nerdexam
Palo_Alto_Networks

PCNSE7 · Question #28

What must be used in Security Policy Rule that contain addresses where NAT policy applies?

The correct answer is C. Pre-NAT addresse and Post-Nat zones. NAT Policy Rule Functionality Upon ingress, the firewall inspects the packet and does a route lookup to determine the egress interface and zone. Then the firewall determines if the packet matches one of the NAT rules that have been defined, based on source and/or destination…

Configure and Deploy

Question

What must be used in Security Policy Rule that contain addresses where NAT policy applies?

Options

  • APre-NAT addresse and Pre-NAT zones
  • BPost-NAT addresse and Post-Nat zones
  • CPre-NAT addresse and Post-Nat zones
  • DPost-Nat addresses and Pre-NAT zones

How the community answered

(34 responses)
  • A
    9% (3)
  • B
    6% (2)
  • C
    82% (28)
  • D
    3% (1)

Explanation

NAT Policy Rule Functionality Upon ingress, the firewall inspects the packet and does a route lookup to determine the egress interface and zone. Then the firewall determines if the packet matches one of the NAT rules that have been defined, based on source and/or destination zone. It then evaluates and applies any security policies that match the packet based on the original (pre-NAT) source and destination addresses, but the post-NAT zones.

Topics

#NAT policy#Security Policy#Pre-NAT addresses#Post-NAT zones

Community Discussion

No community discussion yet for this question.

Full PCNSE7 Practice