Re: Issues w/ db-ip country database

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



> On Nov 17, 2020, at 1:06 AM, Jan Engelhardt <jengelh@xxxxxxx> wrote:
> 
> 
> On Tuesday 2020-11-17 04:36, Philip Prindeville wrote:
>> 
>> Many known blocks owned by Chinanet for instance, don’t show up as /11 or /13
>> networks, but as dozens of /23 networks instead in China, the US, Japan, and
>> Canada. Clearly not correct.
> 
> Do you have some sample netnumbers so that we can look at it from our side?


Okay, sure.

212.174.0.0/15 supposedly is a single block of TurkTelecom, but the database shows it as being 296 subnets, mostly /23’s.

183.128.0.0/11 is supposedly a single block of Chinanet, but the database shows it as being 329 subnets (164 supposedly in the US), again mostly /23’s and /22’s:

...
183.136.192.0,183.136.193.99,CN
183.136.193.100,183.136.193.255,US
...

I picked one of those US subnets and did a traceroute to it:

% traceroute 183.136.193.100
traceroute to 183.136.193.100 (183.136.193.100), 30 hops max, 60 byte packets
 1  openwrt.redfish-solutions.com (192.168.1.252)  0.397 ms  0.225 ms  0.355 ms
 2  172.18.216.1 (172.18.216.1)  3.111 ms  2.756 ms  2.429 ms
 3  ip-66-232-69-145.syringanetworks.net (66.232.69.145)  2.158 ms  1.897 ms  2.316 ms
 4  * * *
 5  be5991.rcr51.boi01.atlas.cogentco.com (38.122.5.5)  3.117 ms be4798.rcr51.boi01.atlas.cogentco.com (38.122.5.161)  2.688 ms be5991.rcr51.boi01.atlas.cogentco.com (38.122.5.5)  3.680 ms
 6  be2541.ccr32.slc01.atlas.cogentco.com (154.54.3.121)  10.118 ms be2539.ccr21.slc01.atlas.cogentco.com (154.54.3.129)  10.236 ms  10.734 ms
 7  be3110.ccr22.sfo01.atlas.cogentco.com (154.54.44.141)  25.536 ms  25.243 ms be3109.ccr21.sfo01.atlas.cogentco.com (154.54.44.137)  25.049 ms
 8  be3670.ccr41.sjc03.atlas.cogentco.com (154.54.43.14)  27.162 ms  26.952 ms  26.714 ms
 9  38.104.138.106 (38.104.138.106)  34.213 ms  33.847 ms  33.635 ms
10  202.97.50.73 (202.97.50.73)  29.346 ms  29.148 ms  29.460 ms
11  202.97.50.125 (202.97.50.125)  162.534 ms  162.206 ms  161.807 ms
12  202.97.90.30 (202.97.90.30)  157.568 ms  156.878 ms  156.387 ms
13  202.97.50.133 (202.97.50.133)  183.191 ms  182.953 ms  182.695 ms
14  202.97.82.18 (202.97.82.18)  183.290 ms  183.048 ms  182.813 ms
15  61.153.82.134 (61.153.82.134)  187.541 ms 222.4.175.61.dial.nb.zj.dynamic.163data.com.cn (61.175.4.222)  188.273 ms 61.153.82.134 (61.153.82.134)  188.029 ms
16  * * *
17  * * *
18  * * *
^C




[Index of Archives]     [Netfitler Users]     [Berkeley Packet Filter]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux