Topic
Network-resource Evidence
Within the Topic facet, Network-resource Evidence topic intelligence connects articles that share a specific subject, signal focus, or monitoring theme. The page gives readers a richer path through related reporting, source evidence, market actors, and infrastructure implications, with enough context to understand why the topic matters across company movements, governance decisions, regional exposure, and operational risk. Readers can compare recurring signals, affected organisations, public evidence, market context, service continuity, procurement, competition, compliance, and strategic planning questions behind the subject instead of stopping at a thin list of matching articles. It explains what the topic covers, which infrastructure actors or policies are involved, what evidence supports the coverage, and why the subject may matter for operators, customers, investors, and policy readers.

History
The Neighbor Was Not Dead When the Cache Turned STALE: How IPv6 Waited for Positive Evidence
IPv6 gave an aging cache entry a deliberately modest meaning. STALE did not announce a failure; it announced that the last proof was old, and that the next useful packet should begin a measured search for new evidence.
CASE FILE
The Query Changed. The Cache Answered Anyway: No-Vary-Search and the Authority to Declare URL Equivalence
Two addresses can look different while an application treats them as the same page. No-Vary-Search lets an origin expose that knowledge to caches. The tempting story is fewer misses. The operational story is harder: one party declares which distinctions do not matter, another…

IETF
Álvaro Retana and the Prefix That Left the RIB but Kept the Link
An OSPF adjacency can remain full, its topology edge can continue to influence SPF, and packets can still cross the link even after the link's numbered prefix has vanished from remote routing tables. RFC 6860 makes that separation an operational tool. For Álvaro Retana, one of…

History
The Cookie That Changed the Matching Law: Why SIP Branches Begin with z9hG4bK
Seven conspicuous characters in a SIP Via branch do not hide anything. They tell the receiver which generation of transaction evidence it is allowed to trust.

History
The Server Answered Without Giving the Time: How NTP's Kiss-o'-Death Made Clients Back Off
An NTP reply could be perfectly recognizable and still be useless as time. By placing zero in the Stratum field and a short code in the Reference Identifier, a server could refuse service, report rate pressure or expose a transient condition. The packet did not enforce its own…
CASE FILE
The Answer Was Not Ready. The Browser Could Still Move: HTTP 103 Early Hints and the Authority to Speculate
A server can reveal a likely stylesheet before it knows whether the request will end in a page, an error or a redirect. HTTP 103 gives that provisional clue a place on the wire. The clue can save time, but it cannot become the answer: the client still decides whether to spend…

Story
RIPE NCC's New CTO Inherits a €12.2m Estimate, Not a Mandate
Sjoerd Wolthers becomes RIPE NCC's permanent chief technology officer on 1 September. The appointment settles who will lead the technology function. It does not settle a separate question left open in the latest public Board minutes: whether, how and on what evidence RIPE NCC…

IETF
Acee Lindem and the LSA That Travelled Unread
In a mixed-version OSPFv3 area, a router can receive a well-formed Extended LSA, store it and relay it within the encoded flooding scope while understanding none of its optional meaning. RFC 8362 makes that behaviour deliberate. Acee Lindem, one of its five co-authors, helps…
CASE FILE
The Token Was Bound to a Key. The Action Was Still Unauthorized: DPoP and the Authority of a Sender Constraint
DPoP can stop a copied OAuth token from becoming a portable credential. It cannot decide whether the key holder is the right client, whether the token still carries the right audience and scope, or whether today's resource state permits the requested effect.

History
The Mask Was Public. The Bytes Were Not Predictable: How WebSocket Protected Old Proxies
A WebSocket client places its 32-bit masking key beside the payload it disguises. The server can reverse the operation immediately, and so can anyone watching the path. That apparent contradiction reveals the rule's real purpose: the key was not meant to hide a message. It was…

History
The Same Eight Bits Could Name Different Attempts: How RADIUS Made the Request Authenticator Carry the Rest
A network access server has already used Identifier 37, received an answer, and eventually cycles back to 37. Then an old UDP response arrives. The number matches the new request, yet it has no right to decide it. Classic RADIUS survived its 256-name space by making the visible…

Story
LACNIC's Four-Vendor BGP Claim Needs the Configuration Column
One malformed Prefix-SID attribute reportedly met three different actions as it crossed the Internet: discard, propagation and session reset. LACNIC's new routing-security article makes the divergence visible. To make it reproducible, the comparison now needs to name the release…
CASE FILE
The Error Returned as a New Question: DNS Report-Channel and the Authority of Feedback
An authoritative server can announce where it wants to hear about failures it cannot see. It cannot make a resolver diagnose, report or believe anything. DNS Error Reporting turns one local validation failure into a second DNS query, then leaves transport, caching and human…

IETF
Susan Hares and the Two Clocks of BGP Convergence
A router can finish explaining a new route before it finishes carrying packets over it. RFC 4098 names the first event in the control plane; RFC 7747 measures the second from outside the forwarding plane. Susan Hares co-authored both documents. Read together, they turn the word…

History
The Newest LSA Had to Disappear Before the Oldest Could Return: How OSPF Reset Sequence Time
OSPF gave every new instance of a link-state advertisement a larger number. The rule was simple until the largest number had already been used. A direct wrap would make the next truth look older than the last one, so OSPF turned rollover into a public ceremony: withdraw the old…

Story
At ARIN, Resource-Level Tech Authority Stops Before the ROA
ARIN's records can give a Technical Point of Contact authority over one network resource while routing-security actions remain organized around the containing organization. A newly confirmed suggestion asks ARIN to bridge that gap. The hard part is not adding another permission…
CASE FILE
The Signature Verified. The Command Was Still Unauthorized: HTTP Message Signatures and the Authority of Covered Components
RFC 9421 can prove that selected parts of an HTTP message survived in a defined semantic form. It cannot decide whether the signer was entitled to issue the command, whether an omitted field changed its meaning, or whether a valid request has already been used.
CASE FILE
The Packet Hid Its Exact Length. The Pattern Still Spoke: EDNS Padding and the Limits of DNS Privacy
An encrypted DNS message can conceal its names and answers while leaving a surprisingly useful silhouette. EDNS Padding changes that silhouette by adding bytes. The difficult question is not whether the packet became larger, but whether client, server, transport and path made…

History
The Report One Listener Could Send for a Crowd: Why IGMPv3 Ended Host Suppression
When a multicast router asked who was listening, the first widely deployed IGMP did not want every host to answer. Each listener waited for a random interval; the first report stood for the group, and the rest went silent. That economy was sound while the only decision was…

Story
One Source IP Accounted for 38.76% of APNIC's WHOIS Queries in an Hour
One Source IP Accounted for 38.76% of APNIC's WHOIS Queries in an Hour intelligence summary explains the development, the public evidence available to readers, the organisations involved, the regional context, market exposure, and the infrastructure consequences that may follow.…
