I found the available product information on NS2 Reach (Nominum) to not
dive into real product behavior like if it requires every HTTP traffic to
be PBR to the box, or possible deployment scenarios without intercepting
all HTTP traffic.

Anyone can shed a light on its workings, or point to a NetEng description
of it ?


I found this, if it helps. Reuploaded to imgur, since not sure if nanog-list takes attachments.

Thanks for that. While it's still more into the "money is made here" arena,
it actually confirm that it needs HTTP traffic.
I wonder if they also suggest operators to redirect DNS traffic meant to
other servers to them, hijacking all DNS traffic as well.