Which two items must be NAT policy contain to allow users in the untrust-L3 zone to access the web server?

Posted by: Pdfprep Category: PCNSE7 Tags: , ,

A company hosts a publically accessible web server behind a Palo Alto Networks next generation firewall with the following configuration information.

– Users outside the company are in the "Untrust-L3" zone

– The web server physically resides in the "Trust-L3" zone.

– Web server public IP address: 23.54.6.10

-Web server private IP address: 192.168.1.10

Which two items must be NAT policy contain to allow users in the untrust-L3 zone to access the web server? (Choose two)
A . Untrust-L3 for both Source and Destination zone
B . Destination IP of 192.168.1.10
C . Untrust-L3 for Source Zone and Trust-L3 for Destination Zone
D . Destination IP of 23.54.6.10

Answer: CD

Leave a Reply

Your email address will not be published.