[fw-wiz] What is the difference between stateful packet filtering and Stateful pkt inspection ?

From: anil bindal (bindal@dcmtech.co.in)
Date: 01/31/03


From: anil bindal <bindal@dcmtech.co.in>
To: WGL <wg-users@watchguard.com>, Firewall Wizard <firewall-wizards@honor.icsalabs.com>
Date: Fri Jan 31 07:59:22 2003


Hi,

1) What is the difference between a stateful pkt filter and stateful
packet inspection ?
2) Does any of above two include the payload verificaion and analysis (
i.e. application level Proxies !)?
3) What does the WG FB 1000 do ? Stateful Pkt Inspection or Stateful Pkt
filtering ?
4) What does the WG V60 do ? SPInspection or SPfiltering ?
5) Does the Watch Guard http-filter rule does the same processing on the
packet as the check point or CISCO PIX rule ??
6) Lastly is the stateful packet ( filter or inspection whatever the WG
boxes do ) sufficient from the security point of view ( no application
level proxies ? )

why all above questions are being asked is bcose i want to decide on
either FB 1000 or V60. One of them has BW management and other does not
have the application level proxies ??

What level of security will i compromise if i decide on V60 with BW
management ??

thanks and regards
anil bindal