What this test does

The Link header points at the real server; the HTML link points at a decoy server.

How it passes

Your client uses the server from the Link header. Any request to the decoy is a failure.

Specification
§4.1