Check_Point
156-215.75 · Question #155
Your main internal network 10.10.10.0/24 allows all traffic to the Internet using Hide NAT. You also have a small network 10.10.20.0/24 behind the internal router. You want to configure the kernel…
The correct answer is B. Configure one Manual Hide NAT rule for HTTP, FTP, and SMTP services for network 10.10.20.0/24. See the full explanation below for the reasoning.
Question
Your main internal network 10.10.10.0/24 allows all traffic to the Internet using Hide NAT. You also have a small network 10.10.20.0/24 behind the internal router. You want to configure the kernel to translate the source address only when network 10.10.20.0 tries to access the Internet for HTTP, SMTP, and FTP services. Which of the following configurations will allow this network to access the Internet?
Options
- AConfigure three Manual Static NAT rules for network 10.10.20.0/24, one for each service
- BConfigure one Manual Hide NAT rule for HTTP, FTP, and SMTP services for network 10.10.20.0/24
- CConfigure Automatic Hide NAT on network 10.10.20.0/24 and then edit the Service column in the NAT
- DConfigure Automatic Static NAT on network 10.10.20.0/24
How the community answered
(14 responses)- A14% (2)
- B79% (11)
- D7% (1)
Community Discussion
No community discussion yet for this question.