|
|
It detects NNTP fine but cannot detect NNTP encapsulated in TLS, that's the point of TLS.
I imagine there's a performance reason why other ways to detect, such as by source IP, aren't being used.
Or destination IP.
Pretty easy to work out whats being accessed if its to a host in the ".giganews.com" domain and the data part of the IP packet is encrypted.
James - be* pro - on THFB - sync about 17.2mbps - BQM
|
|
|
Traffic is marked centrally and shaping policy enforced locally.
Thanks that's interesting. Seems to be fairer than just applying a blanket throttle.
If you can't fix it with a hammer you've got an electrical problem.
|
|
|
So the DPI kit can't in any way detect protocol when encryption is used? I assumed it must be able to in some way. Seems to me to be an expensive waste of money to me in that case as the heaviest users will almost certainly be the most knowledgeable and just bypass it.
If you can't fix it with a hammer you've got an electrical problem.
|
|
Register (or login) on our website and you will not see this ad.
|
|
|
So the DPI kit can't in any way detect protocol when encryption is used? I assumed it must be able to in some way. Seems to me to be an expensive waste of money to me in that case as the heaviest users will almost certainly be the most knowledgeable and just bypass it.
Cost-benefit analysis. I've zero doubt the hardware can identify it but it would require using more hardware, the more work you make it do to identify a stream the less streams it can handle concurrently.
The very heaviest will fall foul of the DUP anyway and get nailed that way
|
|
|
Got it. Thanks.
If you can't fix it with a hammer you've got an electrical problem.
|
|
|
don't really use p2p but on usenet from giganews, simply use port 443 and this bypass's the throttling. if not and you use 119 or 563 you get stuck on about 1.75MB/s compared to 6MB/s
To try using 443 out do I go into Preferences > connection > change port used for incoming connections from nnnnn to 443?
Assistance appreciated?
|
|
|
|
You need to set the port in your chosen usenet program. I had problems with grabit crashing along with my brother so used newsleecher instead. There are probably others that you can use as well.
|
|
|
|
you may need to explicitly set it to use ssl as well. in newsbin pro i check a checkbox to use ssl which then automatically uses 443, though i can set an alternate port such as 563.
|
|
|
|
Anyone found a workaround? My connection was turned on today, just found out I have a 80kbs torrent connection from a 30mbs line, lovely flat line at that 80k point over time, fluctuates by under 2kbs. vpn (hotspotshield) doesn't affect that cap
|
|
|
|
Turn on Forced encryption in your torrent client.
Rarely used torrents before but the packet loss/latency on my VM connection makes it no so good for streaming or gaming so downloading is the only thing the connection is good for.
Never had slow torrents speed at times when they throttle due to the ssl/forced encryption setting. Stupid really as I would grab a few things from VM's own newsgroups if they didn't throttle, which would mean 2 connections instead of the torrent type of saturation.
Got a feeling VM will throttle SSL at some point, upsetting VPN users, SSL newsgroups subscribers and torrent users.
|