Network layer Firewalls generally fall into two sub-categories, stateful and non-stateful[?]. Stateful firewalls also hold some information on the state of connections (i.e. established or not, initiation, handshaking, data or breaking down the connection) as part of their rules (e.g. only hosts inside the firewall can establish connections on a certain port).
Stateless firewalls have packet filtering capabilities but cannot make more complex decisions on what stage communications between hosts is at and are therefore less secure. Stateless firewalls are quite similar to a router's abilty to filter packets.
Network layer firewalls can be implemented with a normal computer running an operating system which supports packet filtering and routing. Examples include Linux, Solaris and the BSDs.
Search Encyclopedia
|