nerdexam
Palo_Alto_Networks

PCNSE7 · Question #55

A company has a web server behind a Palo Alto Networks next-generation firewall that it wants to make accessible to the public at 1.1.1.1. The company has decided to configure a destination NAT…

The correct answer is A. Untrust-L3. Create the NAT policy. 1. Select Policies > NAT and click Add. 2. Enter a descriptive Name for the policy. 3. On the Original Packet tab, select the zone you created for your internal network in the Source Zone section (click Add and then select the zone) and the zone you…

Configure and Deploy

Question

A company has a web server behind a Palo Alto Networks next-generation firewall that it wants to make accessible to the public at 1.1.1.1. The company has decided to configure a destination NAT Policy rule. Given the following zone information:

DMZ zone: DMZ-L3 Public zone: Untrust-L3 Guest zone: Guest-L3 Web server zone: Trust-L3 Public IP address (Untrust-L3): 1.1.1.1 Private IP address (Trust-L3): 192.168.1.50 What should be configured as the destination zone on the Original Packet tab of NAT Policy rule?

Options

  • AUntrust-L3
  • BDMZ-L3
  • CGuest-L3
  • DTrust-L3

How the community answered

(42 responses)
  • A
    81% (34)
  • B
    5% (2)
  • C
    5% (2)
  • D
    10% (4)

Explanation

Create the NAT policy. 1. Select Policies > NAT and click Add. 2. Enter a descriptive Name for the policy. 3. On the Original Packet tab, select the zone you created for your internal network in the Source Zone section (click Add and then select the zone) and the zone you created for the external network from the Destination Zone drop down. 4. On the Translated Packet tab, select Dynamic IP And Port from the Translation Type drop- down in the Source Address Translation section of the screen and then click Add. Select the address object you just created. 5. Click OK to save the NAT policy.

Topics

#destination NAT#NAT policy#zone configuration#public IP translation

Community Discussion

No community discussion yet for this question.

Full PCNSE7 Practice