List of protocols

  1. Built-in protocols — updated along with the SSG software version. Installing a new version requires a DPI reboot, which causes traffic interruption.
    If needed, they can be supplemented with up-to-date attributes from the VAS Cloud. This is only necessary for complex protocols, but the option is available for all.
  2. Cloud protocols created by VAS Experts — are periodically updated from the VAS Cloud. This ensures that popular applications remain up-to-date as their behavior changes. Description
  3. Custom (user-defined) protocols — protocols created by users via the GUI using VAS Cloud tools. These have higher priority than those loaded from the VAS Cloud, and within them, IP:PORT takes precedence over IP and CIDR. It is possible to add a protocol based on IP, SNI, or AS. Guide.
  4. DSL protocols — protocols described in the DSL language and connected to DPI as a separate module, without reinstalling the software or causing traffic interruption. Unlike custom protocols, a DSL protocol is a finite state machine that analyzes the first N packets of a flow against defined conditions (ports, AS numbers, payload bytes, DSL expressions) and determines whether the flow matches the protocol.
    DSL protocols are created by VAS Experts specialists upon client request to Technical Support.

ProtocolIDDPI versionProtocol groupProtocol typeUpdateDescription
fcp51012.2Network servicesBuilt-inAs neededA protocol for FCP (Fibre Channel Protocol), managing Fibre Channel communication.
passgo51112.2Network servicesBuilt-inAs neededPassGo authentication service protocol for secure login and access control sync.
biff51212.2E-MailBuilt-inAs neededBiff notifies users of new mail arrival on UNIX systems, often over port 512.
exec51212.2Remote controlBuilt-inAs neededRemote command execution service.
login51312.2Remote controlBuilt-inAs neededGeneric remote authentication service.
who51312.2Debugging and measurementBuilt-inAs neededWHO protocol returns a list of logged-in users on remote systems, similar to UNIX 'who'.
shell51412.2Remote controlBuilt-inAs neededGeneric remote command-line shell access.
syslog51412.2Debugging and measurementBuilt-inAs neededSyslog is a standard protocol for sending system logs and events to centralized log servers.
printer51512.2PrintingBuilt-inAs neededGeneric service for managing print queues and printer jobs.
videotex51612.2Video, picturesBuilt-inAs neededVideotex is an early standard for interactive TV and online content delivery over telecommunications networks.
talk51712.2Instant messengersBuilt-inAs neededTalk protocol supports terminal-based chat between Unix systems, with optional encryption.
ntalk51812.2Instant messengersBuilt-inAs neededNtalk is a legacy terminal-based real-time chat protocol over networked Unix systems.
utime51912.2Debugging and measurementBuilt-inAs neededUTime protocol provides unicast time synchronization similar to SNTP with optional authentication.
efs52012.2Network servicesBuilt-inAs neededA protocol for EFS (Extended File System), extending file system access over networks.
router52012.2Network servicesBuilt-inAs neededRouter protocol generic telemetry for routing systems, table updates, and peer sync.
ripng52112.2Network servicesBuilt-inAs neededRouting Information Protocol next generation (RIPng) for IPv6-based routing updates.
ulp52212.2Network servicesBuilt-inAs neededUnlicensed LTE Protocol supports control sync in private wireless deployments.
ibm-db252312.2Application serversBuilt-inAs neededIBM-DB2 protocol handles secure communication between clients and IBM DB2 databases.
ncp52412.2Network servicesBuilt-inAs neededNetWare Core Protocol used for file, print, and directory services in Novell networks.
timed52512.2Debugging and measurementBuilt-inAs neededTimed protocol synchronizes clocks in Berkeley Unix environments.