nDPI support for deep packet inspection
So, I was looking into EdgeOS ability to classify/block/prioritize traffic for certain application and I figured out that it falls really short of such capability. Even built-in p2p support in firewall (i.e. keywords "p2p" and "edonkey" for matching) seem to be broken, or at least I couldn't get it to work.
As the standard l7-filter has been known to perform poorly, hereby I suggest that EdgeMax team adds support for nDPI to EdgeOS so we can perform deep packet inspection and prioritise, block, or otherwise modify traffic based on packet inspection. It goes without saying that this should be tied into the firewall so that mark/match concept can be applied.
You must be a registered user to add a comment. If you've already registered, sign in. Otherwise, register and sign in.
-
UBNT-benpin on: PLEASE ADVISE IF THIS IS A VALID APP
-
UBNT-benpin on: REQUEST- FULL ACCOUNT FEATURES UCRM
- DeviceLocksmith on: DNSMasq bind-dynamic
- wessel1512 on: CLI reference for EdgeRouter
- dan7 on: MAC address access-group and access-list
- brotherdust on: MP-BGP Support
-
UBNT-benpin on: RPKI and MP-BGP support
-
UBNT-benpin on: Ability to disable port forwards, rather then delete them
- ubentran1 on: Allow Cut And Paste in CLI
-
UBNT-benpin on: No-op firewall rule action
- Request - Dual Peers/Gateways for Site-to-Site VPN
- UPnP IPv6 Firewall Support (recompile miniupnpd with IPv6 features enabled)
- DPI Firewall Rule Reporting
- Split vyatta-router.service into separate systemd units
- BGP Route Origin Validation support
- Scheduled QOS
- PoE that supports 802.11at/af
- PLEASE ADVISE IF THIS IS A VALID APP
- REQUEST- FULL ACCOUNT FEATURES UCRM
- Support AES for SNMPv3 (RFC 3826)