Subject: Re: Layer 7 filtering
To: Marcin Jessa <lists@yazzy.org>
From: Michael Richardson <mcr@sandelman.ottawa.on.ca>
List: tech-net
Date: 04/05/2006 22:41:29
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


>>>>> "Marcin" == Marcin Jessa <lists@yazzy.org> writes:
    Marcin> As many of you may know it's PITA to filter bittorrent
    Marcin> traffic.  One of the most successful ways is to inspect

  Don't. It won't work. People and programs are way too adaptable.

    Marcin> layer 7 packets.  Is this possible with any of firewalling
    Marcin> systems avaliable for NetBSD?

  QoS the traffic that you care about to an appropriate level of
service.

- -- 
]       ON HUMILITY: to err is human. To moo, bovine.           |  firewalls  [
]   Michael Richardson,    Xelerance Corporation, Ottawa, ON    |net architect[
] mcr@xelerance.com      http://www.sandelman.ottawa.on.ca/mcr/ |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)
Comment: Finger me for keys

iQEVAwUBRDR/2ICLcPvd0N1lAQK1NQf/Tf0fS6qsbovM6Y8MS3uBSy28PUfX5N8t
/2N7Tpdr1pe6Qw/+/+nRRCb2MtjnKMFRqZ0G02wZlhRV4LobroTDz1jdYmbp3WSN
vxS52Mcet1tBOJiTFNn/rcUePpRKlhXFf90rxkN0VASICIQjL8Ey3ZqINNLfDYk9
nA0mN4PvxZ0NST7GWOVOHr7hm0bzcnbJ/DPhinTX0y+wZSQSt07c4bsIuaqtsCGa
YseKsIZHpz8uRk0TPuaMLkNpRsM8qC9HPaLWCcSlfdmbMwrjwHVXdR2cgzhgry1j
S7747YFMHGrzEQ1Cro/4ZFyzf4FZBjLhL0ubW8qe6r0VpHDEvnaWyw==
=AwJ5
-----END PGP SIGNATURE-----