Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

[FW1] help required

2 views
Skip to first unread message

fw-1-mailin...@lists.us.checkpoint.com

unread,
Aug 8, 1998, 3:00:00 AM8/8/98
to fw-1-mai...@lists.us.checkpoint.com

Hello everybody,

I am a novice in this field. I wanted to know a couple of things
about firewall-1.

1. Generally application proxying is done by having a user level process
that sits on the firewall and opens one more connection. Thus we have
two connections - one from inside machine to the firewall and another
from firewall to the outside machine.
In firewall-1, if I am not mistaken, application proxying appears
to be done in the kernel( stateful inspection ). Then how is the
connection to the outside establised - by a user level process
or the firewall itself will do some ip_masquerading sort of thing and just
relays at the ip level

2. What exactly is the role/difference - inspection module
and inspection code? how they interact to achieve stateful inspection.

3. Can you please suggest me some references related to this stateful
inspection (or some concept similar to this - proxying applications
at the kernel level).

Thanks a lot for your time

-----
gopi
IIT kanpur
India

================================================================================
To unsubscribe from this mailing list, please see the instructions at
http://www.checkpoint.com/services/mailing.html
================================================================================

0 new messages