请输入您要查询的百科知识:

 

词条 Network Based Application Recognition
释义

  1. References

  2. External links

Network Based Application Recognition (NBAR)[1] is the mechanism used by some Cisco routers and switches to recognize a dataflow by inspecting some packets sent.

The networking equipment which uses NBAR does a deep packet inspection on some of the packets in a dataflow, to determine which traffic category the flow belongs to. Used in conjunction with other features, it may then program the internal application-specific integrated circuits (ASICs) to handle this flow appropriately. The categorization may be done with Open Systems Interconnection (OSI) layer 4 info, packet content, signaling, and so on but some new applications have made it difficult on purpose to cling to this kind of tagging.[2]

The NBAR approach is useful in dealing with malicious software using known ports to fake being "priority traffic", as well as non-standard applications using dynamic ports.[3] That's why NBAR is also known as OSI layer 7 categorization.

On Cisco routers, NBAR is mainly used for Quality of Service and Security purposes.

References

1. ^NBAR defined at Cisco website{{dead link|date=February 2018 |bot=InternetArchiveBot |fix-attempted=yes }}
2. ^BitTorrent Encryption and Obfuscation
3. ^Using Network-Based Application Recognition and ACLs for Blocking the "Code Red" Worm, Cisco.

External links

  • Network Based Application Recognition: RTP Payload Classification, Cisco.
  • Block P2P Traffic on a Cisco IOS Router using NBAR Configuration Example, Cisco.
{{compu-network-stub}}

1 : Computer network security

随便看

 

开放百科全书收录14589846条英语、德语、日语等多语种百科知识,基本涵盖了大多数领域的百科知识,是一部内容自由、开放的电子版国际百科全书。

 

Copyright © 2023 OENC.NET All Rights Reserved
京ICP备2021023879号 更新时间:2024/11/12 21:14:52