Introduction - If you have any usage issues, please Google them yourself
This paper analyzed the function,working principles andmechanism ofL7-filterunder the framework ofLinux
netfilter/iptables, realized filtering of the P2P packetswhich could blockadeMSN andQQ by use of independentmodulesL7-
fiter of iptables, and did related tests. The results of tests show that this packet filter could be realized in the firework systems
which could translate network address, and restrict the occupation ofnetwork bandwidth from large flow ofdata such asP2P in
order tomake the networkworkmore efficient and stable