Refer to the exhibit. The network administrator for this site wants hosts on DMZ2 to be able to make HTTP connections to host 172.16.1.10. Hosts on DMZ2 are currently unable to make these connections.
The network administrator checks the security appliance and determines that there are no access lists configured on either the DMZ1 or DMZ2 interface.
Which task or set of tasks does the administrator need to complete to enable all hosts on DMZ2 to make HTTP connections to host 172.16.1.10?
A.
Configure an access rule on the DMZ2 interface permitting HTTP from network 172.25.3.0/24 to IP address 172.16.1.10. Then enable HTTP inspection in the global policy.
B.
Configure an access rule on the DMZ1 interface permitting HTTP from network 172.25.3.0/24 to IP address 172.16.1.10.
C.
Configure a dynamic NAT rule specifying DMZ1/172.16.1.0 as the original interface/address and DMZ2/172.25.3.0 as the translated interface/address.
D.
Configure a dynamic NAT rule specifying DMZ2/172.25.3.0 as the original interface/address and DMZ1/172.16.1.0 as the translated interface/address.