摘要
本文分析了Linux Netfilter/Iptables架构下L7-filter的功能、工作原理和实现机制,以及P2P协议的特征。通过编写相匹配模板文件,扩展防火墙的规则集,从而实现P2P流量控制的目的,而且可以根据不断出现的P2P业务来更新模板文件,具有很好的扩充性能。
This paper analyzes the function, working principle and mechanism of L7 - filter in the Linux Netfilter / Iptables framework, and the features of p2p agreement. Through the preparation of the matching module document and the extension of firewall rule set, the p2p traffic could be controlled. And also the module files could be updated, according to constantly emerging p2p business. It has a good expansion performance.
出处
《湖南科技学院学报》
2008年第4期127-129,共3页
Journal of Hunan University of Science and Engineering
关键词
防火墙
七层过滤
P2P
特征码
The fire wall
LT-filter
p2p
characteristic code