|
Hi,
the "truth, I believe in" is: For a first packet of the connection, the rulebase has to be traversed, until one rule fits. Then it will be passed because of this rule (Exception if you have rule authenticating the user). The event of accepting this first packet is stored in the State Tables. When another packet of this connection comes to the Firewall, it's tested against the "basic rules" (e.g. packet size, options, Anti-Spoofing) and then against the State Tables. The connection is stored here, so the rest of the rulebase isn't important for this packet. Hope it helps, best regards, Matthias "Holland, Stephen" wrote:
|
- [FW-1] true or false Holland, Stephen
- Re: [FW-1] true or false Matthias Leu
- Re: [FW-1] true or false Kim Longenbaugh
- Re: [FW-1] true or false Reed Mohn, Anders
- Re: [FW-1] true or false J�rg Oertel
