A New Model for Network Security--Stateful Inspection™

  Check Point FireWall-1's unique, patent-pending Stateful Inspection architecture overcomes the limitations of traditional firewall approaches by introducing a single framework that delivers rigorous, fully-featured security while guaranteeing high speed connectivity and complete user and application transparency.

Stateful Inspection™ Technology

Stateful Inspection utilizes an Inspection module, a 'virtual' or software-only engine that enforces the network security policy on the gateway on which it resides. The Inspection module looks at all communication layers and extracts only the relevant data, enabling highly efficient operation, support for a large number of protocols and applications, and easy extensibility to new applications and services. A portion of the processed data ('state' information) is maintained dynamically to provide context for future security decisions.

Technology Leadership. Stateful Inspection,(tm) a FireWall-1(tm) exclusive, outperforms traditional firewall architectures by a factor of 2-to-1.

FEATURES ARCHITECTURES
Stateful Inspection(tm) Application-layer Gateway Packet Filter
Security + + -
Performance + - +
Application-layer Screening + + -
Scalability + - +

[Back] [Home] [Next]
[1] [2] [3] [4] [5] [6] [7] [8] [9] [10] [11] [12]