List of protocols

  1. Built-in protocols — updated along with the SSG software version. Installing a new version requires a DPI reboot, which causes traffic interruption.
    If needed, they can be supplemented with up-to-date attributes from the VAS Cloud. This is only necessary for complex protocols, but the option is available for all.
  2. Cloud protocols created by VAS Experts — are periodically updated from the VAS Cloud. This ensures that popular applications remain up-to-date as their behavior changes. Description
  3. Custom (user-defined) protocols — protocols created by users via the GUI using VAS Cloud tools. These have higher priority than those loaded from the VAS Cloud, and within them, IP:PORT takes precedence over IP and CIDR. It is possible to add a protocol based on IP, SNI, or AS. Guide.
  4. DSL protocols — protocols described in the DSL language and connected to DPI as a separate module, without reinstalling the software or causing traffic interruption. Unlike custom protocols, a DSL protocol is a finite state machine that analyzes the first N packets of a flow against defined conditions (ports, AS numbers, payload bytes, DSL expressions) and determines whether the flow matches the protocol.
    DSL protocols are created by VAS Experts specialists upon client request to Technical Support.

ProtocolIDDPI versionProtocol groupProtocol typeUpdateDescription
acmaint_transd77512.2Network servicesBuilt-inAs neededA protocol for ACMaint TransD (Access Control Maintenance Transport Daemon), transporting maintenance data.
entomb77512.2Network servicesBuilt-inAs neededA protocol for Entomb, for secure data encapsulation or storage.
wpages77612.2Web browsingBuilt-inAs neededWeb page retrieval or management.
multiling-http77712.2Web browsingBuilt-inAs neededUsed for lightweight, connectionless communication in multi-language web applications.
wpgs78012.2Network servicesBuilt-inAs neededWeb Publishing Gateway Service syncs templates and content for web-based authoring systems.
mdbs_daemon80012.2Network servicesBuilt-inAs neededMDBS_Daemon controls database process orchestration in legacy MDBS platforms.
device80112.2Network servicesBuilt-inAs neededA protocol for Device, a general device communication protocol in networks.
fcp-udp81012.2Network servicesBuilt-inAs neededA protocol for FCP over UDP, running Fibre Channel Protocol over UDP.
itm-mcell-s82812.2Network servicesBuilt-inAs neededA protocol for ITM MCell Server, serving MCell data in ITM networks.
pkix-3-ca-ra82912.2Network servicesBuilt-inAs neededPKIX protocol for communication between Certificate Authorities and Registration Authorities.
netconf-ssh83012.2Network servicesBuilt-inAs neededNETCONF over SSH provides encrypted management of network devices using XML.
netconf-beep83112.2Network servicesBuilt-inAs neededNETCONF over BEEP protocol for secure device configuration and state management.
netconfsoaphttp83212.2Network servicesBuilt-inAs neededNETCONF over SOAP/HTTP for transport of structured network config commands.
netconfsoapbeep83312.2Network servicesBuilt-inAs neededNETCONF over SOAP/BEEP binds device config messages in web service environments.
dhcp-failover284712.2Network servicesBuilt-inAs neededA protocol for DHCP Failover version 2, ensuring redundancy in address assignment.
gdoi84812.2Network servicesBuilt-inAs neededGroup Domain of Interpretation protocol used for secure multicast key management.
iscsi86012.2Network servicesBuilt-inAs neededA protocol for iSCSI (Internet Small Computer Systems Interface), managing storage.
owamp-control86112.2Network servicesBuilt-inAs neededOWAMP-Control sets up secure one-way active measurements for delay and jitter metrics.
twamp-control86212.2Network servicesBuilt-inAs neededTwo-Way Active Measurement Protocol (TWAMP) control channel for latency/jitter testing.
rsync87312.2Network servicesBuilt-inAs neededRemote Sync protocol efficiently synchronizes files and directories across networks.