Interkey Intelligent DPI
Interkey Intelligent DPI: every question an operator asks
Split out from the main Interkey Intelligent DPI page so it stays easy to scan: classification, deployment, data and jurisdiction, and the proof-of-concept and commercial questions, answered in one place.
Published 3 min read
Buyer questions
What buyers ask us
Direct answers to the questions that come up in real evaluations. Anything missing, ask us at the bottom of the page.
Classification
Does Interkey Intelligent DPI work on encrypted traffic?
Yes, with an important qualification. It does not decrypt traffic. It identifies encrypted and tunnelled flows using their observable characteristics: handshake structure, packet size and timing patterns, endpoint behaviour, rather than by reading payload. This is how modern classification works, and it is why accuracy should be measured against your own traffic rather than taken from a datasheet.
Is the 99% accuracy figure independently verified?
No. It is stated by Interkey and is not independently benchmarked here. DPI accuracy depends heavily on the traffic it is measured against, so the meaningful test is a proof of concept against a sample of your own live traffic. Interkey will run one; so should any vendor you are comparing against.
Deployment
Can it be deployed without sitting inline?
Yes. Out-of-band deployment gives you classification and reporting without placing the platform in the forwarding path, which is how most operators begin. Enforcement requires an inline deployment, and that is normally a second phase once the classification has been validated.
How does it fit with policy control and the 5G core?
Classification is only useful when it feeds enforcement, so integration with the operator’s policy and charging architecture is part of deployment design rather than an afterthought. Bring your policy architecture and the enforcement points you care about into the scoping conversation: the integration plan, and what it requires from each side, is established there and written down.
Data and jurisdiction
Does subscriber traffic leave Saudi Arabia?
No. The platform is deployed on the operator’s own infrastructure and can run entirely in-Kingdom. Traffic does not need to leave the operator’s environment for classification to work.
What data does the platform keep, and who can see it?
Classification produces metadata: which applications, which volumes, which policies fired. What is retained, for how long, and who can query it are design decisions made against the operator’s own data-governance rules, and they belong in the deployment design and the contract, not in a vendor default. Ask every DPI supplier this question in exactly this form.
PoC and commercial
What does a proof of concept actually involve?
Six stages, in a fixed order: written acceptance criteria, a representative traffic sample and tap points, an out-of-band classification baseline, accuracy measured against the operator’s own ground truth, a policy dry-run, and only then inline enforcement and acceptance. The full sequence is on the main DPI page, written so it can be lifted into an RFP; durations are agreed at scoping, against your calendar rather than a template.
How is it priced?
By deployment and capacity, on a quote basis. There is no published price list. The sizing depends on throughput, where it sits in the network and which of the policy and reporting capabilities are in scope.
Next step
Discuss a DPI proof of concept
A sentence on where the visibility gap sits — RAN, core or peering — and whether a live-traffic proof of concept is thinkable this year is enough to start.
Or directly
+966-11-2180999 info@interkey.com.saTawuniya Towers, North Tower, 7th Floor, King Fahad Highway, Olaya, P.O. Box 56835, Riyadh 11564, Saudi Arabia
Elsewhere