<!DOCTYPE html>
<html>
  <head>
    <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
  </head>
  <body>
    <p dir="ltr">Hi Logan, all,</p>
    <p dir="ltr">Thanks for raising this. I'll address it from two
      perspectives: what is published today, and where it could be
      improved.</p>
    <p dir="ltr">Like the other RIRs, AFRINIC publishes the status of
      all Internet number resources daily in the NRO extended statistics
      format: <a href="https://ftp.afrinic.net/stats/afrinic/"
        class="moz-txt-link-freetext">https://ftp.afrinic.net/stats/afrinic/</a></p>
    <p dir="ltr">The file "delegated-afrinic-extended-latest" shows the
      status of each resource as allocated, assigned, available or
      reserved (definitions are in README-EXTENDED.txt). Historical
      files are also kept, so users can compare snapshots over time and
      identify status changes between reporting periods, as SM's script
      demonstrated.</p>
    <p dir="ltr">Reclaimed resources are placed in the reserved state
      while they go through the applicable quarantine and cleanup
      processes, after which they are returned to the available pool. It
      is important to clarify that a reserved (quarantined) resource
      does not necessarily imply contamination. More information on the
      resource lifecycle status is available here: <a
        href="https://afrinic.net/ip-resources-management"
        class="moz-txt-link-freetext">https://afrinic.net/ip-resources-management</a></p>
    <p dir="ltr">Based on your explanation, I can notice one limitation
      of the current data is that the reserved status covers several
      scenarios. It includes resources in quarantine after reclamation
      as well as resources reserved for policy or operational reasons
      (for example, the policy-reserved 102.224.0.0/12 block).</p>
    <p dir="ltr">While I take note the ARIN "cleared blocks" example you
      shared, we would like to better understand your particular
      requirements, could you clarify:</p>
    <ol dir="ltr">
      <li>Which transitions are of most interest: delegated → reserved,
        reserved → available, or both?</li>
      <li>Would it be important to publish distinct types of reservation
        on this webpage (reclaimed, operational, policy)?</li>
      <li>Would a structured feed (JSON or CSV) with the prefix,
        previous status, new status and effective date meet your
        requirements?</li>
      <li>Any additional data points that would be useful.</li>
    </ol>
    <p dir="ltr">Your feedback on the questions above, will help us
      evaluate the best way forward.</p>
    <p dir="ltr"><strong>Next step</strong><br>
      As pointed out by other forum members, this topic concerns how
      resources are represented and published rather than resource
      policy, so I am also exceptionally cross-posting to the DBWG
      mailing list for the discussion to proceed there. </p>
    <p dir="ltr">Regards,</p>
    <p>James</p>
    <p><br>
    </p>
    <p><br>
    </p>
    <div class="moz-cite-prefix">On 26/09/2026 11:19, Loganaden
      Velvindron wrote:<br>
    </div>
    <blockquote type="cite"
cite="mid:CAOp4FwQWPgOX=bNzWpB5xWyN2u2u7_JV8f-4Pm3hiDk_+r=Tdw@mail.gmail.com">
      <pre wrap="" class="moz-quote-pre">Hi All,

Recently, I was investigating a cyber security incident involving IP addresses.

A recurring challenge is that even after these IP ranges are returned
to AFRINIC for quarantine and cleanup, there is no quick, centralized
way for cybersecurity threat intelligence providers or law enforcement
agencies to track this status change. I fully appreciate that the
AFRINIC team already handles a significant workload.

I would therefore kindly request AFRINIC members  to discuss whether
putting a dedicated page would be a good idea ? The web page would be
for quarantined and cleaned up IP ranges so that Cybersecurity Threat
Intelligence Providers and Law enforcement agencies can easily parse
those to update their blocklists. CSV format is acceptable but json
format would be nice to have especially with the rise of automation.

Kind regards,
Loganaden Velvindron
(Speaking in my own capacity)

_______________________________________________
RPD mailing list
<a class="moz-txt-link-abbreviated" href="mailto:RPD@afrinic.net">RPD@afrinic.net</a>
<a class="moz-txt-link-freetext" href="https://lists.afrinic.net/mailman/listinfo/rpd">https://lists.afrinic.net/mailman/listinfo/rpd</a>
</pre>
    </blockquote>
    <pre class="moz-signature" cols="72">-- 
James Chirwa
Head of Member Services
African Network Information Centre (AFRINIC) Limited
t: +230 403 51 00 | dir: +230 403 51 42
f: +230 466 6758
w: <a class="moz-txt-link-abbreviated" href="http://www.afrinic.net">www.afrinic.net</a> | tt: @afrinic
SM: facebook.com/afrinic | flickr.com/afrinic | youtube.com/afrinicmedia</pre>
  </body>
</html>