![No security policy is configured](https://kumkoniak.com/106.jpg)
![no security policy is configured no security policy is configured](https://i.ytimg.com/vi/gB-CgB9F7EQ/maxresdefault.jpg)
The security policy management process is a part of the information security policy and is designed to ensure that technology serves the service. If the information in the packet matches that in the session table and complies with the definition of subsequent packets in the protocol specifications, the packet is considered a subsequent response packet for the PC to access the web server and therefore is allowed to pass through.Įstablishing a Standard Security Policy Management Process Subsequent packet process: Upon receipt of a response packet sent by the web server, the device searches the session table.
![no security policy is configured no security policy is configured](http://2.bp.blogspot.com/-9l9zT529k8g/VYrNzHkFUaI/AAAAAAAAEVE/gAhMHCvZVT8/s1600/Fortigate%2BFlow.png)
At the same time, a session, which contains the information about the packet sent by the client PC, is established. If a match entry exists, the device allows the packet to pass through. First packet process: When the request packet sent from the client PC to the web server reaches the device, the device matches the packet against the security policy.The following uses the access from a client PC to the web server as an example to describe the filtering mechanism of security policies.
![no security policy is configured no security policy is configured](https://community.checkpoint.com/legacyfs/online/checkpoint/78348_pastedImage_1.png)
Subsequent packets will then match the session entry without matching the security policy, improving service processing efficiency. That is, a session entry is created after the first packet matches the security policy. For the same data flow, you only need to configure a security policy for traffic on the forward path (that is, in the direction in which access is initiated) no security policy is required for traffic on the return path.
![No security policy is configured](https://kumkoniak.com/106.jpg)