Spoof status key | ||||
---|---|---|---|---|
received | Spoofed packet was received. | ✔ | Pattern of tests from this IP block indicates a switch from allowing spoofing to blocking it. | |
rewritten | Spoofed packet was received, but the source address was changed en route. | |||
blocked | Spoofed packet was not received, but unspoofed packet was. | |||
unknown | Neither spoofed nor unspoofed packet was received. |
IP block | Latest test | Spoof Private | Spoof Routable | ||
---|---|---|---|---|---|
207.62.80.x/24 | 2024-11-20 14:00:02 GMT | received | received | ||
207.62.218.x/24 | 2024-11-20 14:00:01 GMT | received | received | ||
2607:f380:xx::/40 | 2024-11-20 14:00:02 GMT | blocked | blocked |
This is the list of directly connected customers of AS 2152 from which we have received a spoofer test, ordered by the customer's ability to send spoofed packets and the number of prefixes of an inferred ingress ACL derived from prefix announcements for the customer recorded in the latest month of public BGP data. BCP-84 describes ingress ACLs as "the most bulletproof solution when done properly" and the "best fit ... when the configuration is not too dynamic, ... if the number of used prefixes is low." Further detail about the size and dynamism of an inferred ACL is available by following the History link for each AS.
ASN | Country | Number of Prefixes in Customer Cone | Number of ASes in Customer Cone | Recent tests | Spoof Routable | 3701 (NERONET) | usa (United States) | 70 | 13 | AS 3701 tests | received | 6360 (UNIVHAWAII) | usa (United States) | 252 | 6 | AS 6360 tests | received | 23483 (SHASTACOE) | usa (United States) | 4 | 0 | AS 23483 tests | blocked | 6192 (UCDAVIS-CORE) | usa (United States) | 6 | 0 | AS 6192 tests | blocked | 7377 (UCSD) | usa (United States) | 21 | 1 | AS 7377 tests | blocked | 195 (SDSC-AS) | usa (United States) | 78 | 8 | AS 195 tests | blocked |
---|
The customer cone for 2152 is too large for a prefix list to be useful.