ExamGecko
Question list
Search
Search

Question 373 - 156-315.81 discussion

Report
Export

If an administrator wants to add manual NAT for addresses now owned by the Check Point firewall, what else is necessary to be completed for it to function properly?

A.
Nothing - the proxy ARP is automatically handled in the R81 version
Answers
A.
Nothing - the proxy ARP is automatically handled in the R81 version
B.
Add the proxy ARP configurations in a file called /etc/conf/local.arp
Answers
B.
Add the proxy ARP configurations in a file called /etc/conf/local.arp
C.
Add the proxy ARP configurations in a file called $FWDIR/conf/local.arp
Answers
C.
Add the proxy ARP configurations in a file called $FWDIR/conf/local.arp
D.
Add the proxy ARP configurations in a file called $CPDIR/conf/local.arp
Answers
D.
Add the proxy ARP configurations in a file called $CPDIR/conf/local.arp
Suggested answer: C

Explanation:

If an administrator wants to add manual NAT for addresses not owned by the Check Point firewall, they also need to add the proxy ARP configurations in a file called$FWDIR/conf/local.arp. This file contains the mappings between the IP addresses and the MAC addresses of the NATed hosts. The proxy ARP feature allows the firewall to answer ARP requests on behalf of the NATed hosts and forward the traffic to them. The local.arp file needs to be edited manually and reloaded with the commandarp -f $FWDIR/conf/local.arp.

Reference:R81 Security Management Administration Guide, page 1014.

asked 16/09/2024
Chien-Chung Chen
36 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first