From 3b8c7ad8bbd2eaa1228b6c90de0f0de55acbb3c1 Mon Sep 17 00:00:00 2001 From: pavlov Date: Mon, 19 Nov 2007 23:07:00 +0000 Subject: update stripped subset of l7 patterns to 11-03-2007 patterns git-svn-id: svn://svn.openwrt.org/openwrt/trunk@9582 3c298f89-4303-0410-b956-a3cf2f4a3e73 --- package/iptables/files/l7/http.pat | 19 +++++++++---------- 1 file changed, 9 insertions(+), 10 deletions(-) (limited to 'package/iptables/files/l7/http.pat') diff --git a/package/iptables/files/l7/http.pat b/package/iptables/files/l7/http.pat index 520e7fe21..550aa0b71 100644 --- a/package/iptables/files/l7/http.pat +++ b/package/iptables/files/l7/http.pat @@ -1,17 +1,16 @@ # HTTP - HyperText Transfer Protocol - RFC 2616 -# Pattern quality: great notsofast +# Pattern attributes: great slow notsofast superset +# Protocol groups: document_retrieval ietf_draft_standard +# Wiki: http://protocolinfo.org/wiki/HTTP +# # Usually runs on port 80 # -# This pattern has been tested and is believed to work well. If it does not -# work for you, or you believe it could be improved, please post to -# l7-filter-developers@lists.sf.net . This list may be subscribed to at -# http://lists.sourceforge.net/lists/listinfo/l7-filter-developers +# This pattern has been tested and is believed to work well. # -# this intentionally catches the response from the server -# rather than the request so that other protocols which use -# http (like kazaa) can be caught based on specific http requests -# regardless of the ordering of filters... -# also matches posts +# this intentionally catches the response from the server rather than +# the request so that other protocols which use http (like kazaa) can be +# caught based on specific http requests regardless of the ordering of +# filters... also matches posts # Sites that serve really long cookies may break this by pushing the # server response too far away from the beginning of the connection. To -- cgit v1.2.3