October DealsAmazon USOctober deal check: compare before you payAmazon US: current deals, useful picks and tech finds.Check DealsSlow PC?RecommendedPC slow today? Run a repair scan before it gets worseResolve common Windows issues and optimize system performance.Scan NowOctober DealsAmazon USDeal season is back - check today's better picksAmazon US: current deals, useful picks and tech finds.See Picks×
Skip to content
ASN

How to Find the ASN of an IP Address (IPv4 or IPv6)

Free tools Windows power users keep installed

One-click scans. No signup required.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Fast answer: enter the address in ARIN Whois/RDAP, RIPEstat, or Team Cymru’s IP-to-ASN lookup. ARIN shows the registration network and related organization; RIPEstat and Team Cymru add routing-oriented views. If the results differ, that usually means you are comparing registration ownership with the ASN currently originating a BGP route—not that one lookup is necessarily broken.

What an ASN tells you

An Autonomous System Number (ASN) identifies an autonomous system used in Internet routing and registration records. An autonomous system may be an ISP, cloud provider, university, enterprise, content network, or another organization that operates a coordinated set of IP prefixes under a common routing policy.

An IP address does not have one permanent, universal “owner” field. A registry can show which organization or network holds or manages an address block, while Border Gateway Protocol (BGP) data shows which ASN is currently announcing a route. Those are related but different questions:

  • Registration ASN or network: what the regional Internet registry records for the address or its containing allocation.
  • Origin ASN: the ASN observed originating the route in BGP at a particular time.
  • Path ASN: other autonomous systems a route may traverse as transit; these are not necessarily the origin of the address.

State your question before looking up the address. “Which organization is assigned this block?” calls for registry data. “Which ASN is announcing this address right now?” calls for routing data. For incident response, peering analysis, or an audit, retain both views and the time of each query.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Method 1: Look up the address in ARIN Whois/RDAP

Browser steps

  1. Copy the complete IPv4 or IPv6 address. Preserve IPv6 colons, compression, and hexadecimal characters exactly.
  2. Open ARIN Whois/RDAP and paste the address into the search field. ARIN’s search recognizes a specific IP format and returns the network and related-entity information for that address.
  3. Read the returned network object. Note the network name, handle, organization, country or registration details, and any ASN/aut-num relationship shown in the related objects.
  4. Record the query address, the date and time, and the exact result. Registration records can change after reassignment, transfer, or reclamation.

ARIN issues four-byte ASNs. When searching for an ASN in ARIN’s interface, the AS prefix may be omitted; for example, searching for 64500 is accepted as well as AS64500.

Use ARIN’s machine-readable RDAP endpoint

For a script, replace <IP-address> with a URL-encoded IPv4 or IPv6 address in the documented object path:

https://rdap.arin.net/registry/ip/<IP-address>

RDAP returns JSON. A client should inspect the HTTP status before parsing, preserve the original response for an audit trail, and follow links in the response rather than assuming a fixed set of fields. IPv6 addresses remain valid in the path when properly encoded by your HTTP library.

Method 2: Query RIPEstat for routing context

RIPEstat accepts IPv4 and IPv6 addresses as well as ASN, prefix, range, hostname, and country-code searches. Enter the address in its web interface to inspect routing-oriented information. Its API is intended for developers and network operators who need repeatable, programmatic access.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

What to capture from RIPEstat

  • The ASN identified as the route origin, if one is present.
  • The announced prefix and whether the address is covered by a more-specific route.
  • The observation time and any historical view offered by the selected RIPEstat measurement.
  • The raw response or a linkable record, when your workflow needs evidence that can be reviewed later.

RIPEstat’s exact API endpoint and response fields can change. Use its current API documentation when implementing a client instead of hard-coding an undated example. Treat a missing route, a reserved address, or a transient collection gap as a routing observation—not proof that the registry has no assignment.

Method 3: Cross-check with Team Cymru

Team Cymru provides an independent IP-to-ASN lookup. Open its IP to ASN Lookup, choose IPv4 or IPv6, submit the address, and read the returned ASN and related routing information. Both address families are supported, but each query may contain only one family; do not mix IPv4 and IPv6 values in the same submission.

