When configuring Anti-Spoofing for VPN-1/FireWall-1 NG on the firewall interfaces, all of the
following are valid address choices except:
A.
Network defined by Interface IP and Net Mask.
B.
Not Defined.
C.
Security Policy Installed.
D.
Specific
E.
None of the above.
Explanation:
When you are configuring anti-spoofing on a Checkpoint gateway you have the following 3
options: “Not Defined” that will disable anti-spoofing, “Network Defined by the Interface and Net
Mask” that will calculate the topology in base of you current network and “Specific” where you can
specify a range of addresses or a group of networks. “Security Policy Installed” is not a valid
option.
Incorrect Answers:
A: This is one of the 3 options provided at the properties of the firewall module.
B: Yes, you could have it disabled, This is also one of the 3 options provided at the properties of
the firewall module.
D: This is one of the 3 options provided at the properties of the firewall module. Its defined by
yourself.
E: Option C is incorrect, so this answer is wrong.