List of protocols

  1. Built-in protocols — updated along with the SSG software version. Installing a new version requires a DPI reboot, which causes traffic interruption.
    If needed, they can be supplemented with up-to-date attributes from the VAS Cloud. This is only necessary for complex protocols, but the option is available for all.
  2. Cloud protocols created by VAS Experts — are periodically updated from the VAS Cloud. This ensures that popular applications remain up-to-date as their behavior changes. Description
  3. Custom (user-defined) protocols — protocols created by users via the GUI using VAS Cloud tools. These have higher priority than those loaded from the VAS Cloud, and within them, IP:PORT takes precedence over IP and CIDR. It is possible to add a protocol based on IP, SNI, or AS. Guide.
  4. DSL protocols — protocols described in the DSL language and connected to DPI as a separate module, without reinstalling the software or causing traffic interruption. Unlike custom protocols, a DSL protocol is a finite state machine that analyzes the first N packets of a flow against defined conditions (ports, AS numbers, payload bytes, DSL expressions) and determines whether the flow matches the protocol.
    DSL protocols are created by VAS Experts specialists upon client request to Technical Support.

ProtocolIDDPI versionProtocol groupProtocol typeUpdateDescription
cal58812.2Network servicesBuilt-inAs neededA protocol for CAL (Connection Abstraction Layer), abstracting network connections.
eyelink58912.2Video, picturesBuilt-inAs neededEyeLink is a secure video streaming protocol used in biometrics or surveillance platforms.
tns-cml59012.2Network servicesBuilt-inAs neededClient messaging link for TNS systems managing notifications or config changes.
http-alt59112.2Web browsingBuilt-inAs neededHTTP Alternative port, typically port 8080.
eudora-set59212.2Network servicesBuilt-inAs neededA protocol for Eudora Set, configuring Eudora email client settings.
http-rpc-epmap59312.2Web browsingBuilt-inAs neededHTTP Remote Procedure Call Endpoint Mapper, used for RPC communication over HTTP.
tpip59412.2Network servicesBuilt-inAs neededTelemetry Protocol over IP for broadcasting sensor data in remote monitoring environments.
cab-protocol59512.2Network servicesBuilt-inAs neededA protocol for CAB Protocol, for computer-aided building services.
smsd59612.2Network servicesBuilt-inAs neededShort Message Service Daemon protocol responsible for SMS queueing and retry telemetry.
ptcnameservice59712.2Network servicesBuilt-inAs neededPTC NameService resolves object and service names in PTC Windchill environments.
sco-websrvrmg359812.2Application serversBuilt-inAs neededSCO-WebSrvrMg3 is an enhanced version of the SCO web server manager with SSL support.
acp59912.2Application serversBuilt-inAs neededACP (Application Configuration Protocol) supports encrypted app settings distribution.
ipcserver60012.2Application serversBuilt-inAs neededIPCServer is used for encrypted inter-process communication between distributed services.
syslog-conn60112.2Debugging and measurementBuilt-inAs neededSyslog-Conn provides reliable, encrypted syslog message transport over TCP/TLS.
xmlrpc-beep60212.2Application serversBuilt-inAs neededXML-RPC-BEEP transports XML-RPC calls over BEEP with TLS support.
idxp60312.2Network servicesBuilt-inAs neededA protocol for IDXP (Integrated Data Exchange Protocol), exchanging data.
tunnel60412.2Tunneling, secure, ssl, pkiBuilt-inAs neededTunnel is a general label for encrypted encapsulation mechanisms supporting VPN and secure forwarding.
soap-beep60512.2Application serversBuilt-inAs neededSOAP-BEEP is a SOAP-over-BEEP transport protocol for web services with enhanced security.
urm60612.2Application serversBuilt-inAs neededURM (Unified Resource Manager) protocol manages cloud resource allocation securely.
nqs60712.2Network servicesBuilt-inAs neededNetwork Queuing System protocol schedules and manages distributed job queues.