PCNSE7 · Question #28
What must be used in Security Policy Rule that contain addresses where NAT policy applies?
The correct answer is C. Pre-NAT addresse and Post-Nat zones. NAT Policy Rule Functionality Upon ingress, the firewall inspects the packet and does a route lookup to determine the egress interface and zone. Then the firewall determines if the packet matches one of the NAT rules that have been defined, based on source and/or destination…
Question
What must be used in Security Policy Rule that contain addresses where NAT policy applies?
Options
- APre-NAT addresse and Pre-NAT zones
- BPost-NAT addresse and Post-Nat zones
- CPre-NAT addresse and Post-Nat zones
- DPost-Nat addresses and Pre-NAT zones
How the community answered
(34 responses)- A9% (3)
- B6% (2)
- C82% (28)
- D3% (1)
Explanation
NAT Policy Rule Functionality Upon ingress, the firewall inspects the packet and does a route lookup to determine the egress interface and zone. Then the firewall determines if the packet matches one of the NAT rules that have been defined, based on source and/or destination zone. It then evaluates and applies any security policies that match the packet based on the original (pre-NAT) source and destination addresses, but the post-NAT zones.
Topics
Community Discussion
No community discussion yet for this question.