Intelligence
Latest Articles
Latest intelligence on infrastructure operators, policy decisions, market moves, and digital power shifts.

IETF
A New OAuth Token Does Not Prove Recent Authentication
Issuing a credential and authenticating its user are different events. RFC9470 makes the distinction operational: a resource can ask for stronger or more recent authentication, but neither a fresh token nor a successfully relayed challenge proves that the condition has been met.

Global Institutional
SNIA writes common storage rules without the power to enforce them
Since 1997, SNIA has tried to make storage systems from different vendors easier to compare, manage and trust. Its specifications reach from management software and cloud data to media erasure, energy use and hardware form factors, yet every useful rule still depends on companies…

Story
ARIN’s DS Payload Guide Calls Digest Type 3 MD5. IANA Says GOST
A public provisioning reference gives one DNSSEC code two incompatible identities. The correction is narrower than an API failure, but more consequential than a spelling change: the number determines the digest, and fixing its label would not make the retired algorithm suitable…

Creators
Jiří Pírko and the Linux interfaces exposing switch hardware
A physical switch can forward packets at extraordinary speed while revealing little about the tables, limits and failures inside it. Jiří Pírko's work on switchdev and devlink helped give Linux a common language for that hidden machinery, bringing forwarding state and device-wide…

IETF
Equivalent URNs Are Not Interchangeable Service Requests
A comparison can correctly say that two URN names identify the same resource without saying that every service request carrying those names is interchangeable. RFC8141 draws that boundary through optional components—and leaves an important existing-query case to the resolver's…

Story
ISIF Now Starts With a Concept Note. The Foundation Performs the First Review
A shorter opening application can widen access to Internet-development grants. It does not make the entire selection sequence an independent committee decision—and the 2026 rules do not claim that it does.

IETF
Changing a SIP Push Reference Must Not Abandon the Dialog
A private reference can become less useful for tracking without becoming less useful to an existing conversation. SIP push notification makes that distinction explicit: a proxy must issue fresh references, yet keep the old ones that ongoing dialogs still depend on.

Story
Sagan Can Mark a Traceroute Successful Without a Reply From the Destination
One Python flag tests a non-error reply at the end of the supplied trace. Another tests the destination address. Keeping those answers separate is the difference between reading a measurement and awarding it a meaning it has not earned.

IETF
A CDN Customer May Choose the Route—Not Erase Its Loop Guard
The small CDN-Loop request field draws an unusually sharp boundary: customers retain routing choices, but not the ability to erase a common safety mechanism. That boundary protects cooperation without making the field a trustworthy account of where a request has been.

IETF
The CDNI Map That Grew—and Lost Every Client
A CDNI advertisement can name more address ranges and leave fewer requests eligible. The explanation lies in how restrictions are combined—and in the decision rights that a clean-looking coverage map can quietly absorb.

Story
AFRINIC’s Duplicate nserver Row Is Gone. Redundancy Is Not a Row Count
A February discussion exposed two identical nameserver entries that produced only one DNS referral. The named example is now corrected. What remains useful is the distinction between an avoidable input mistake, an answering server and infrastructure that can survive a failure.

IETF
CDNI’s Complete Collection Is Not an All-Success Receipt
A publisher preparing replacement content needs to know that an earlier purge has finished. A tidy reporting collection can answer a different question: whether another status update will arrive. CDNI keeps those meanings separate, and the next release decision must do the same.

IETF
CDNI Redirection Must Not Restart the Token’s Expiry Clock
A delivery network may change the next recipient, sign a new route and record a new issuance time. Under the CDNI URI Signing profile, none of those changes gives ordinary redirection permission to reset an existing expiry. Segment-token renewal is a different, explicitly enabled…

Story
Two Minutes Can Become Many in LACNIC’s Permission Cache
A public PAI client can restart the age of a cached permission entry after a malformed authorization reply without obtaining a new permission decision. Its small resilience mechanism exposes a larger question: which clock should govern an application when the authority it…

History
Urs Hölzle and the Fabric That Learned to Change in Pieces
An awkward failure in an early Google network helps explain a less visible infrastructure achievement: making a vast switching system serviceable without treating it as one indivisible machine.

Story
Starla Uses RIPE Atlas Version Numbers. They Do Not Name Its Executable.
A Rust implementation can speak the probe’s language without becoming the same measuring instrument. Starla makes the distinction visible in source: its own package version, its compatibility numbers and its registration identity answer different questions.

IETF
No-Vary-Search Needs an Activation Boundary for Client-Side Decisions
Two URLs can justify reusing the same server response while still representing different choices by a reader. When a prerendered page is activated under a different query, the application must bind its decisions to that final choice—not to the address it happened to inspect…

Global Institutional
Akvorado turns sampled flows into a network’s working memory
Akvorado gives network operators a self-hosted way to retain, enrich and examine flow records across long periods. Its usefulness comes from making the path from router export to operational decision visible; its central limit is that every graph still inherits the sampling…

Creators
Russ White and the discipline of containing network complexity
Russ White and the discipline of containing network complexity intelligence summary explains the development, the public evidence available to readers, the organisations involved, the regional context, market exposure, and the infrastructure consequences that may follow. The…

History
Ermanno Pietrosemoli and the Sea Link Whose Peak Was Not a Promise
In a picture used to teach long-distance wireless planning, the equipment has been running for days but the link counter has been running for minutes. Both numbers can be true. Ermanno Pietrosemoli's work on a remarkable radio crossing between Sardinia and Tuscany makes that…
