Spoofing Information for AS 4809 (CHINATELECOM-CORE-WAN-CN2)

Spoofing status per IP block for last year of data

(Results for all dates also available.)
Spoof status key
receivedSpoofed packet was received.Pattern of tests from this IP block indicates a switch from allowing spoofing to blocking it.
rewrittenSpoofed packet was received, but the source address was changed en route.
blockedSpoofed packet was not received, but unspoofed packet was.
unknownNeither spoofed nor unspoofed packet was received.
IP blockLatest testSpoof
117.28.251.x/242023-09-23 07:42:06 GMTblockedblocked

Customers of AS 4809 we have spoofer tests from

This is the list of directly connected customers of AS 4809 from which we have received a spoofer test, ordered by the customer's ability to send spoofed packets and the number of prefixes of an inferred ingress ACL derived from prefix announcements for the customer recorded in the latest month of public BGP data. BCP-84 describes ingress ACLs as "the most bulletproof solution when done properly" and the "best fit ... when the configuration is not too dynamic, ... if the number of used prefixes is low." Further detail about the size and dynamism of an inferred ACL is available by following the History link for each AS.

ASNCountryNumber of Prefixes
in Customer Cone
Number of ASes
in Customer Cone
36678 (CTUSA)usa (United States)151AS 36678 testsblocked
8796 (AS-FOR-SALE-CONTACT-ME)usa (United States)1742AS 8796 testsblocked
41378 (KirinoNET)usa (United States)74874AS 41378 testsblocked
4847 (CNIX-AP)chn (China)93375AS 4847 testsblocked

Address Space Announcement History

The customer cone for 4809 is too large for a prefix list to be useful.

Last Modified