5 Aug
2008
5 Aug
'08
8:20 a.m.
On 6/08/2008, at 1:10 PM, Philip D'Ath wrote:
With regard to determining which traffic is p2p; I believe this would be futile with only packet headers. You would need at least the start of the payload.
That depends if you're looking for specific protocols, or traffic patterns that are common to p2p file sharing. The latter is much harder to hide - but is also probably much more computationally intensive. -- Nathan Ward