NAT

Descrição

NSE4 6.0 NSE4 6.0 Quiz sobre NAT, criado por Marcos Avila em 16-08-2018.
Marcos Avila
Quiz por Marcos Avila, atualizado more than 1 year ago
Marcos Avila
Criado por Marcos Avila mais de 5 anos atrás
710
1

Resumo de Recurso

Questão 1

Questão
are the terms used to refer to the mechanism that allows IPv6 addressed hosts to communicate with IPv4 addressed hosts and the reverse.
Responda
  • NAT64 NAT46
  • NAT56 NAT65

Questão 2

Questão
Without the mechanism NAT64 and 46, an IPv6 node on a network, such as a corporate LAN, would not be able to communicate with a website that was in an IPv4-only environment, and IPv4 environments would not be able to connect to IPv6 networks.
Responda
  • True
  • False

Questão 3

Questão
is NAT between two IPv6 networks
Responda
  • NAT66
  • NAT46
  • NAT64

Questão 4

Questão
What is NAT used for?
Responda
  • a. Preserving IP addresses
  • b. Traffic shaping

Questão 5

Questão
Which statement about NAT66 is true?
Responda
  • a. It is NAT between two IPv6 networks.
  • b. It is NAT between two IPv4 networks.

Questão 6

Questão
are a mechanism that allow sessions leaving the FortiGate firewall to use NAT. Defines a single IP address or a range of IP addresses to be used as the source address for the duration of the session. These assigned addresses will be used instead of the IP address assigned to that FortiGate interface.
Responda
  • IP Pools
  • SNAT
  • NAT
  • PAT

Questão 7

Questão
There are four types of IP pools that can be configured on the FortiGate firewall:
Responda
  • Overload
  • One-to-one
  • Fixed port range
  • Port block allocation
  • Dynamic
  • Static

Questão 8

Questão
What is the default IP pool type?
Responda
  • a. One-to-one
  • b. Overload

Questão 9

Questão
Which of the following is the default VIP type?
Responda
  • a. static-nat
  • b. load-balance

Questão 10

Questão
Which one of the following statements is true?
Responda
  • a. Central NAT is not enabled by default and can only be enabled on the CLI.
  • b. Both central NAT and firewall policy NAT can be enabled together.

Questão 11

Questão
What happens if NAT is enabled on a firewall policy and there is no matching central SNAT policy or no central SNAT policy configured?
Responda
  • a. No NAT will be applied.
  • b. The egress interface IP will be used.

Questão 12

Questão
Which method would be used for advanced application tracking and control?
Responda
  • a. Session helper
  • b. Application layer gateway

Questão 13

Questão
Which profile is an example of application layer gateway?
Responda
  • a. WAF profile
  • b. VOIP profile

Questão 14

Questão
If session diagnostic output indicates that a TCP protocol state is proto_state=01, which of the following statements is true?
Responda
  • a. The session is established.
  • b. The session is not established.

Questão 15

Questão
An administrator wants to check the total number of TCP sessions for an IP pool named INTERNAL. Which one of the following CLI commands should the administrator use?
Responda
  • a. diagnose firewall ippool-all stats INTERNAL
  • b. diagnose firewall ippool-all list INTERNAL

Questão 16

Questão
Which of the following statements about NAT port exhaustion is true?
Responda
  • a. Reducing the traffic traversing the border firewall will cause NAT port exhaustion.
  • b. Increased traffic traversing the border firewall can cause NAT port exhaustion.

Questão 17

Questão
[blank_start]NAT[blank_end] : Changes the IP layer address of a packet - Some protocols, like SIP, have addresses at the application layer, requiring session helpers or proxies -Source NAT (SNAT) -Destination NAT (DNAT) [blank_start]PAT[blank_end] : Changes the IP layer port number of a packet [blank_start]NAT64 and NAT46[blank_end] : mechanism that allows IPv6 addressed hosts to communicate with IPv4 addressed hosts and the reverse -[blank_start]NAT66[blank_end] : NAT between two IPv6 networks
Responda
  • NAT
  • PAT
  • NAT64 and NAT46
  • NAT66

Questão 18

Questão
When more advanced application tracking and control is required
Responda
  • an application layer gateway (ALG) can be used. The VolP profile is an example of an ALG.
  • an application layer gateway can be used. The session helpers profile is an example of an ALG.

Questão 19

Questão
Listen [blank_start]9[blank_end] Last_ACK [blank_start]8[blank_end] Close_Wait [blank_start]7[blank_end] Close [blank_start]6[blank_end] Time_Wait [blank_start]5[blank_end] Fin_Wait [blank_start]4[blank_end] Syn & Syn/ACK [blank_start]3[blank_end] Syn_Sent [blank_start]2[blank_end] Established [blank_start]1[blank_end] None [blank_start]0[blank_end]
Responda
  • 9
  • 8
  • 7
  • 6
  • 5
  • 4
  • 3
  • 2
  • 1
  • 0

Questão 20

Questão
Even though UDP is stateless, FortiGate still uses two session state values:
Responda
  • UDP traffic one way only: 00 UDP traffic both ways: 01
  • UDP traffic one way only: 01 UDP traffic both ways: 00

Semelhante

PROTOCOLOS DE RED Y ESQUEMAS DE DIRECCIONAMIENTO
Adrián Sanchez Monteverde
MAPA MENTAL ALIMENTACIÓ SALUDABLE
Jenner Sarmiento
Tanulás támogatása
bencze.andris
ORGANITZACIÓ DEL ÉSSERS VIUS
Anna Muñoz
NAT (NETWORK ADDRESS TRANSLATION)
joseph chiong
E2_11 NAT
John Dedios
Poder Constituinte
Jay Benedicto
Geometria Espacial
nathielecosta
Normas Regulamentadoras de Segurança e Saúde do Trabalho (NR)
Edson Baal
Mapa Mental - Exame de Certificação CTFL-AT
Larissa Trindade