Question about NBAR.. not really related to CCIE lab

From: Niche (jackyliu419@gmail.com)
Date: Mon Oct 24 2005 - 04:39:31 GMT-3


Hi guys,

Is NBAR truely using layer-7 application pattern to classify traffic for
bandwidth control, security blocking, etc?
Or it just use protocl type (tcp, udp) with port number still?

We may need to consider to use it for controlling bandwidth usage to p2p
file sharing traffic. So I am concerning about the effectiveness of NBAR to
this issue (e.g. users can modify the usual port number to a new one of the
application in order to avoid traditional port-number tracking method).

Cheers~
Jacky



This archive was generated by hypermail 2.1.4 : Sun Nov 06 2005 - 22:00:52 GMT-3