Summary
- An APNIC report says more than 100 Members met in Kathmandu and specifically asked for data on invalid routes and practical environments in which to test Route Origin Validation.
- The new APNIC-SANOG cooperation framework creates a plausible delivery channel, but the public summary does not yet identify the test environment's scope, access route, owner, baseline or review date.
The request that matters
The most useful sentence in APNIC's account of its South Asia Sub-Regional Forum is not the ceremonial one. It is the sentence reporting that Members wanted data on invalid routes and practical testing environments to support Route Origin Validation.
That is a more mature request than another appeal to “adopt RPKI.” It recognizes that route security is a production change. A network can publish Route Origin Authorizations so that others can verify its announcements. It can also operate ROV at its own borders and decide how to treat announcements that validation marks as invalid. Those are related controls, but they are not the same act. One publishes an authorization; the other changes an acceptance decision inside a live routing system.
Testing therefore is not a side benefit. It is the boundary between knowing that a standard exists and being able to introduce it without improvising on customer traffic. Operators need to see representative invalid states, understand why they are invalid, observe what a validator returns, test router policy, plan exceptions and know what evidence will show that the change is working. A slide deck can explain those steps. A controlled lab lets an engineer make them, break them and recover from them before the production network carries the consequence.
APNIC's 25 August report says more than 100 Members gathered in Kathmandu. It calls the event the second forum in its Sub-Regional Forum pilot and the first in South Asia. The discussions ranged across registry processes, automation, IPv4 availability, IPv6, RPKI, ROV, ASPA and participation in the policy process. The report does not provide raw minutes or a ranked ballot. It should not be read as proof that every attendee shared one priority. Yet the specificity of the test-environment request makes it an actionable signal rather than a generic statement of interest.
A delivery surface already exists
The forum did not take place in an institutional vacuum. It ran alongside SANOG 44 in Kathmandu. SANOG's official event record separates four days of npNOG-led, hands-on workshops from a three-day conference. The format already joins instruction, practice and an operator community. APNIC had also said in March that its 2026 development work would include refreshed labs on IPv6, RPKI, routing and network security, a train-the-trainer model with Network Operator Groups, and Sub-Regional Forums at SANOG and PACNOG.
Those pieces make the request deliverable in principle. A lab can be maintained by a technical institution, taught through local trainers, challenged by working operators and revisited at a regional meeting. It does not require the forum itself to become a network operator or a regulator. It requires the partners to make responsibility visible: who maintains the scenarios, who admits users, how feedback changes the lab, and when the community can see what was delivered.
The APNIC report also records a new Memorandum of Understanding signed by SANOG Chair Rupesh Shrestha and APNIC Director General Jia Rong Low. Its public description covers technical capacity development, community engagement, IPv6 deployment, routing security and future APNIC forums. That is a credible institutional route from listening to work.
It is not, by itself, proof of that work. APNIC's public summary does not name a testbed, an access path, a dataset, an accountable owner, a budget or a deadline. The source set used for this article did not include the full 2026 agreement, so it would be wrong to say that the MoU itself contains no such terms. The bounded conclusion is simpler: readers cannot find them in the public account yet.
A long relationship, a new test
The partnership itself is not new. An archived APNIC-SANOG MoU from August 2003 covered Internet development, information exchange, meetings, conferences and APNIC training in South Asia. It described itself as nonbinding. The 2026 report explicitly presents the new agreement as building on a long-standing relationship.
That history changes the accountability question. The relevant test is not whether two institutions can sign a cooperation document or share a stage. They have cooperated for more than two decades. The test is whether the latest agreement helps convert a precise operational demand into a service that engineers can actually use.
There is a useful comparison inside APNIC's own regional work. A separate report from the Pacific forum set out a routing-security baseline, identified public measurement surfaces and named PITA 31 as the point at which the community could review progress. The Pacific numbers do not describe South Asia and should not be imported into this case. The design principle does travel: a regional commitment becomes more credible when it has a starting state, observable measures and a date for returning to the evidence.
IPv6 reveals the same implementation gap
The Kathmandu account describes a parallel problem in enterprise IPv6. Representatives from Nepal's banking and fintech sectors pointed to legacy systems, skills gaps, limited deployment experience and difficulty building a business case. Those are not arguments against IPv6. They are reminders that an operator's technical capability and an enterprise's migration authority sit in different places.
A service provider can make IPv6 available without causing a bank's applications, security controls, vendors or change processes to become ready. In the same way, a registry and operator community can explain ROV without giving each network a safe path from understanding to a production decision. Training is most valuable when it reaches the point where technical knowledge meets organizational permission and observable risk.
What public completion would look like
The next useful publication need not be a grand regional dashboard. A small delivery ledger would be enough to make the work legible.
It could state what the ROV environment simulates, which invalid-route cases are included, who can use it, whether participation requires APNIC membership, how local trainers gain access, which router and validator behaviours are covered, who maintains the material and when the scenarios were last tested. It could separate training attendance from operational adoption. It could publish a starting baseline without ranking countries or exposing individual networks. And it could name the next forum or date at which the partners will report what changed.
None of this requires a claim that South Asia is uniquely behind. The forum's value lies in the opposite direction: Members articulated where generic advocacy stopped helping. They asked for data and a place to practise. The partnership will become measurable when the public record shows how that request moved from the listening session into the lab.
Sources
Member Briefing
Deeper Profile Context
Sign in with the right membership level to unlock the full briefing and source notes.
Only for Strategic Circle
Strategic Circle
Open to all readers. Unlock profile briefings after joining and signing in.
Join Strategic CircleOnly for Leadership Alliance
Leadership Alliance
For qualified IP-asset owners and management; sign in to unlock alliance briefings.
Join Leadership Alliance

