Palo_Alto_Networks
PCNSE7 · Question #43
The web server is configured to listen for HTTP traffic on port 8080. The clients access the web server using the IP address 1.1.1.100 on TCP Port 80. The destination NAT rule is configured to…
The correct answer is C. A NAT rule with a source of any from untrust-I3 zone to a destination of 1.1.1.100 in untrust-I3 D. A security policy with a source of any from untrust-I3 zone to a destination of 1.1.100 in dmz-I3. See the full explanation below for the reasoning.
Question
The web server is configured to listen for HTTP traffic on port 8080. The clients access the web server using the IP address 1.1.1.100 on TCP Port 80. The destination NAT rule is configured to translate both IP address and report to 10.1.1.100 on TCP Port 8080. Which NAT and security rules must be configured on the firewall? (Choose two)
Exhibit
Options
- AA security policy with a source of any from untrust-I3 Zone to a destination of 10.1.1.100 in dmz-
- BA NAT rule with a source of any from untrust-I3 zone to a destination of 10.1.1.100 in dmz-zone
- CA NAT rule with a source of any from untrust-I3 zone to a destination of 1.1.1.100 in untrust-I3
- DA security policy with a source of any from untrust-I3 zone to a destination of 1.1.100 in dmz-I3
How the community answered
(32 responses)- A19% (6)
- B9% (3)
- C72% (23)
Community Discussion
No community discussion yet for this question.
