which of the following objects?
NAT can NOT be configured on which of the following objects?
Which Check Point address translation method is necessary if you want to connect from a host on the Internet v
Which Check Point address translation method is necessary if you want to connect from a host on
the Internet via HTTP to a server with a reserved (RFC 1918) IP address on your DMZ?
What is an alternative configuration if proxy ARP cannot be used on your Security Gateway?
You want to implement Static Destination NAT in order to provide external, Internet users access
to an internal Web Server that has a reserved (RFC 1918) IP address. You have an unused valid
IP address on the network between your Security Gateway and ISP router. You control the router
that sits between the firewall external interface and the Internet.
What is an alternative configuration if proxy ARP cannot be used on your Security Gateway?
Which of the following is the MOST LIKELY cause?
After implementing Static Address Translation to allow Internet traffic to an internal Web Server on
your DMZ, you notice that any NATed connections to that machine are being dropped by antispoofing protections. Which of the following is the MOST LIKELY cause?
Which NAT option applicable for Automatic NAT applies to Manual NAT as well?
Which NAT option applicable for Automatic NAT applies to Manual NAT as well?
Which of the following configurations will allow this network to access the Internet?
Your main internal network 10.10.10.0/24 allows all traffic to the Internet using Hide NAT. You also
have a small network 10.10.20.0/24 behind the internal router. You want to configure the kernel to
translate the source address only when network 10.10.20.0 tries to access the Internet for HTTP,
SMTP, and FTP services. Which of the following configurations will allow this network to access
the Internet?
What is the best configuration for 10.10.10.x users to access the DMZ servers, using the DMZ servers’ public
You have three servers located in a DMZ, using private IP addresses. You want internal users
from 10.10.10.x to access the DMZ servers by public IP addresses. Internal_net 10.10.10.x is
configured for Hide NAT behind the Security Gateway’s external interface.
What is the best configuration for 10.10.10.x users to access the DMZ servers, using the DMZ
servers’ public IP addresses?
The initiating traffic is an example of __________.
An internal host initiates a session to the Google.com website and is set for Hide NAT behind the
Security Gateway. The initiating traffic is an example of __________.
With the default settings in place for NAT, the initiating packet will translate the _________.
A host on the Internet initiates traffic to the Static NAT IP of your Web server behind the Security
Gateway. With the default settings in place for NAT, the initiating packet will translate the
_________.
what other configuration must be done to allow the traffic to reach the Web server?
A Web server behind the Security Gateway is set to Automatic Static NAT. Client side NAT is not
checked in the Global Properties. A client on the Internet initiates a session to the Web Server.
Assuming there is a rule allowing this traffic, what other configuration must be done to allow the
traffic to reach the Web server?