
|
Issue – Flow ID generation & addresses In the current NSIS protocol, the Flow ID is assumed: To be generated based on addresses involved in the communication Used for data traffic classification However, it has some problems in following scenarios: State pre-establishment, using of proxy, etc No detail addresses information to generate Flow ID for the first NSIS message The case an application layer uses multiple ports for one session A single Flow ID cannot represent all the classification information, e.g. several ports that cannot be presented using wildcard |