, 2026
An amber authorization capsule sits inside a cobalt issuer envelope whose blue bridge reaches a separate faceted key

IETF

The Principal Signed the Delegation. The Issuer Still Bound the Agent Key

Two valid signatures can sit in one credential without answering the same question. A new AIC-JWT revision puts the principal’s authorization inside an issuer-signed token, yet draws a precise line between the Agent identity the principal authorized and the proof-of-possession…

Sep 9, 2026
One luminous leaf certificate crosses an authentication boundary while a separate timeline links anonymous requests to registry-object revisions.

Story

RIPE Database 1.124.1 Fixed Certificate Selection. Its “No Evidence” Finding Needs a Search Boundary

RIPE NCC was right to ship a reported authentication vulnerability without waiting for a routine test interval. The next duty is different: show members what time, traffic and registry history were actually examined before “no evidence of exploitation” became the public…

Sep 8, 2026