|
Firewalls (November 1994) |
It is a very fancy packet screen. All of the bad things about packet screens (see papers by TIS, book by Cheswick and Bellovin) apply with the exception of logging -- you can do smart logging now. It has a very fancy management interface. Very flashy. Very classy. But it does permit direct connections between the outside and the inside (unlike an application gateway) and has no way currently to add user authentication. References:
|