Wikipedia:

NBAR

Network Based Application Recognition (NBAR)[1] is the mechanism used to recognize a dataflow by the first packet sent.

The networking equipment which uses NBAR does a deep packet inspection on the first packet in a dataflow, to determine which traffic category the flow belongs to. It then programs the internal ASICs to handle this flow appropriately. The categorisation is usually done with OSI-layer4 info, but new applications have made it difficult to cling to this kind of tagging.

The NBAR approach is useful in dealing with malicious software using known ports to fake being "priority traffic", as well as non-standard applications using dynamic ports.[2]

References

External links


 
 
 

Join the WikiAnswers Q&A community. Post a question or answer questions about "NBAR" at WikiAnswers.

 

Copyrights:

Wikipedia. This article is licensed under the GNU Free Documentation License. It uses material from the Wikipedia article "NBAR" Read more

Search for answers directly from your browser with the FREE Answers.com Toolbar!  
Click here to download now. 

Get Answers your way! Check out all our free tools and products.

On this page:   E-mail   print Print  Link  

 

Keep Reading

Mentioned In: