Hi,

I need the IP header TOS field be kept when going through the checkpoint
FW-1.

Does the FW overwrites the TOS field when packets are passing through it? 
If proxy is performed (e.g. while using http resources) by the FW, does the
new connections (opened by the FW) set the TOS field according to the
original packet triggering this new connections?

example:
internal_client opens connection to external_server while setting the TOS
field to A
if proxy is performed does the new connection from the FW to the
external_server sets the TOS field to A (or maybe to some other default
value?)?

If the FW overwrites the TOS, can the new connection be "binded" to the
original connection by any way (e.g. the dest IP will still be the same, but
this is not enough
if several internal clients open connections concurrently to the same
external server).

Thank you very much for your help,

Eli Kamhine
P-cube LTD

_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to