- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello All,
I am very confused with the packet flow of checkpoint firewall. I have seen in many places fw ctl chain is referred to understand the packet flow but I am not able to interpret it.
Could someone please help me in understanding the packet flow in terms of
SAM
IP spoofing
Policy lookup
Dst NAT
route lookup
Src NAT
VPN
etc..
Even better if we can connect it with the output of fw ctl chain
I would really appreciate any comment.
here you find everything (almost!) what you need reg. the CP packet flow:
sk116255
also Heiko Ankenbrand posted some very useful diagrams recently ... look them up here ![]()
Hi Jerry,
I know it's an old post, but do you happen to know any other link which might help me to see those packets get dropped.
e.g: when the initial packet enters the slow path and gets dropped due to a missing firewall policy, how can I look this up.
if I run fw mon, I would only see the packet "i", but it has two places where the packet could get discarded. how to know it got discarded due to policy and not "drop template".
thanks a lot
Lance (Sonicwall :))
Command fw ctl zdebug + drop will show you all live packet drops in both SecureXL and the INSPECT Firewall Instances and why.
Thank you Very much to all of you. Got the answer. Thanks again
👍
Hello All,
I am very confused with the packet flow of checkpoint firewall. I have seen in many places fw ctl chain is referred to understand the packet flow but I am not able to interpret it.
Could someone please help me in understanding the packet flow in terms of
SAM
IP spoofing
Policy lookup
Dst NAT
route lookup
Src NAT
VPN
etc..
Even better if we can connect it with the output of fw ctl chain
I would really appreciate any comment.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 20 | |
| 19 | |
| 18 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 3 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY