SCALANCE W1750D UI
Configuration Manual, 02/2018, C79000-G8976-C451-02
357
Deep Packet Inspection and Application Visibility
AppRF is custom-built Layer 7 firewall capability. It consists of an onboard deep packet
inspection and a cloud-based Web Policy Enforcement (WPE) service that allows creating
firewall policies based on types of application. The WPE capabilities require the AP to have a
WPE subscription.
APs with DPI capability analyze data packets to identify applications in use and allow you to
create access rules to determine client access to applications, application categories, web
categories, and website URLs based on web reputation. You can also define traffic-shaping
policies such as bandwidth control and QoS per application for client roles. For example, you
can block bandwidth-monopolizing applications on a guest role within an enterprise.
The AppRF feature provides application visibility for analyzing client traffic flow. APs support
the power of both in-device packet flow identification and dynamically updated cloud-based
web categorization.