Symantec™ Gateway Security 5400 Series provides maximum protection
against even the most malicious Internet security threats while
reducing the complexity of security management. As the industry’s
most comprehensive enterprise firewall appliance, it seamlessly
integrates a full inspection firewall, protocol anomaly and signature-based
intrusion prevention and intrusion detection engines, award-winning
virus protection, URL-based content filtering, anti-spam and IPsec-compliant
virtual private networking technology with hardware-assisted high-speed
encryption.
Symantec Gateway Security 5400 Series is a next-generation firewall
appliance that integrates full packet inspection firewall technology
with intrusion prevention intelligence at the gateway
between the Internet and corporate network or between network
segments. The solution leverages tightly integrated, industry-leading
technologies to control and validate data packets as they pass
through the gateway.

First, the full inspection firewall, which allows administrators
to set granular policies for complete control of information entering
and leaving the network, performs deep packet inspection that
drops and logs bad packets. If a VPN session is active, the proxy-secured,
virtual private networking technology decrypts the packet and
drops it into the data stream. Next, the firewall performs session
checks at the circuit layer and once again, drops and logs bad
packets. The integrated intrusion prevention and intrusion detection
technologies block packets that contain threats, and automatically
notify the the firewall of malicious sessions from specific IP
addresses, which will enable the firewall to block specific sessions
that contain threats or block specific IP addresses that continue
to pose a threat.
Source: http://enterprisesecurity.symantec.com/content/displaypdf.cfm?PDFID=248&EID=0