Support Center > Search Results > SecureKnowledge Details
Checking and changing state of Nokia IPSO's Firewall Flows feature
Symptoms
  • VPN-1/FireWall-1 traffic is not captured by the fw monitor command.
Cause

Firewall Flows improves the throughput of VPN-1/FireWall-1 software on a Nokia IP Series Appliance on IPSO 3.3, and later. It reduces overhead associated with VPN-1/FireWall-1, by moving a copy of the connection table to the device driver hardware-interrupt level, eliminating calls to the firewall kernel for existing connections. Only the first packet of a new TCP or UDP session is sent to the VPN-1/FireWall-1 Inspection Module for processing.


Solution
Note: To view this solution you need to Sign In .