Alex is a network administrator for XYZ company and he is responsible for the site presented in
the following exhibit. He would like hosts on DMZ2 to be able to make HTTP connections to host
172.16.1.10. Now, hosts on DMZ2 can’t make these connections. Alex checks the security
appliance and determines that there are no access lists configured on either the DMZ1 or DMZ2
interface.
Which task or set of tasks can enable all hosts on DMZ2to make HTTP connections to host
172.16.1.10?
A.
Configure a dynamic NAT rule specifying DMZ1/172.16.1.0 as the original interface/address
and DMZ2/172.25.3.0 as the translated interface/address.
B.
Configure an access rule on the DMZ2 interface permitting HTTP from network 172.25.3.0/24 to
IP address 172.16.1.10. Then enable HTTP inspection in the global policy.
C.
Configure an access rule on the DMZ1 interface permitting HTTP from network 172.25.3.0/24
to IP address 172.16.1.10.
D.
Configure a dynamic NAT rule specifying DMZ2/172.25.3.0 as the original interface/address
and DMZ1/172.16.1.0 as the translated interface/address.