Policy continuity, legitimacy, and accountability signals across internet governance institutions.
Governance
Governance
Internet governance intelligence tracks institutions, policy processes, standards activity, registry operations, accountability disputes, and implementation signals that affect internet infrastructure. BTW.

RIR Watchdog, Case File, NRS, ICANN, IETF, History of Internet, and NOG sessions.
Coverage prioritizes implementation evidence and institutional behavior over declarative positions.
Latest Coverage
Latest from Governance
4,504 articles
IETF
Patrik Fältström and the ENUM Answer That Did Not Complete the Call
The number resolved. A signed DNS answer yielded a URI. The phone still never rang. Patrik Fältström’s work on ENUM is most useful when those three facts remain separate.
IETF
Revision 04 Promises UUID Identity, but Its Energy Schema Still Points to a Local Name
A data model can be syntactically valid and still give readers two different answers to the same governance question. Revision 04 of the IETF GREEN power-and-energy YANG draft says its component reference is bound to a globally unique UUID. The module printed a few pages later…
IETF
RFC 9997's PEN-Derived SID Range Is Not a Provenance Stamp
A number can be globally unique and still tell the wrong story about its origin. RFC 9997 gives eligible Private Enterprise Number holders a deterministic block of YANG Schema Item iDentifiers, eliminating a central allocation round trip. That is useful coordination. It is not an…
IETF
David Harrington and the SNMP Context That Did Not Identify the Operator
The command named an engine, a context and an entity with precision. None of those fields said which human had chosen the change. David Harrington’s SNMP architecture makes that absence visible rather than filling it with an assumption.
Story
A Backup DNS Plan Is Not a Second Resolver
A 9 September APNIC Blog account turns a household outage into a precise infrastructure lesson: resilience begins only when an alternative service is running, reaches the clients that depend on it, survives a controlled failure and can be rolled back.
IETF
RFC 9979’s `$istrusted` Badge Needs a Correction Record
A green check can outlive the judgment that painted it. A mail server marks a message `$istrusted`; several clients synchronize the shared keyword; a reader acts because the interface presents the sender as verified. Later, the server discovers that its evidence or policy was…
IETF
Revision 36 Turns Voucher Renewal Into a Control Decision Without a Decision Receipt
A short-lived onboarding voucher looks like a credential with a new end date. Revision 36 of the IETF's Voucher Artifact draft now makes the deeper operation explicit: renewal confirms that an earlier relationship still holds, checks continuing access to a Domain key, consults…
Story
RIPE NCC’s K-root Refresh Needs Three Acceptance Records, Not One Batch Status
Amsterdam can be refreshed while the three-site programme remains in progress. That is not a contradiction; it is a warning about the unit of evidence. RIPE NCC has named three K-root core sites whose seven-year-old routers and servers were due for replacement. The useful public…
IETF
Bernard Aboba and the EAP Method That Did Not Grant Network Access
The credential was valid and the authentication method finished cleanly. Yet the controlled port stayed closed. Bernard Aboba’s work on EAP explains why those two observations can coexist without contradiction.
IETF
An SSH Agent Signature Is Not a Consent Receipt
A private key never left its protected agent, the requested bytes were signed correctly, and the remote service still received an act that nobody had meaningfully approved. Those facts can coexist. Keeping a key non-exportable answers where the secret stayed. It does not answer…
IETF
DKIM2 Says Dual-Sign Until It Is Ubiquitous. Revision 01 Does Not Define the Exit
Migration advice becomes governance when it tells operators to run two systems until a condition is met. Revision 01 of the DKIM2 Best Practices draft names that condition—DKIM2 should be “effectively ubiquitous”—but supplies no common denominator, observation window or decision…
IETF
The manifest followed the telemetry. The verdict did not
Revision 14 gives collected network data a companion record of its platform, schema and collection conditions. That makes a datapoint easier to read later; it does not make the datapoint complete, the clock trustworthy or the resulting decision correct.
IETF
Chris Newman and the Secure Mail Port That Did Not Authorize a User
Port 465 can require the conversation to begin with TLS, but it cannot decide who may send a message. Chris Newman’s work on secure mail access shows why transport, service identity, user authentication and authorization need separate receipts.
IETF
The log line parsed. The authority to read the connection did not: RFC 9850
RFC 9850 gives diagnostic tools a common way to read TLS connection secrets. The grammar is small; the authority it can transfer is not. A usable key-log record proves neither permission nor safe closure.
History
The Packet Stayed Native, but the Dictionary Moved: RFC 1977's Hidden PPP State
A packet capture can show an ordinary PPP datagram while both endpoints quietly rewrite the codebook that will determine the meaning of the next compressed packet. RFC 1977 made that invisible transition a condition of interoperability.
Story
AFRINIC Says It Belongs to All of Us. Its SGMM Notice Draws a Smaller Corporate Boundary
AFRINIC’s anniversary message speaks to members, stakeholders and the wider Internet community in one generous voice. Six days later, the meeting named in that message operated through a narrower set of corporate roles. Both can be legitimate. The governance test is whether a…
Story
LACNIC’s Autonomous-Network Ladder Needs a Scenario Ledger, Not a Company Badge
Two operators can both call themselves level three while describing entirely different machines. One may automate fault diagnosis in a radio network; the other may automate service fulfilment but leave every consequential configuration change to a person. The number sounds…
IETF
Set-Cookie Is Not a Storage Receipt
A response crossed the network with a valid `Set-Cookie` field, and the release dashboard marked the session step complete. The next request arrived without the cookie. Nothing in those two observations is contradictory. RFC 10025 gives the server authority to issue an…
IETF
Thirteen IANA Suffix Records Carry a Rule Their Own Definitions Cannot Reach
A registry error can look singular in a draft and plural in production. The latest media-type procedures draft identifies one fragment-processing rule that was copied into thirteen IANA suffix records even though every affected record also says the suffix defines no fragment…
IETF
Keith Moore and the Encoded Word That Changed the Display, Not the Sender
Two ASCII header lines can open into the same accented name on screen. That visual agreement is useful, but it is the end of a decoding process—not a receipt for who sent the message.
Session Map
Governance Branch
RIR Watchdog
Five regional sessions tracking allocation policy, board legitimacy, and institutional continuity.
Open RIR WatchdogCase File
Long-cycle governance dossiers with legal, election, and institutional stress analysis.
Open Case FileNumber Resource Society
Membership, charter, and resource-governance intelligence from the NRS ecosystem.
Open NRS SessionICANN
DNS coordination, accountability frameworks, and global multi-stakeholder process dynamics.
Open ICANN SessionIETF
Protocol standardization trajectory and interoperability risk under fragmented policy conditions.
Open IETF SessionHistory of Internet
Long-cycle infrastructure history used for governance interpretation and structural forecasting.
Open History SessionNOGs
Operator-level implementation intelligence from APRICOT plus regional and national NOG ecosystems.
Open NOGs Session