Summary

NBAR can be a critical component of the tools a service provider can have at his or her disposal. NBAR's ability to classify packets based on content in the packets' payloads allows the service provider to stop the spread of certain types of attacks from one customer to another. This is critically important in the case of fast-spreading worms. This chapter discussed what NBAR is and how it operates. Based on how NBAR works, we discussed how NBAR can provide elements of security to the network. We also discussed how NBAR interacts with other Cisco IOS Software features to provide security. Although NBAR is an important tool that service providers can deploy on their end to protect their customers, it is equally important for customers ...

Get Network Security Principles and Practices now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.