Reply To: problem about QoS and firewall (not work)

Home Page Forums Network Management ZeroShell problem about QoS and firewall (not work) Reply To: problem about QoS and firewall (not work)

#46130

Hi launcelot!

It’s not possible to create 100% reliable P2P filter. For instance, torrent protocol is able to use end-to-end ecnryption and then even deep packet inspection doesn’t do the trick. I guess other protocols do the same as well or are tending to.

By the way, L7 filter is not intended to use by firewalls but for QoS shapers. IPP2P filter works only for unencrypted traffic.

What you can do is to create LOW_PRIORITY traffic class where you put packets you don’t know. All other traffic like VoIP, HTTP, SMTP, IMAP, POP3, DNS can be distinguished by L7-filter or by protocol type (ICMP).

Cheers
Jojo