Which of the following is NOT a possible reason?

You just installed a new Web server in the DMZ that must be reachable from the Internet You create a manual Static NAT rule as follows:

"web_publicIP" is the node Object that represents the public IP address of the new Web server. "web_privateIP" is the node object that represents the new Web site’s private P address You enable all settings from Global Properties > NAT.When you try to browse the Web server from the Internet, you see the error ‘page cannot be displayed" Which of the following is NOT a possible reason?(Exhibit)

You just installed a new Web server in the DMZ that must be reachable from the Internet You create a manual Static NAT rule as follows:

“web_publicIP” is the node Object that represents the public IP address of the new Web server. “web_privateIP” is the node object that represents the new Web site’s private P address You enable all settings from Global Properties > NAT.When you try to browse the Web server from the Internet, you see the error ‘page cannot be displayed”.

Which of the following is NOT a possible reason?

A.
There is no route defined on the Security Gateway for the public IP address to the private IP address of the Web server.

B.
There is no Security Policy defined that allows HTTP traffic to the protected Web server.

C.
There is an ARP entry on the Gateway but the settings Merge Manual proxy ARP and Automatic ARP configuration are enabled in Global Properties. The Security Gateway ignores manual ARP entries.

D.
There is no ARP table entry for the public IP address of the protected Web server



Leave a Reply 2

Your email address will not be published. Required fields are marked *


unknown

unknown

The answer should be C.
According to the definition of “Merge Manual Proxy ARP”:

Manual proxy ARP configuration is required for manual Static NAT rules. If a manual ARP configuration is defined in the local.arp file and Automatic ARP is enabled, both definitions are maintained. If there is a conflict between the definitions (the same NAT IP address appears in both), the manual configuration is used. If this options is not enabled and Automatic ARP configuration is enabled, the Gateway ignores the entries in the local.arp file (ignores the manual proxy ARP configuration).

Oleksandr

Oleksandr

It should be D.