Session Report
Summary:
Test run at: 2024-06-26 16:04:55 GMT
Client Prefix (v4): 200.187.104.x/24
Client AS (v4): 270684
IPv4 Probes: 69
| Outbound spoofing summary (from the client to our server) |
| Source address type |
IPv4 |
| Private -
RFC1918 |
✔ | blocked |
| Routable |
✔ | blocked |
| Largest spoofable neighbor prefix length |
/26 |
| Spoof status key |
|---|
| received | Spoofed packet was received. | ✔ | Pattern of tests from this IP block indicates a switch from allowing spoofing to blocking it. |
| rewritten | Spoofed packet was received, but the source address was changed en route. |
| blocked | Spoofed packet was not received, but unspoofed packet was. |
| unknown | Neither spoofed nor unspoofed packet was received. |
IPv4 Adjacent Netblock Testing:
Your host (200.187.104.x/24) can spoof 63 neighboring addresses (within your /26 prefix)
| Spoofed source address (anon) | Prefix Length | ASN of spoofed source address | Received |
| 200.187.104.x/24 | /31 | 270684 | yes |
| 200.187.104.x/24 | /30 | 270684 | yes |
| 200.187.104.x/24 | /29 | 270684 | yes |
| 200.187.104.x/24 | /28 | 270684 | yes |
| 200.187.104.x/24 | /27 | 270684 | yes |
| 200.187.104.x/24 | /26 | 270684 | yes |
| 200.187.104.x/24 | /25 | 270684 | no |
| 200.187.104.x/24 | /24 | 270684 | no |
| 200.187.105.x/24 | /23 | 270684 | no |
| 200.187.106.x/24 | /22 | 270684 | no |
| 200.187.108.x/24 | /21 | 270699 | no |
| 200.187.96.x/24 | /20 | 270682 | no |
| 200.187.120.x/24 | /19 | 27697 | no |
| 200.187.72.x/24 | /18 | UNROUTED | no |
| 200.187.40.x/24 | /17 | 25832 | no |
| 200.187.232.x/24 | /16 | 7162 | no |
| 200.186.104.x/24 | /15 | 3549 | no |
| 200.185.104.x/24 | /14 | 16685 | no |
| 200.191.104.x/24 | /13 | 4230 | no |
| 200.179.104.x/24 | /12 | 4230 | no |
| 200.171.104.x/24 | /11 | 27699 | no |
| 200.155.104.x/24 | /10 | 23002 | no |
| 200.251.104.x/24 | /9 | 4230 | no |
| 200.59.104.x/24 | /8 | 10617 | no |
Meaning of status in Received column:
| no | Packets spoofed from adjacent netblock were not received, probably due to blocking |
| yes | Packets spoofed from adjacent netblock were received (but that netblock is within the source AS) |
IPv4 Outbound Filtering Depth:
The tracefilter test found your host
unable to spoof routable, non-adjacent source addresses through
even the first IP hop.
Summary:
The results from all tests are aggregated to produce a summary
"State of IP Spoofing" report.
Feedback:
We welcome questions and feedback to the Spoofer Information Mailing List
and invite users to join the Spoofer
Users Mailing List for discussion and announcements.