Policy continuity, legitimacy, and accountability signals across internet governance institutions.
Governance
Governance
Internet governance intelligence tracks institutions, policy processes, standards activity, registry operations, accountability disputes, and implementation signals that affect internet infrastructure. BTW.

RIR Watchdog, Case File, NRS, ICANN, IETF, History of Internet, and NOG sessions.
Coverage prioritizes implementation evidence and institutional behavior over declarative positions.
Latest Coverage
Latest from Governance
4,434 articles
IETF
The connection is larger than the path: Multipath TCP keeps one byte stream across several routes
A phone leaves an office with a live connection on Wi-Fi and reaches the street on cellular. Ordinary TCP ties that connection to one path. Multipath TCP can keep the application on one ordered byte stream while the endpoints add, retire and prioritise TCP subflows underneath it.…
IETF
When the Receiver Drew a Map: How TCP SACK Changed Loss Recovery
TCP once told a sender only where an uninterrupted stream ended. Selective acknowledgment added a second language: a compact map of the later bytes that had already arrived. That extra evidence changed loss recovery without changing who controlled the congestion window or when…
SANOG
South Asia Asked for Invalid-Route Data and a Place to Test ROV
At the first South Asia APNIC Sub-Regional Forum, operators moved the routing-security conversation beyond awareness. They asked for the evidence and controlled environment needed to practise a change that can affect which routes a network accepts.
History
The Header That Waited Behind Its Data
A variable-length header could stand between an arriving packet and a useful boundary in memory. In the early 1980s, BSD systems tried moving that obstacle: put the data first and its higher-level headers afterwards, then restore the ordinary arrangement at the receiver. Trailer…
Story
APNIC’s Geofeed Field Authenticates the Link, Not Every Location
An APNIC address record can point to a geolocation file through a maintainer-protected field. That establishes a useful chain of publication; it does not turn every place name in the separately changing file into a verified physical fact.
IETF
How DNSSEC learned to prove a name does not exist
A signed answer can authenticate a record that is present. The harder design problem is authenticating the empty space where an attacker might otherwise hide a name, invent one or replace a truthful “no” with a forged response.
IETF
The quiet hour is only a forecast: ALTO makes traffic timing a published promise
A bulk transfer can wait for two in the morning. The harder question is why two in the morning should be cheaper at all. ALTO Cost Calendars let a network publish that expectation to an application. The calendar is useful precisely because it is not the network itself: it is an…
History
The Handshake That Had to Remember Its Previous Handshake: TLS Renegotiation
A TLS connection could be encrypted from end to end and still tell the server the wrong story about who had sent its first bytes. The renegotiation flaw of 2009 exposed a missing form of evidence: a new handshake needed to prove not only its own keys, but also which earlier…
History
A Map Pin Was Not a Measurement
DNS LOC could express a coordinate to a thousandth of an arcsecond while declaring a horizontal error circle ten kilometres across. That was not a contradiction. The format distinguished the fineness of an address on a map from the strength of the knowledge behind it. A consumer…
Number Resource Society
The FAQ Answer Needs a Version Date
A frequently asked question looks like the lightest form of institutional writing. In practice, it can be the page a member reads before applying, changing details, relying on a benefit or choosing where to ask for help. When that answer has no visible date or predecessor…
Story
RIPE RIS Generated the BGP Snapshot. Delivery Still Failed
The 25 August incident did not begin with a failed route collector. RIPE NCC says the 16:00 UTC bview files had been generated, yet they did not reach the public archive after a failover. That distinction turns a small status notice into a useful test of where a public…
Story
At LACNIC, the Most Valuable IPv4 Option Is Waiting
At LACNIC, the Most Valuable IPv4 Option Is Waiting intelligence summary explains the development, the public evidence available to readers, the organisations involved, the regional context, market exposure, and the infrastructure consequences that may follow. The Story…
IETF
The quarter-second bargain behind Happy Eyeballs
Happy Eyeballs turned dual-stack connection setup into a managed race. Its success lies in making path failure less visible to users; its cost is that the same success can make broken paths less urgent to repair.
History
The Address That Expired to Protect Its User: IPv6 Temporary Addresses
IPv6 privacy extensions did not make an address secret. They changed which address a host would prefer for its next conversation, how long that preference lasted, and when the identifier finally had to leave the interface.
Story
APNIC's 2026 by-law vote bundled five constitutional choices into one weighted resolution
APNIC members approved Resolution 1 by a large weighted majority. The result settles whether the package passed; it does not reveal whether members separately endorsed longer Executive Council terms, term limits, an express Election Chair, revised Director General wording and the…
IETF
Joining the group is no longer enough: SSM makes the receiver name the sender
Source-Specific Multicast turns a multicast join into a choice: the receiver must identify both the group it wants and the source it is willing to hear.
ICANN
The Public Query Became a Private Lead Machine: Register.com v. Verio
A daily list of newly registered domains looked like public infrastructure until Verio connected it to automated WHOIS queries and rapid sales calls. The resulting case is less a monument to web-contract doctrine than a practical warning about layered permission: public data, a…
Number Resource Society
A Password Reset Must Not Restore Yesterday’s Authority
An account can belong to the same person while the powers once attached to it have expired. A safe recovery process therefore restores the ability to prove identity first, then rebuilds every representative, moderator or administrative role from the organisation’s current…
ICANN
When a DNS-Abuse Report Becomes Actionable—and What the Contract Still Does Not Order
The decisive step in ICANN's DNS-abuse regime is not the arrival of an allegation. It is the moment when available evidence supports a reasonable finding, after which a registrar or registry must act promptly—but still choose a remedy that fits its role, the harm and the risk to…
Story
RIPE’s Status Field Is a Registry Class, Not a Network Health Check
A single line in an address record can look like an operational verdict. In the RIPE Database, it is nothing of the kind: `status` locates an IPv4 record inside a policy hierarchy, while routing and reachability must be observed elsewhere.
Session Map
Governance Branch
RIR Watchdog
Five regional sessions tracking allocation policy, board legitimacy, and institutional continuity.
Open RIR WatchdogCase File
Long-cycle governance dossiers with legal, election, and institutional stress analysis.
Open Case FileNumber Resource Society
Membership, charter, and resource-governance intelligence from the NRS ecosystem.
Open NRS SessionICANN
DNS coordination, accountability frameworks, and global multi-stakeholder process dynamics.
Open ICANN SessionIETF
Protocol standardization trajectory and interoperability risk under fragmented policy conditions.
Open IETF SessionHistory of Internet
Long-cycle infrastructure history used for governance interpretation and structural forecasting.
Open History SessionNOGs
Operator-level implementation intelligence from APRICOT plus regional and national NOG ecosystems.
Open NOGs Session