List of protocols and ports
- Built-in protocols — updated along with the SSG software version. Installing a new version requires a DPI reboot, which causes traffic interruption.
If needed, they can be supplemented with up-to-date attributes from the VAS Cloud. This is only necessary for complex protocols, but the option is available for all. - Cloud protocols created by VAS Experts — are periodically updated from the VAS Cloud. This ensures that popular applications remain up-to-date as their behavior changes.
- Custom (user-defined) protocols — protocols created by users via the GUI using VAS Cloud tools. These have higher priority than those loaded from the VAS Cloud, and within them, IP:PORT takes precedence over IP and CIDR. It is possible to add a protocol based on IP, SNI, or AS. Guide.
Поиск:
| Protocol | ID | DPI version | Protocol group | Protocol type | Update | Description |
|---|---|---|---|---|---|---|
| siam | 498 | 12.2 | Network services | Built-in | As needed | SIAM (Security Information and Management) protocol manages alert aggregation and SIEM sync. |
| iso-ill | 499 | 12.2 | Network services | Built-in | As needed | A protocol for ISO ILL (Interlibrary Loan), managing library loans over networks. |
| isakmp | 500 | 12.2 | Network services | Built-in | As needed | A protocol for ISAKMP (Internet Security Association and Key Management Protocol), managing keys. |
| stmf | 501 | 12.2 | Network services | Built-in | As needed | Storage Target Multipathing Framework protocol manages storage IO across paths. |
| asa-appl-proto | 502 | 12.2 | Network services | Built-in | As needed | A protocol for ASA Application Protocol, for appliance or system communication. |
| intrinsa | 503 | 12.2 | Network services | Built-in | As needed | A protocol for Intrinsa, supporting Intrinsa networked communication systems. |
| citadel | 504 | 12.2 | Network services | Built-in | As needed | A protocol for Citadel, supporting Citadel networked communication systems. |
| mailbox-lm | 505 | 12.2 | Built-in | As needed | Mailbox-LM manages mailbox access and licenses in secure enterprise email platforms. | |
| ohimsrv | 506 | 12.2 | Application servers | Built-in | As needed | OHIMSrv is used in distributed healthcare systems for secure patient metadata transmission. |
| crs | 507 | 12.2 | Network services | Built-in | As needed | A protocol for CRS (Control and Reporting Service), reporting control data. |
| xvttp | 508 | 12.2 | Network services | Built-in | As needed | XVT Terminal Protocol for remote terminal emulation and graphical interfaces. |
| snare | 509 | 12.2 | Network services | Built-in | As needed | System iNtrusion Analysis and Reporting Environment — exports system audit logs. |
| fcp | 510 | 12.2 | Network services | Built-in | As needed | A protocol for FCP (Fibre Channel Protocol), managing Fibre Channel communication. |
| passgo | 511 | 12.2 | Network services | Built-in | As needed | PassGo authentication service protocol for secure login and access control sync. |
| biff | 512 | 12.2 | Built-in | As needed | Biff notifies users of new mail arrival on UNIX systems, often over port 512. | |
| exec | 512 | 12.2 | Remote control | Built-in | As needed | Remote command execution service. |
| login | 513 | 12.2 | Remote control | Built-in | As needed | Generic remote authentication service. |
| who | 513 | 12.2 | Debugging and measurement | Built-in | As needed | WHO protocol returns a list of logged-in users on remote systems, similar to UNIX 'who'. |
| shell | 514 | 12.2 | Remote control | Built-in | As needed | Generic remote command-line shell access. |
| syslog | 514 | 12.2 | Debugging and measurement | Built-in | As needed | Syslog is a standard protocol for sending system logs and events to centralized log servers. |
Описание
Was this information helpful?