<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Random ports? in </title>
<link>http://www.dslreports.com/forum/r20445027</link>
<description></description>
<language>en</language>
<pubDate>Tue, 02 Dec 2008 20:22:35 EDT</pubDate>
<lastBuildDate>Tue, 02 Dec 2008 20:22:35 EDT</lastBuildDate>

<item>
<title>Re: Random ports?</title>
<link>http://www.dslreports.com/forum/remark,20446723</link>
<description><![CDATA[<A HREF="/useremail/u/373609"><b>espaeth</b></A> : <div class="bquote"><small>said by skuv :</small><br><br>Encryption on the other hand can be hard to track, but that all depends on the setup of the session and if it can be tracked accurately through a signature.</div>It can be heuristically tracked in aggregate by looking at the connection stats.   P2P traffic is easy to spot if you look at active TCP session number stats per IP address.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20446723</guid>
<pubDate>Wed, 07 May 2008 15:54:08 EDT</pubDate>
</item>

<item>
<title>Random ports?</title>
<link>http://www.dslreports.com/forum/remark,20445027</link>
<description><![CDATA[<A HREF="/useremail/u/0"><b>anon</b></A> : Random ports don't affect Sandvine or other DPI boxes.  They see the headers in the packet, they know it's P2P no matter what port it is on.<br><br>Encryption on the other hand can be hard to track, but that all depends on the setup of the session and if it can be tracked accurately through a signature.<br><br>But I do know that encrypted NNTP just shows up as SSL to DPI, no way to know it's NNTP in there.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,20445027</guid>
<pubDate>Wed, 07 May 2008 11:10:37 EDT</pubDate>
</item>

</channel>
</rss>
