PrepAway - Latest Free Exam Questions & Answers

Is it possible?

You are responsible for configuration of Meg a Corn’s Check Point Firewall. You need to allow two NAT rules to match a connection. Is it possible? Give the best answer

PrepAway - Latest Free Exam Questions & Answers

A.
Yes. it is possible to have two NAT rules which match a connection, but only when using Automatic NAT(bidirectional NAT)

B.
No, it is not possible to have more one NAT rule matching a connection. When the firewall receives a packet belonging to a concentration, it compares it against the first rule in the Rule Base, then the second rule, and so on When it finds a rule that matches, it stops checking and applies that rule.

C.
Yes, it is possible to have two NAT rules which match a connection, but only in using Manual NAT (bidirectional NAT)

D.
Yes, there are always as many active NAT rules as there are connections.

3 Comments on “Is it possible?

  1. Naikee says:

    In essence, the bidirectional NAT lets a connection match 2 NAT rules. Normally the NAT rule base only permits one match and then subsequently exits the process. In the case of bidirectional NAT, if the source match is an Automatic NAT rule, the gateway continues to traverse the NAT rules to identify if there is a destination rule match. If the gateway finds a second match, it applies both NAT rules to the connection so that the packet it routed properly between source and destination




    0



    0

Leave a Reply