List of protocols

  1. Built-in protocols — updated along with the SSG software version. Installing a new version requires a DPI reboot, which causes traffic interruption.
    If needed, they can be supplemented with up-to-date attributes from the VAS Cloud. This is only necessary for complex protocols, but the option is available for all.
  2. Cloud protocols created by VAS Experts — are periodically updated from the VAS Cloud. This ensures that popular applications remain up-to-date as their behavior changes. Description
  3. Custom (user-defined) protocols — protocols created by users via the GUI using VAS Cloud tools. These have higher priority than those loaded from the VAS Cloud, and within them, IP:PORT takes precedence over IP and CIDR. It is possible to add a protocol based on IP, SNI, or AS. Guide.
  4. DSL protocols — protocols described in the DSL language and connected to DPI as a separate module, without reinstalling the software or causing traffic interruption. Unlike custom protocols, a DSL protocol is a finite state machine that analyzes the first N packets of a flow against defined conditions (ports, AS numbers, payload bytes, DSL expressions) and determines whether the flow matches the protocol.
    DSL protocols are created by VAS Experts specialists upon client request to Technical Support.

ProtocolIDDPI versionProtocol groupProtocol typeUpdateDescription
ulistproc37212.2Application serversBuilt-inAs neededUListProc manages user list propagation and secure presence information in messaging systems.
legent-137312.2Application serversBuilt-inAs neededLegent-1 protocol supports administrative controls for mainframe or distributed systems.
legent-237412.2Application serversBuilt-inAs neededLegent-2 is a license and control protocol used by Legent Corp for system management tools.
hassle37512.2Network servicesBuilt-inAs neededA protocol for Hassle, a lightweight network service or tool.
nip37612.2Network servicesBuilt-inAs neededNetwork Interconnect Protocol for secure peer-to-peer connectivity.
tnETOS37712.2Application serversBuilt-inAs neededTNetOS is a custom protocol used in telecommunications systems for secure management or billing.
dsETOS37812.2Application serversBuilt-inAs neededDSETOS is a systems management protocol used in legacy network administration suites.
is99c37912.2Application serversBuilt-inAs neededIS99C is a dial-in modem protocol with secure extensions for PPP and mobile tunneling.
is99s38012.2Application serversBuilt-inAs neededIS99S is a legacy CDMA protocol used in mobile data transport.
hp-collector38112.2Debugging and measurementBuilt-inAs neededHP-Collector gathers secure configuration and performance data from HP infrastructure components.
hp-managed-node38212.2Debugging and measurementBuilt-inAs neededHP-Managed-Node manages agent communication in HP OpenView or HPOM environments.
hp-alarm-mgr38312.2Debugging and measurementBuilt-inAs neededHP-Alarm-Mgr protocol receives fault and performance alarms from HP device agents.
arns38412.2Application serversBuilt-inAs neededARNS (Authenticated RNS) is a Novell protocol for secure remote name services.
ibm-app38512.2Application serversBuilt-inAs neededIBM-App protocol supports secure deployment and monitoring of IBM enterprise applications.
asa38612.2Instant messengersBuilt-inAs neededASA protocol handles secure syslog and alert delivery from Cisco Adaptive Security Appliances.
aurp38712.2Instant messengersBuilt-inAs neededAURP (AppleTalk Update-based Routing Protocol) is a legacy Apple protocol for router sync.
unidata-ldm38812.2Network servicesBuilt-inAs neededLocal Data Manager sync protocol for Unidata meteorological data distribution.
ldap38912.2Network servicesBuilt-inAs neededA protocol for LDAP (Lightweight Directory Access Protocol), accessing directories.
uis39012.2Network servicesBuilt-inAs neededUniversal Interface Service protocol for integrating user interfaces across embedded systems.
synotics-relay39112.2Debugging and measurementBuilt-inAs neededSynotics-Relay forwards traps and status messages in Synoptics network segments.