Which Check Point address translation method allows an administrator to use fewer ISP-assigned IP addresses th
Which Check Point address translation method allows an administrator to use fewer ISP-assigned IP
addresses than the number of internal hosts requiring Internet connectivity?
Which Check Point address translation method is necessary if you want to connect from a host on the Internet v
Which Check Point address translation method is necessary if you want to connect from a host on
the Internet via HTTP to a server with a reserved (RFC 1918) IP address on your DMZ?
What is an alternative configuration if proxy ARP cannot be used on your Security Gateway?
You want to implement Static Destination NAT in order to provide external, Internet users access to
an internal Web Server that has a reserved (RFC 1918) IP address. You have an unusedvalid IP
address on the network between your Security Gateway and ISP router. You control the router that
sits between the firewall external interface and the Internet.
What is an alternative configuration if proxy ARP cannot be used on your Security Gateway?
Which of the following is the MOST LIKELY cause?
After implementing Static Address Translation to allow Internet traffic to an internal Web Server on
your DMZ, you notice that any NATed connections to that machine are being dropped by antispoofing protections. Which of the following is the MOST LIKELY cause?
Which of the following configurations will allow this network to access the Internet?
Your main internal network 10.10.10.0/24 allows all traffic to the Internet using Hide NAT. You also
have a small network 10.10.20.0/24 behind the internal router. You want to configure the kernel to
translate the source address only when network 10.10.20.0 tries to access theInternet for HTTP,
SMTP, and FTP services. Which of the following configurations will allow this network to access the
Internet?
What is the best configuration for 10.10.10.x users to access the DMZ servers, using the DMZ servers’ public
You have three servers located in a DMZ, using private IP addresses. You want internal users from
10.10.10.x to access the DMZ servers by public IP addresses. Internal_net 10.10.10.x is configured
for Hide NAT behind the Security Gateway’s external interface.
What is the best configuration for 10.10.10.x users to access the DMZ servers, using the DMZ
servers’ public IP addresses?
The initiating traffic is an example of __________.
An internal host initiates a session to www.google.com and is set for Hide NAT behind the Security
Gateway. The initiating traffic is an example of __________.
what other configuration must be done to allow the traffic to reach the Web server?
A Web server behind the Security Gateway is set to Automatic Static NAT. Client side NAT is not
checked in the Global Properties. A client on the Internet initiates a session to the Web
Server.Assuming there is a rule allowing this traffic, what other configuration must be done to allow
the traffic to reach the Web server?
With the default settings in place for NAT, the initiating packet will translate the …
A host on the Internet initiates traffic to the Static NAT IP of your Web server behind the Security
Gateway. With the default settings in place for NAT, the initiating packet will translate the
_________.