ExamGecko
Question list
Search
Search

List of questions

Search

Question 54 - JN0-637 discussion

Report
Export

You need to set up source NAT so that external hosts can initiate connections to an internal device, but only if a connection to the device was first initiated by the internal device.

Which type of NAT solution provides this functionality?

A.

Address persistence

Answers
A.

Address persistence

B.

Persistent NAT with any remote host

Answers
B.

Persistent NAT with any remote host

C.

Persistent NAT with target host

Answers
C.

Persistent NAT with target host

D.

Static NAT

Answers
D.

Static NAT

Suggested answer: C

Explanation:

Persistent NAT with target host allows external hosts to establish connections only when the internal device initiates a session first, ideal for specific interactive applications. Refer to Juniper Persistent NAT Documentation.

The scenario requires that external hosts be able to initiate a connection only if the internal device has already initiated a connection. The correct solution is Persistent NAT with target host, which ensures that a specific external host can initiate new connections back to the internal device, but only after the internal device has established a session first.

Persistent NAT with Target Host (Answer C): This allows the internal device to initiate a connection, and once established, the specified external host can also initiate new connections to the internal device on the same NAT mapping.

Example Configuration:

bash

set security nat source persistent-nat permit target-host-port

This solution is appropriate when controlled bidirectional communication is required based on an internal-initiated connection.

asked 01/11/2024
Neville Raposo
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first