I'm really impressed with nTOP +nDPI for protocol detection, works really well! I've been playing with ndpi-netfilter to mark packets w/ DSCP tags, I have a QoS box that I use DSCP for traffic shaping.
Is there another better way to mark packets with nDPI than using the netfilter hack? nTop is doing FAR better at detecting packets than w/ the netfilter hack, plus the netfilter hack has some squirrely tricks to function that are making it miss important protocols. I can match bittorrent and netflix (and soo many more!) with nTOP perfectly, I'm no impressed! but with the netfilter hack I can't get netflix or other stuff like ICMP to work. Makes me think that netfilter is the wrong place to do this... Any ideas/advice would be very much appreciated! Thanks!
_______________________________________________ Ntop-misc mailing list [email protected] http://listgateway.unipi.it/mailman/listinfo/ntop-misc
