Re: pf vs ASIC firewalls

On Mon, Mar 14, 2005 at 03:50:23PM +0530, Siju George wrote:
> So probably no checks "later" in the protocol. Similar problem with
> CheckPoint's "fastpath" option, btw."
1) check point fw-1 is software, not hardware.
2) the "fastpath" option hasn't been around since 4.0 (and has always
   been deprecated).
3) in NG--all packets pass through the deep inspection filter engine
   (even if you enable the securexl acceleration feature).
