nerdexam
Check_Point

156-915.80 · Question #23

You have three servers located in a DMZ, using private IP addresses. You want internal users from 10.10.10.x to access the DMZ servers by public IP addresses. Internal_net 10.10.10.x is configured…

The correct answer is B. When the source is the internal network 10.10.10.x, configure manual static NAT rules to translate. See the full explanation below for the reasoning.

Question

You have three servers located in a DMZ, using private IP addresses. You want internal users from 10.10.10.x to access the DMZ servers by public IP addresses. Internal_net 10.10.10.x is configured for Hide NAT behind the Security Gateway's external interface. What is the best configuration for 10.10.10.x users to access the DMZ servers, using the DMZ servers' public IP addresses?

Exhibit

156-915.80 question #23 exhibit

Options

  • AWhen connecting to internal network 10.10.10.x, configure Hide NAT for the DMZ network behind
  • BWhen the source is the internal network 10.10.10.x, configure manual static NAT rules to translate
  • CWhen connecting to the Internet, configure manual Static NAT rules to translate the DMZ servers.
  • DWhen trying to access DMZ servers, configure Hide NAT for 10.10.10.x behind the DMZ's interface.

How the community answered

(22 responses)
  • A
    9% (2)
  • B
    73% (16)
  • C
    5% (1)
  • D
    14% (3)

Community Discussion

No community discussion yet for this question.

Full 156-915.80 Practice