You are a Security Administrator configuring Static NAT on an internal host-node object. You clear the box "Translate destination on client site", accessed from Global Properties > NAT settings > Automatic NAT. Assuming all other Global Properties NAT settings are selected, what else must be configured for automatic Static NAT to work?
A.
Two address-translation rules in the Rule Base
B.
A dynamic route, to ensure packets destined for the public NAT IP address will reach the Gateway’s internal interface
C.
The NAT IP address must be added to the anti-spoofing group of the internal Gateway interface
D.
A proxy ARP entry, to ensure packets destined for the public IP address will reach the Security Gateway’s external interface
E.
No extra configuration needed