All Products
Search
Document Center

Smart Access Gateway:Manage DPI

Last Updated:Apr 01, 2026

Deep packet inspection (DPI) lets you create application-aware quality of service (QoS) policies and access control lists (ACLs) to manage network traffic, and analyze traffic distribution across applications. This topic describes how to enable or disable DPI and DPI-based monitoring for a Smart Access Gateway (SAG) instance.

DPI affects the following features on your SAG instance:

  • QoS policies — application rules in QoS policies rely on DPI to classify traffic

  • ACLs — application rules in ACLs rely on DPI to identify applications

  • DPI-based monitoring — requires DPI to collect per-application traffic statistics

Disabling DPI also disables DPI-based monitoring and invalidates the application rules in all associated QoS policies and ACLs.

Prerequisites

Before you begin, ensure that you have:

  • An SAG instance associated with an SAG-1000 device

Enable DPI

  1. Log on to the SAG console.

  2. In the top navigation bar, select the region.

  3. On the Smart Access Gateway page, click the ID of the SAG instance.

  4. On the Basic Info tab, find the Advanced Features section and turn on the DPI switch.

  5. In the Enable DPI message, click OK.

Enable DPI-based monitoring

SAG integrates with Log Service to provide DPI-based monitoring. After you enable this feature, you can view per-application traffic statistics for the SAG instance.

Activate Log Service before enabling DPI-based monitoring. Charges apply when you activate Log Service. For billing details, see Billing overview. For a feature overview, see What is Log Service?.
  1. Log on to the SAG console.

  2. In the top navigation bar, select the region.

  3. On the Smart Access Gateway page, click the ID of the SAG instance.

  4. On the instance details page, choose Monitoring > DPI Statistics on Applications.

  5. In the Enable DPI section of the DPI Statistics on Applications tab, click Enable.

    Skip this step if DPI is already enabled.
  6. In the Activate Log Service section, click Activate Now.

After both features are enabled, traffic monitoring data for the SAG instance is displayed on the DPI Statistics on Applications tab. For details, see View traffic monitoring data of applications.

Disable DPI-based monitoring

  1. Log on to the SAG console.

  2. In the top navigation bar, select the region.

  3. On the Smart Access Gateway page, click the ID of the SAG instance.

  4. On the instance details page, choose Monitoring > DPI Statistics on Applications.

  5. In the upper-right corner of the DPI Statistics on Applications tab, click Disable DPI-based Monitoring.

  6. In the Disable DPI-based Monitoring message, click OK.

Disable DPI

Important

Disabling DPI also disables DPI-based monitoring and invalidates the application rules in all QoS policies and ACLs associated with the SAG instance.

  1. Log on to the SAG console.

  2. In the top navigation bar, select the region.

  3. On the Smart Access Gateway page, click the ID of the SAG instance.

  4. On the Basic Info tab, find the Advanced Features section and turn off the DPI switch.

  5. In the dialog that appears, click OK.

What's next