NAT

Descripción

NSE4 6.0 NSE4 6.0 Test sobre NAT, creado por Marcos Avila el 16/08/2018.
Marcos Avila
Test por Marcos Avila, actualizado hace más de 1 año
Marcos Avila
Creado por Marcos Avila hace más de 6 años
742
1

Resumen del Recurso

Pregunta 1

Pregunta
are the terms used to refer to the mechanism that allows IPv6 addressed hosts to communicate with IPv4 addressed hosts and the reverse.
Respuesta
  • NAT64 NAT46
  • NAT56 NAT65

Pregunta 2

Pregunta
Without the mechanism NAT64 and 46, an IPv6 node on a network, such as a corporate LAN, would not be able to communicate with a website that was in an IPv4-only environment, and IPv4 environments would not be able to connect to IPv6 networks.
Respuesta
  • True
  • False

Pregunta 3

Pregunta
is NAT between two IPv6 networks
Respuesta
  • NAT66
  • NAT46
  • NAT64

Pregunta 4

Pregunta
What is NAT used for?
Respuesta
  • a. Preserving IP addresses
  • b. Traffic shaping

Pregunta 5

Pregunta
Which statement about NAT66 is true?
Respuesta
  • a. It is NAT between two IPv6 networks.
  • b. It is NAT between two IPv4 networks.

Pregunta 6

Pregunta
are a mechanism that allow sessions leaving the FortiGate firewall to use NAT. Defines a single IP address or a range of IP addresses to be used as the source address for the duration of the session. These assigned addresses will be used instead of the IP address assigned to that FortiGate interface.
Respuesta
  • IP Pools
  • SNAT
  • NAT
  • PAT

Pregunta 7

Pregunta
There are four types of IP pools that can be configured on the FortiGate firewall:
Respuesta
  • Overload
  • One-to-one
  • Fixed port range
  • Port block allocation
  • Dynamic
  • Static

Pregunta 8

Pregunta
What is the default IP pool type?
Respuesta
  • a. One-to-one
  • b. Overload

Pregunta 9

Pregunta
Which of the following is the default VIP type?
Respuesta
  • a. static-nat
  • b. load-balance

Pregunta 10

Pregunta
Which one of the following statements is true?
Respuesta
  • a. Central NAT is not enabled by default and can only be enabled on the CLI.
  • b. Both central NAT and firewall policy NAT can be enabled together.

Pregunta 11

Pregunta
What happens if NAT is enabled on a firewall policy and there is no matching central SNAT policy or no central SNAT policy configured?
Respuesta
  • a. No NAT will be applied.
  • b. The egress interface IP will be used.

Pregunta 12

Pregunta
Which method would be used for advanced application tracking and control?
Respuesta
  • a. Session helper
  • b. Application layer gateway

Pregunta 13

Pregunta
Which profile is an example of application layer gateway?
Respuesta
  • a. WAF profile
  • b. VOIP profile

Pregunta 14

Pregunta
If session diagnostic output indicates that a TCP protocol state is proto_state=01, which of the following statements is true?
Respuesta
  • a. The session is established.
  • b. The session is not established.

Pregunta 15

Pregunta
An administrator wants to check the total number of TCP sessions for an IP pool named INTERNAL. Which one of the following CLI commands should the administrator use?
Respuesta
  • a. diagnose firewall ippool-all stats INTERNAL
  • b. diagnose firewall ippool-all list INTERNAL

Pregunta 16

Pregunta
Which of the following statements about NAT port exhaustion is true?
Respuesta
  • a. Reducing the traffic traversing the border firewall will cause NAT port exhaustion.
  • b. Increased traffic traversing the border firewall can cause NAT port exhaustion.

Pregunta 17

Pregunta
[blank_start]NAT[blank_end] : Changes the IP layer address of a packet - Some protocols, like SIP, have addresses at the application layer, requiring session helpers or proxies -Source NAT (SNAT) -Destination NAT (DNAT) [blank_start]PAT[blank_end] : Changes the IP layer port number of a packet [blank_start]NAT64 and NAT46[blank_end] : mechanism that allows IPv6 addressed hosts to communicate with IPv4 addressed hosts and the reverse -[blank_start]NAT66[blank_end] : NAT between two IPv6 networks
Respuesta
  • NAT
  • PAT
  • NAT64 and NAT46
  • NAT66

Pregunta 18

Pregunta
When more advanced application tracking and control is required
Respuesta
  • an application layer gateway (ALG) can be used. The VolP profile is an example of an ALG.
  • an application layer gateway can be used. The session helpers profile is an example of an ALG.

Pregunta 19

Pregunta
Listen [blank_start]9[blank_end] Last_ACK [blank_start]8[blank_end] Close_Wait [blank_start]7[blank_end] Close [blank_start]6[blank_end] Time_Wait [blank_start]5[blank_end] Fin_Wait [blank_start]4[blank_end] Syn & Syn/ACK [blank_start]3[blank_end] Syn_Sent [blank_start]2[blank_end] Established [blank_start]1[blank_end] None [blank_start]0[blank_end]
Respuesta
  • 9
  • 8
  • 7
  • 6
  • 5
  • 4
  • 3
  • 2
  • 1
  • 0

Pregunta 20

Pregunta
Even though UDP is stateless, FortiGate still uses two session state values:
Respuesta
  • UDP traffic one way only: 00 UDP traffic both ways: 01
  • UDP traffic one way only: 01 UDP traffic both ways: 00
Mostrar resumen completo Ocultar resumen completo

Similar

PROTOCOLOS DE RED Y ESQUEMAS DE DIRECCIONAMIENTO
Adrián Sanchez Monteverde
MAPA MENTAL ALIMENTACIÓ SALUDABLE
Jenner Sarmiento
Tanulás támogatása
bencze.andris
ORGANITZACIÓ DEL ÉSSERS VIUS
Anna Muñoz
NAT (NETWORK ADDRESS TRANSLATION)
joseph chiong
E2_11 NAT
John Dedios
SISTEMA REPRODUCTOR HUMANO
laboratoriocienc
Repaso de conceptos sobre la Biosfera
Diego Santos
CAMPOS DE ACCIÓN DE LA INGENIERÍA INFORMÁTICA
Jorge Mora
mapa mental de modelo OSI y modelo TCP/IP
alejandrovielmas