Deep packet inspection (DPI) lets you create application-aware quality of service (QoS) policies and access control lists (ACLs) to manage network traffic, and analyze traffic distribution across applications. This topic describes how to enable or disable DPI and DPI-based monitoring for a Smart Access Gateway (SAG) instance.
DPI affects the following features on your SAG instance:
QoS policies — application rules in QoS policies rely on DPI to classify traffic
ACLs — application rules in ACLs rely on DPI to identify applications
DPI-based monitoring — requires DPI to collect per-application traffic statistics
Disabling DPI also disables DPI-based monitoring and invalidates the application rules in all associated QoS policies and ACLs.
Prerequisites
Before you begin, ensure that you have:
An SAG instance associated with an SAG-1000 device
Enable DPI
Log on to the SAG console.
In the top navigation bar, select the region.
On the Smart Access Gateway page, click the ID of the SAG instance.
On the Basic Info tab, find the Advanced Features section and turn on the DPI switch.
In the Enable DPI message, click OK.
Enable DPI-based monitoring
SAG integrates with Log Service to provide DPI-based monitoring. After you enable this feature, you can view per-application traffic statistics for the SAG instance.
Activate Log Service before enabling DPI-based monitoring. Charges apply when you activate Log Service. For billing details, see Billing overview. For a feature overview, see What is Log Service?.
Log on to the SAG console.
In the top navigation bar, select the region.
On the Smart Access Gateway page, click the ID of the SAG instance.
On the instance details page, choose Monitoring > DPI Statistics on Applications.
In the Enable DPI section of the DPI Statistics on Applications tab, click Enable.
Skip this step if DPI is already enabled.
In the Activate Log Service section, click Activate Now.
After both features are enabled, traffic monitoring data for the SAG instance is displayed on the DPI Statistics on Applications tab. For details, see View traffic monitoring data of applications.
Disable DPI-based monitoring
Log on to the SAG console.
In the top navigation bar, select the region.
On the Smart Access Gateway page, click the ID of the SAG instance.
On the instance details page, choose Monitoring > DPI Statistics on Applications.
In the upper-right corner of the DPI Statistics on Applications tab, click Disable DPI-based Monitoring.
In the Disable DPI-based Monitoring message, click OK.
Disable DPI
Disabling DPI also disables DPI-based monitoring and invalidates the application rules in all QoS policies and ACLs associated with the SAG instance.
Log on to the SAG console.
In the top navigation bar, select the region.
On the Smart Access Gateway page, click the ID of the SAG instance.
On the Basic Info tab, find the Advanced Features section and turn off the DPI switch.
In the dialog that appears, click OK.