identifying application type of network traffic

Suresh Ramasubramanian ops.lists at gmail.com
Thu Dec 16 09:54:30 UTC 2004


On Thu, 16 Dec 2004 17:41:49 +0800 (CST), Joe Shen
<joe_hznm at yahoo.com.sg> wrote:
> 
> My situation is not to apply QoS policy to those
> application but to get statistics of applications.
> 
> According to netflow records, the traffic across our
> egress interface has port number range from 11 to
> 65534 ,  there is record for port 0!
> So, what are those applications ?
> 

Passive fingerprinting is about the only thing that's going to tell
you, without actually sniffing the traffic that you're seeing.

Could be anything at all.

-- 
Suresh Ramasubramanian (ops.lists at gmail.com)



More information about the NANOG mailing list