Logo

Session Report

Summary:
Test run at: 2020-05-11 21:35:03 GMT
Client Prefix (v4): 176.32.35.x/24
Client AS (v4): 51659 (ASBAXET)
IPv4 Probes: 75
Client Prefix (v6): 2a00:b700:xx::/40
Client AS (v6): 51659 (ASBAXET)
IPv6 Probes: 72
Outbound spoofing summary (from the client to our server)
Source address type IPv4IPv6
Private - RFC1918 or ULA blockedblocked
Routable receivedreceived
Largest spoofable neighbor prefix length /8/16
Spoof status key
receivedSpoofed packet was received.Pattern of tests from this IP block indicates a switch from allowing spoofing to blocking it.
rewrittenSpoofed packet was received, but the source address was changed en route.
blockedSpoofed packet was not received, but unspoofed packet was.
unknownNeither spoofed nor unspoofed packet was received.

IPv4 Adjacent Netblock Testing:

Your host (176.32.35.x/24) can spoof 16777215 neighboring addresses (within your /8 prefix)


Spoofed source address (anon)Prefix
Length
ASN of spoofed
source address
Received
176.32.35.x/24/3151659yes
176.32.35.x/24/3051659yes
176.32.35.x/24/2951659yes
176.32.35.x/24/2851659yes
176.32.35.x/24/2751659yes
176.32.35.x/24/2651659yes
176.32.35.x/24/2551659yes
176.32.35.x/24/2451659yes
176.32.34.x/24/2351659yes
176.32.33.x/24/2251659yes
176.32.39.x/24/2151659yes
176.32.43.x/24/2056919yes
176.32.51.x/24/1956822yes
176.32.3.x/24/1849332yes
176.32.99.x/24/1716509yes
176.32.163.x/24/1628978yes
176.33.35.x/24/1534984yes
176.34.35.x/24/1416509yes
176.36.35.x/24/1339608yes
176.40.35.x/24/1234984yes
176.48.35.x/24/1112389yes
176.0.35.x/24/1012638yes
176.96.35.x/24/9197956yes
176.160.35.x/24/85410yes

Meaning of status in Received column:

yesPackets spoofed from adjacent netblock were received
yesPackets spoofed from adjacent netblock were received (but that netblock is within the source AS)

IPv4 Outbound Filtering Depth:

The tracefilter test found your host able to spoof routable, non-adjacent source addresses through the first 10 IP hop(s).
IPv6 probes:
Spoofed source addressDestinationReceived
2001:48d0:101:501::1592001:48d0:101:501::242yes
2001:4978:1fb:6400::d22001:48d0:101:501::242no
2001:49aa:111:aa00::112001:48d0:101:501::242no
fd11:1111:1111::11112001:48d0:101:501::242no
2001:48d0:101:501::1592001:48d0:101:501::247yes
2001:4978:1fb:6400::d22001:48d0:101:501::247yes
2001:49aa:111:aa00::112001:48d0:101:501::247yes
fd11:1111:1111::11112001:48d0:101:501::247no
2001:48d0:101:501::1592001:610:510:115:192:42:115:98yes
2001:4978:1fb:6400::d22001:610:510:115:192:42:115:98no
2001:49aa:111:aa00::112001:610:510:115:192:42:115:98no
fd11:1111:1111::11112001:610:510:115:192:42:115:98no
2001:48d0:101:501::1592001:630:212:225:225:90ff:fe0c:45a6yes
2001:4978:1fb:6400::d22001:630:212:225:225:90ff:fe0c:45a6no
2001:49aa:111:aa00::112001:630:212:225:225:90ff:fe0c:45a6no
fd11:1111:1111::11112001:630:212:225:225:90ff:fe0c:45a6no
2001:48d0:101:501::1592001:770:18:7:225:90ff:fe0c:acb4yes
2001:4978:1fb:6400::d22001:770:18:7:225:90ff:fe0c:acb4yes
2001:49aa:111:aa00::112001:770:18:7:225:90ff:fe0c:acb4yes
fd11:1111:1111::11112001:770:18:7:225:90ff:fe0c:acb4no
2001:48d0:101:501::1592001:df0:4:800:21c:c0ff:feb2:ad5fyes
2001:4978:1fb:6400::d22001:df0:4:800:21c:c0ff:feb2:ad5fyes
2001:49aa:111:aa00::112001:df0:4:800:21c:c0ff:feb2:ad5fyes
fd11:1111:1111::11112001:df0:4:800:21c:c0ff:feb2:ad5fno
2001:48d0:101:501::1592607:f278:2:13:ba27:ebff:fe3f:b21eyes
2001:4978:1fb:6400::d22607:f278:2:13:ba27:ebff:fe3f:b21eyes
2001:49aa:111:aa00::112607:f278:2:13:ba27:ebff:fe3f:b21eyes
fd11:1111:1111::11112607:f278:2:13:ba27:ebff:fe3f:b21eno
IPv6 Adjacent Netblock Testing:
Spoofed source address (anon)Prefix
Length
ASN of spoofed
source address
Received
2a00:b700:xx::/40/12051659yes
2a00:b700:xx::/40/11251659yes
2a00:b700:xx::/40/10451659yes
2a00:b700:xx::/40/9651659yes
2a00:b700:xx::/40/8851659no
2a00:b700:xx::/40/8051659yes
2a00:b700:xx::/40/7251659no
2a00:b700:xx::/40/6451659yes
2a00:b700:xx::/40/5651659yes
2a00:b700:xx::/40/4851659yes
2a00:b700:xx::/40/40UNROUTEDno
2a00:b700:80xx::/40/32UNROUTEDno
2a00:b780:xx::/40/24UNROUTEDno
2a00:3700:xx::/40/16UNROUTEDyes

Meaning of status in Received column:

noPackets spoofed from adjacent netblock were not received, probably due to blocking
yesPackets spoofed from adjacent netblock were received (but that netblock is within the source AS)
Summary:
The results from all tests are aggregated to produce a summary "State of IP Spoofing" report.
Feedback:
We welcome questions and feedback to the Spoofer Information Mailing List and invite users to join the Spoofer Users Mailing List for discussion and announcements.
Last Modified