Check_Point
156-115.77 · Question #298
Remote VPN clients can initiate connections with internal hosts, but internal hosts are unable to initiate connections with the remote VPN clients, even though the policy is configured to allow it…
The correct answer is D. fw ctl debug -m fw + conn drop packet xlate xltrc nat. See the full explanation below for the reasoning.
Question
Remote VPN clients can initiate connections with internal hosts, but internal hosts are unable to initiate connections with the remote VPN clients, even though the policy is configured to allow it. You think that this is caused by NAT. What command can you run to see if NAT is occurring on a packet?
Options
- Afw tab -t fwx_alloc -x
- Bfw ctl pstat
- Cfwaccel stats misp
- Dfw ctl debug -m fw + conn drop packet xlate xltrc nat
How the community answered
(23 responses)- A13% (3)
- B4% (1)
- C4% (1)
- D78% (18)
Community Discussion
No community discussion yet for this question.