PCH Prefix List Sanity Checker

The PCH Prefix List Sanity Checker is an interactive tool to help Internet Service Provider provisioning technicians validate IP prefixes that customers want to advertise via BGP. It generates properly formatted Cisco and Juniper prefix-lists to cut-and-paste into configurations or provisioning systems.

The PCH Prefix List Sanity Checker accepts lists of IP addresses in many formats:

  • CIDR or classful
  • Address-ranges (including pre-CIDR address-ranges)
  • Cisco or Juniper prefix or filter lists
  • Cisco route statements
  • show ip bgp output
  • show ip route output
  • Regional Internet Registry whois entries
  • Internet Routing Registry entries

It subjects lists of prefixes to several forms of analysis:

  • It flags "bogon" prefixes (prefixes that shouldn't be advertised), and critical infrastructure like exchange point subnets and root or top level domain name servers.
  • It flags prefixes that are more-specifics of something elsewhere on the customer's list.
  • It maps geographic distribution of the prefixes, such that prefixes from unexpected parts of the world will stand out.
  • It reports prefixes with high incidents of Botnet infections or other known security issues.

It produces a table of prefixes, which can be sorted by registrant, country, originating AS, botnet infection reports, or status. Prefixes that fail the tests will be shown in red, and will default to not being accepted from the customer. Each excluded prefix will have a checkbox that the install technician can use to override the prefix's rejection, if warranted.

The PCH Prefix List Sanity Checker produces prefix-lists in the following formats:

  • Alcatel prefix-lists
  • Cisco prefix-lists
  • Force10 prefix-lists
  • Juniper prefix-lists
  • Juniper set-commands

Start by submitting a list of prefixes. You will need to login with a PCH web account.