Remote VPN clients can initiate connections with internal hosts, but internal hosts are
unable to initiate connections with the remote VPN clients, even though the policy is
configured to allow it. You think that this is caused by NAT. What command can you run to
see if NAT is occurring on a packet?
A.
fw tab -t fwx_alloc -x
B.
fw ctl pstat
C.
fwaccel stats misp
D.
fw ctl debug -m fw + conn drop packet xlate xltrc nat
It is D