We are migrating from Cisco ASA's to CheckPoint (R80.10), and we have a requirement to permit TCP out of state packets. I know how to do this for a whole gateway (sk102491). However the Cisco ASA's had these exceptions per VLAN. Does anyone know of a way in CheckPoint to provide similar exceptions at a granular level, i.e. for a VLAN, inline layer, network or host?