> > Very few firewalls actually check that the protocol
> travelling over a
> > particular port -really is- what the port is supposed to be
> used for.
>
> If this is the case, and I am at least partly inclined to
> believe it, then
> why do we have application proxy firewalls at all? I could
> save a fortune
> switching to CheckPoint or even a Cisco router with filtering.
Well, I must say that Alladin does a very good packet inspection.
It actually, searches the packet itself to see it is what it claims is to
be.
If it is not it rejects the packet. I must admit however that it's a very
thin line.
Regards,
Spiros
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]