Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-12 Thread Butch Evans
On Mon, 2009-10-12 at 10:41 -0400, Jeremy Parr wrote: > I thought MT went to great lengths to hide the fact that they are a > Linux box with a fancy interface From: http://www.mikrotik.com/pdf/what_is_routeros.pdf you will find this: "RouterOS is a stand-alone operating system based on the Li

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-12 Thread Butch Evans
On Mon, 2009-10-12 at 09:52 -0500, Dennis Burgess wrote: > Many portions of MT is not Linux though. Huh? -- * Butch Evans * Professional Network Consultation* * http://www.butchevans.com/* Network Eng

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-12 Thread Butch Evans
On Sun, 2009-10-11 at 23:14 -0400, Jeremy Parr wrote: > > The L7 filters at sourceforge > > (http://l7-filter.sourceforge.net/protocols) are accurate and work fine > > for the most part. I have, yet, to run into one that doesn't. I have > > to say that my testing has been a little limited, howev

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-12 Thread Scott Carullo
gt;> From: "Jeremy Parr" >>> Sent: Sunday, October 11, 2009 11:14 PM >>> To: "WISPA General List" >>> Subject: Re: [WISPA] Layer 7 patterns for P2P and viruses / malware >>> >>> 2009/10/11 Butch Evans : >>>> On S

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-12 Thread Dennis Burgess
A General List Subject: Re: [WISPA] Layer 7 patterns for P2P and viruses / malware I thought MT went to great lengths to hide the fact that they are a Linux box with a fancy interface 2009/10/12 Scott Carullo : > > Yeah cut and paste > > Scott Carullo > Brevard Wireless > 321-2

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-12 Thread Jeremy Parr
Parr" >> Sent: Sunday, October 11, 2009 11:14 PM >> To: "WISPA General List" >> Subject: Re: [WISPA] Layer 7 patterns for P2P and viruses / malware >> >> 2009/10/11 Butch Evans : >> > On Sun, 2009-10-11 at 20:54 -0400, Nick Olsen wrote: >&

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-11 Thread Scott Carullo
Yeah cut and paste Scott Carullo Brevard Wireless 321-205-1100 x102 Original Message > From: "Jeremy Parr" > Sent: Sunday, October 11, 2009 11:14 PM > To: "WISPA General List" > Subject: Re: [WISPA] Layer 7 patterns for P2P and viruses / mal

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-11 Thread Nick Olsen
There is a script under the mikrotik wiki for L7 that will get alot of them. Nick Olsen Brevard Wireless (321) 205-1100 x106 From: "Jeremy Parr" Sent: Sunday, October 11, 2009 11:14 PM To: "WISPA General List" Subject: Re: [WIS

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-11 Thread Jeremy Parr
2009/10/11 Butch Evans : > On Sun, 2009-10-11 at 20:54 -0400, Nick Olsen wrote: >> In my testing most of those don't work, or there isn't one for what i want >> to do. >> Only one I currently use in production is the Skype-to-skype L7 for marking >> skype voip for QOS > > The L7 filters at sourcefo

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-11 Thread Butch Evans
On Sun, 2009-10-11 at 20:54 -0400, Nick Olsen wrote: > In my testing most of those don't work, or there isn't one for what i want > to do. > Only one I currently use in production is the Skype-to-skype L7 for marking > skype voip for QOS The L7 filters at sourceforge (http://l7-filter.sourcefor

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-11 Thread Nick Olsen
on Baker" Sent: Sunday, October 11, 2009 4:39 PM To: "sc...@brevardwireless.com" , "WISPA General List" Subject: Re: [WISPA] Layer 7 patterns for P2P and viruses / malware MikroTik has a good one on the wiki somewhere. I think it's pretty current. On Sun,

Re: [WISPA] Layer 7 patterns for P2P and viruses / malware

2009-10-11 Thread Jayson Baker
MikroTik has a good one on the wiki somewhere. I think it's pretty current. On Sun, Oct 11, 2009 at 1:17 PM, Scott Carullo wrote: > Anyone know of a good source for L7 patterns other than the sourceforge L7 > list which seems to be outdated / not maintained? > > Thanks... > > Scott Carullo > Bre