What is causing the traffic problem?

— Exhibit –ssg20-> set address “Trust” “192.168.1.0/32” 10.20.1.0 255.255.255.0
ssg20-> set address “Untrust” “10.204.1.0/24” 10.204.1.0 255.255.255.0
ssg20-> set address “Untrust” “192.168.1.0/24” 192.168.1.0 255.255.255.255
ssg20-> get policy id 1
name:”none” (id 1), zone Trust -> Untrust,action Permit, status “enabled”
src “192.168.1.0/32”, dst “192.168.1.0/24”, serv “FTP”
Rules on this VPN policy: 0
nat off, Web filtering : disabled
vpn unknown vpn, policy flag 00000000, session backup: on, idle reset: on
traffic shaping off, scheduler n/a, serv flag 00
log no, log count 0, alert no, counter no(0) byte rate(sec/min) 0/0
total octets 0, counter(session/packet/octet) 0/0/0
priority 7, diffserv marking Off
tadapter: state off, gbw/mbw 0/0 policing (no)
No Authentication
No User, User Group or Group expression set

— Exhibit –FTP connections from host 10.20.1.10 to server 192.168.1.100 are not working. You produce the
output shown in the exhibit. What is causing the traffic problem?

— Exhibit –ssg20-> set address “Trust” “192.168.1.0/32” 10.20.1.0 255.255.255.0
ssg20-> set address “Untrust” “10.204.1.0/24” 10.204.1.0 255.255.255.0
ssg20-> set address “Untrust” “192.168.1.0/24” 192.168.1.0 255.255.255.255
ssg20-> get policy id 1
name:”none” (id 1), zone Trust -> Untrust,action Permit, status “enabled”
src “192.168.1.0/32”, dst “192.168.1.0/24”, serv “FTP”
Rules on this VPN policy: 0
nat off, Web filtering : disabled
vpn unknown vpn, policy flag 00000000, session backup: on, idle reset: on
traffic shaping off, scheduler n/a, serv flag 00
log no, log count 0, alert no, counter no(0) byte rate(sec/min) 0/0
total octets 0, counter(session/packet/octet) 0/0/0
priority 7, diffserv marking Off
tadapter: state off, gbw/mbw 0/0 policing (no)
No Authentication
No User, User Group or Group expression set

— Exhibit –FTP connections from host 10.20.1.10 to server 192.168.1.100 are not working. You produce the
output shown in the exhibit. What is causing the traffic problem?

A.
The policy’s source address is incorrect.

B.
The policy’s destination address is incorrect.

C.
The policy’s service is incorrect.

D.
The policy does not have the FTP ALG enabled.



Leave a Reply 0

Your email address will not be published. Required fields are marked *