The Firewall kernel is replicated multiple times, therefore:
A . The Firewall kernel only touches the packet if the connection is accelerated
B . The Firewall can run different policies per core
C . The Firewall kernel is replicated only with new connections and deletes itself once the connection times out
D . The Firewall can run the same policy on all cores
Answer: D
Explanation:
On a Security Gateway with CoreXL enabled, the Firewall kernel is replicated multiple times. Each replicated copy, or instance, runs on one processing core. These instances handle traffic concurrently, and each instance is a complete and independent inspection kernel. When CoreXL is enabled, all the kernel instances in the Security Gateway process traffic through the same interfaces and apply the same security policy.
Reference: https://sc1.checkpoint.com/documents/R77/CP_R77_PerformanceTuning_WebAdmin/6731.htm
Leave a Reply