Session Report
Summary:
Test run at: 2021-02-27 16:35:25 GMT
Client Prefix (v4): 193.37.32.x/24
Client AS (v4): 206092 (SECFIREWALLAS)
IPv4 Probes: 69
Outbound spoofing summary (from the client to our server) |
Source address type |
IPv4 |
Private -
RFC1918 |
blocked |
Routable |
blocked |
Largest spoofable neighbor prefix length |
/24 |
Spoof status key |
---|
received | Spoofed packet was received. | ✔ | Pattern of tests from this IP block indicates a switch from allowing spoofing to blocking it. |
rewritten | Spoofed packet was received, but the source address was changed en route. |
blocked | Spoofed packet was not received, but unspoofed packet was. |
unknown | Neither spoofed nor unspoofed packet was received. |
IPv4 Adjacent Netblock Testing:
Your host (193.37.32.x/24) can spoof 255 neighboring addresses (within your /24 prefix)
Spoofed source address (anon) | Prefix Length | ASN of spoofed source address | Received |
193.37.32.x/24 | /31 | 206092 | natblock |
193.37.32.x/24 | /30 | 206092 | natblock |
193.37.32.x/24 | /29 | 206092 | yes |
193.37.32.x/24 | /28 | 206092 | yes |
193.37.32.x/24 | /27 | 206092 | yes |
193.37.32.x/24 | /26 | 206092 | yes |
193.37.32.x/24 | /25 | 206092 | yes |
193.37.32.x/24 | /24 | 206092 | yes |
193.37.33.x/24 | /23 | 59253 | natblock |
193.37.34.x/24 | /22 | 207027 | natblock |
193.37.36.x/24 | /21 | UNROUTED | natblock |
193.37.40.x/24 | /20 | 1239 | natblock |
193.37.48.x/24 | /19 | 12695 | natblock |
193.37.0.x/24 | /18 | UNROUTED | natblock |
193.37.96.x/24 | /17 | UNROUTED | natblock |
193.37.160.x/24 | /16 | 13205 | natblock |
193.36.32.x/24 | /15 | 559 | natblock |
193.39.32.x/24 | /14 | 5089 | natblock |
193.33.32.x/24 | /13 | 35577 | natblock |
193.45.32.x/24 | /12 | 3301 | natblock |
193.53.32.x/24 | /11 | UNROUTED | natblock |
193.5.32.x/24 | /10 | UNROUTED | natblock |
193.101.32.x/24 | /9 | 702 | natblock |
193.165.32.x/24 | /8 | 30764 | natblock |
Meaning of status in Received column:
yes | Packets spoofed from adjacent netblock were received (but that netblock is within the source AS) |
natblock | Spoofed probe packets appear to be blocked by your local NAT or firewall rather than being rewritten with a public source address. |
IPv4 Outbound Filtering Depth:
The tracefilter test found your host
able to spoof routable, non-adjacent source addresses through the
first 2 IP hop(s).
Summary:
The results from all tests are aggregated to produce a summary
"State of IP Spoofing" report.
Feedback:
We welcome questions and feedback to the Spoofer Information Mailing List
and invite users to join the Spoofer
Users Mailing List for discussion and announcements.