pavel-odintsov / fastnetmon

FastNetMon - very fast DDoS sensor with sFlow/Netflow/IPFIX/SPAN support
https://fastnetmon.com
GNU General Public License v2.0
3.4k stars 562 forks source link

Add identified with DPI attack type and filter text to attack report #347

Closed pavel-odintsov closed 5 years ago

pavel-odintsov commented 9 years ago

Subject!

henry-spanka commented 9 years ago

+1

pavel-odintsov commented 5 years ago

nDPI is very complicated thing and it does not offer very reliable detection of protocol. Also, most users use protocols which cannot be used for protocol detection (sFlow, Netflow, IPFIX). So, I do not think that we need it.