Use Team Cymru as a second source when the result matters operationally. Agreement across independent routing-oriented services increases confidence in the current origin, while disagreement is a signal to examine prefixes, timestamps, and route changes—not a reason to average the numbers.

Command-line and API workflows

Fetch ARIN RDAP with cURL

This command retrieves the JSON object for an IPv4 address. Replace the example with the address you need:

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.
curl --fail --silent --show-error 
  "https://rdap.arin.net/registry/ip/8.8.8.8" 
  -o arin-8.8.8.8.json

For an IPv6 address, let cURL encode the URL safely. In a shell variable, quote the complete URL:

ip="2001:4860:4860::8888"
curl --fail --silent --show-error 
  "https://rdap.arin.net/registry/ip/${ip}" 
  -o arin-ipv6.json

--fail makes HTTP errors non-successful; retain stderr and the exit code in automation so a failed lookup is not mistaken for an empty result.

Parse the response in Python

import json
import requests

ip = "8.8.8.8"
url = f"https://rdap.arin.net/registry/ip/{ip}"
response = requests.get(url, timeout=30)
response.raise_for_status()
data = response.json()

print("network:", data.get("name"))
print("handle:", data.get("handle"))
for link in data.get("links", []):
    print("link:", link.get("rel"), link.get("href"))

with open("arin-result.json", "w", encoding="utf-8") as fh:
    json.dump(data, fh, indent=2)

RDAP schemas can contain nested entities and links rather than a single ASN property. A production parser should walk the documented entities and related aut-num objects, preserve unknown fields, and avoid assuming that every address has an ASN relationship in the registry response.

Fetch the same object in Node.js

const ip = '8.8.8.8';
const res = await fetch(`https://rdap.arin.net/registry/ip/${ip}`);
if (!res.ok) throw new Error(`RDAP returned ${res.status}`);
const data = await res.json();
console.log({ network: data.name, handle: data.handle });

For RIPEstat automation, use the current API documentation to select the appropriate IP or routing-data query and response fields. Keep the source name and request timestamp beside the parsed ASN.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Why ASN lookup sites disagree

Registration versus routing

ARIN’s RDAP is registration-focused: it describes the network object and related entities recorded for an address. RIPEstat and Team Cymru expose routing observations. An organization may register a block while another ASN announces it through a provider, or a customer may announce a more-specific prefix. The two answers can both be correct for their respective questions.

More-specific routes and BGP changes

BGP selects the most-specific reachable route. A /24 announcement can take precedence over a covering /16, and announcements can be withdrawn or moved between transit providers. Query the same address at the same time across sources and save timestamps before drawing a conclusion.

Reassignment, transfers, and stale caches

Registry records change after transfers or reassignment. Public routing collectors also differ in vantage point and update interval. A cached page, a delayed collector, or a recently changed route can produce different results for a short period.

Special-use and unannounced addresses

Private, reserved, documentation, or otherwise special-use addresses may have no public origin ASN. An address can also be registered but not currently announced. Report “no observed route” separately from “no registration.”

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

A repeatable verification checklist

  1. Validate that the input is a syntactically valid IPv4 or IPv6 address and note its family.
  2. Run ARIN RDAP and save the raw JSON, HTTP status, and timestamp.
  3. Run RIPEstat for the routing view; use Team Cymru as an independent cross-check when the result is important.
  4. Compare the network allocation, announced prefix, origin ASN, and observation times—not just the organization names.
  5. For an incident, repeat the checks after a short interval and preserve both snapshots. A route withdrawal or new more-specific announcement may explain a change.
Independent reader supportYour contribution helps us test, update, and keep practical guides available for everyone.Support on Ko-Fi

Troubleshooting common failures

“No result” or an empty ASN field

Check for a typo, private or reserved address, and whether you are viewing registration data when you need routing data. Try RIPEstat or Team Cymru, then label the outcome precisely: unregistered, unannounced, or not observed by that service.

HTTP 400 or 404 from RDAP

Verify the address format and URL encoding, especially for IPv6. Do not append an ASN prefix to an IP endpoint. Retry with a current address and inspect the response body; a 404 can mean that the queried registry is not authoritative for that address.

Different ASNs from two services

Check whether one value is a registry association and the other is a BGP origin. Compare prefixes and timestamps, look for a more-specific route, and repeat the query from the current interfaces. Never claim that one service is “wrong” without identifying the data type and observation time.

Automation works intermittently

Implement timeouts, exponential backoff for transient failures, HTTP-status checks, and response logging. Respect service usage policies, cache results only with a clearly recorded retrieval time, and avoid treating a timeout as a negative lookup.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Or skip the browser setup

If your workflow also needs a visual record of an IP-lookup page, ScreenshotNeo can capture it with one request. Before capture it accepts cookie or consent banners and removes more than 60 known consent platforms, newsletter popups, and chat widgets; each cleanup step can be turned off. Bot checks or CAPTCHAs, blank pages, timeouts, failed loads, and cache hits are not billed, and response headers identify the page verdict and billing status. Its MCP server lets Claude, Cursor, or another MCP client call take_screenshot, get_page_info, and capture_pdf.

Example cURL request (full option reference: ScreenshotNeo documentation):

curl -G "https://api.screenshotneo.com/v1/shot" -d access_key=YOUR_API_KEY --data-urlencode url=https://stripe.com -o shot.webp

You can use the same endpoint from Python:

import requests
r = requests.get("https://api.screenshotneo.com/v1/shot", params={"access_key": "YOUR_API_KEY", "url": "https://stripe.com"}, timeout=90)
open("shot.webp", "wb").write(r.content)

Or Node.js:

const q = new URLSearchParams({ access_key: 'YOUR_API_KEY', url: 'https://stripe.com' }); const res = await fetch(`https://api.screenshotneo.com/v1/shot?${q}`);

ScreenshotNeo includes full-page and element captures, device and retina settings, PDF output, custom headers and cookies, waits, request blocking, caching, signed links, asynchronous jobs, bulk capture, and an API for usage. The Free plan includes 1,000 screenshots per month with no card; paid plans start at $5 for 3,000. Create a free ScreenshotNeo account.

What to record for an audit

  • Exact IP address and address family.
  • Service and endpoint used (ARIN RDAP, RIPEstat, or Team Cymru).
  • UTC timestamp, HTTP status, and raw response or saved page.
  • Registry network/organization, announced prefix, origin ASN, and any uncertainty.
  • Whether the address was tested again and whether the result changed.

This record turns a one-off lookup into evidence that another operator can reproduce and explain after routing or registration data changes.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Frequently Asked Questions

Can one IP address have more than one ASN?

Yes. Different prefixes, time periods, or data sources can associate the address with different ASNs. Distinguish the registered network from the currently observed BGP origin and include timestamps.

Does an ASN identify a physical location?

No. An ASN identifies an autonomous system, not a precise server or user location. Registration country, geolocation databases, and network routing are separate data sets.

Should I use ARIN for every IP address?

Use ARIN when its registry is authoritative for the address; otherwise follow the appropriate regional registry or use a routing service such as RIPEstat or Team Cymru for the origin view.

Product prices and availability are accurate as of the date/time indicated and are subject to change. Any price and availability information displayed on Amazon at the time of purchase will apply.

What’s actually slowing this PC down?

Pick the symptom - the matching free tool is one click away.

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Leave a Reply

Your email address will not be published. Required fields are marked *

Special offer. See more information about Outbyte and uninstall instructions. Please review EULA and Privacy policy.

Read next

Recommended PC Tool
Recommended PC Tool
Windows Errors? Fix Them Before They SpreadFree repair scan
Crashes, No Sound, or Screen Glitches?Free driver scan

Two free Windows tools

One Free Minute Could Fix That PC

Before you go - each of these free tools takes about a minute and tackles what quietly slows a Windows PC down.

Special offer. View Outbyte info, uninstall instructions, EULA, and Privacy Policy.