Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people, just like you, are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
Solved

Firewall technology working

Posted on 2003-11-14
5
204 Views
Last Modified: 2013-11-16
How stateful, proxy & packet firewall works?
0
Comment
Question by:pravinbhole
5 Comments
 
LVL 3

Accepted Solution

by:
dschwartzer earned 25 total points
ID: 9758005
pravinbhole,
I hope it isn't any kind of homework, so I'll make it short and leave it for your futher investigation:
Stateful - is just what it means against the 'classic'/'simple' filter. While filter simply looks whether packet "SourceIP-DestIP-sourcePort-destPort" is allowed by the rulebase and makes a pass/drop decision only according to that, the firewall/proxy also looks into it's cache ('connections' kernel table in Check Point FW) to reveal which side opened the connection, and whether additional packet's parameters are ok (sequence, acknowledgement, etc).
This statefulness allows a much more flexible rulebase (with stateful you can allow for example DNS queries only from inside the organization but not into the organization), and of course increases security by being able to verify many additional connection's pararmeters.

HTH,
d
0
 
LVL 23

Expert Comment

by:Tim Holman
ID: 10976409
No comment has been added to this question in more than 21 days, so it is now classified as abandoned..
I will leave the following recommendation for this question in the Cleanup topic area:

--> Accept: dschwartzer

Any objections should be posted here in the next 4 days. After that time, the question will be closed.

tim_holman
EE Cleanup Volunteer
0
 

Author Comment

by:pravinbhole
ID: 11037062
Thanks Mr. dschwartzer for providing me a valuable info. If possible please let me know How state table is build up in firewall & what are the entries in that table?
Can you pleas explain me with an example, it will very helpful for me & my friends.

Thanks & Regards,
Pravin Bhole.
0

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Firewall Settings Alert Possible TCP Flood on IF X2 5 566
How to create one more DMZ subnet? 8 75
Questions on windows ports 13 81
ipsec tunnel comme not up 10 117
Do you have a windows based Checkpoint SmartCenter for centralized Checkpoint management?  Have you ever backed up the firewall policy residing on the SmartCenter?  If you have then you know the hassles of connecting to the server, doing an upgrade_…
To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
Microsoft Active Directory, the widely used IT infrastructure, is known for its high risk of credential theft. The best way to test your Active Directory’s vulnerabilities to pass-the-ticket, pass-the-hash, privilege escalation, and malware attacks …
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…

860 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question