On Mon, 21 Feb 2000 [EMAIL PROTECTED] wrote:
> Have you done any performance tests yet? Will they support thousands
> or tens of thousands of state-maintained connections?
Done testing with 4500 series and less running hundreds of
connections. Don't have the infrastructure to beat on it with
thousands. From what I've seen the CPU hit is minimal but you do eat
through a bit more RAM.
> Also, as I read it, it won't work for anything except simple
> protocols (telnet, SMTP, web).
True, it will not handle DCOM, active FTP etc. in a reactive way. Its
still simple packet filtering except now it maintains state.
HTH,
Chris
--
**************************************
[EMAIL PROTECTED]
* Multiprotocol Network Design & Troubleshooting
http://www.amazon.com/exec/obidos/ASIN/0782120822/geekspeaknet
* Mastering Network Security
http://www.amazon.com/exec/obidos/ASIN/0782123430/geekspeaknet
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]