[prev in list] [next in list] [prev in thread] [next in thread] 

List:       flowscan
Subject:    Re: CUFlow detecting P2P
From:       Robert Lowe <Robert.H.Lowe () lawrence ! edu>
Date:       2005-02-25 0:20:30
Message-ID: 421E6F4E.1010503 () lawrence ! edu
[Download RAW message or body]

robert cushing wrote:
> Has anyone heard of a way to do P2P detection with CUFlow or another
> flowscan .cf which will accurately identify P2P apps that hop ports?

I haven't.  But you're only getting transport layer information...

> I assume you need technology like a Packetshaper to do this deep packet
> inspection, but was curious as to if it was possible to identify newer
> P2P. Looks like CUFlow was developed around the Napster era.

You can still classify a lot of p2p apps at layer 4, but if you want
or need layer 7 signatures, you'll have to get more help, like
Packeteer.

-Robert

--
Help        mailto:majordomo@net.doit.wisc.edu and say "help" in message body
Unsubscribe mailto:majordomo@net.doit.wisc.edu and say
"unsubscribe flowscan" in message body
Archive     http://net.doit.wisc.edu/~plonka/list/flowscan/archive/
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic