Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam 156-215.80 topic 1 question 409 discussion

Actual exam question from Checkpoint's 156-215.80
Question #: 409
Topic #: 1
[All 156-215.80 Questions]

Your internal networks 10.1.1.0/24, 10.2.2.0/24 and 192.168.0.0/16 are behind the Internet Security Gateway. Considering that Layer 2 and Layer 3 setup is correct, what are the steps you will need to do in SmartConsole in order to get the connection working? Choose the BEST answer.

  • A. 1. Define an accept rule in Security Policy. 2. Define Security Gateway to hide all internal networks behind the gateway's external IP. 3. Publish and install the policy.
  • B. 1. Define an accept rule in Security Policy. 2. Configure automatic NAT for each network to NAT the networks behind a public IP. 3. Publish the policy.
  • C. 1. Define an accept rule in Security Policy. 2. Configure automatic NAT for each network to NAT the networks behind a private IP. 3. Publish and install the policy.
  • D. 1. Define an accept rule in Security Policy. 2. Define Security Gateway to hide all internal networks behind the gateway's external IP. 3. Publish the policy.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
mrnqaz
Highly Voted 2 years, 10 months ago
Answer should be A
upvoted 18 times
Al789789
2 years, 10 months ago
I agree with you! To enable automatic Hide NAT: Double-click the Security Gateway. The Gateway Properties window opens. From the navigation tree, click NAT. The NAT page opens. Select Hide internal networks behind the Gateway's external IP. Click OK and then install the policy. https://sc1.checkpoint.com/documents/R76/CP_R76_Firewall_WebAdmin/6724.htm
upvoted 6 times
Hernan_Mella
1 year, 10 months ago
But if there is more networks behind the firewall that dont need to get public access?, i think we need only give access to the specific networks
upvoted 1 times
Hernan_Mella
1 year, 10 months ago
Sorry i didnt see that is a private IP
upvoted 1 times
...
...
...
...
Hernan_Mella
Most Recent 1 year, 9 months ago
B and D just publish policy
upvoted 1 times
...
herickgervasio
2 years, 5 months ago
Selected Answer: C
To install is needed set install policy, soon is better public only specific network instead to public all network behind the gateway. Answer is C
upvoted 3 times
...
dys
2 years, 5 months ago
A is the correct answer for sure.
upvoted 1 times
...
chst
2 years, 10 months ago
it's B Define an accept rule in Security Policy. 2. Configure automatic NAT for each network to NAT the networks behind a public IP. 3. Publish the policy. you need use a public ip address to navigate in internet
upvoted 1 times
Hernan_Mella
1 year, 10 months ago
You need to install policy to get traffic
upvoted 1 times
...
Al789789
2 years, 10 months ago
If you only publish changes will not intall on fw.
upvoted 5 times
...
dys
2 years, 5 months ago
Pay Attention that the answer ends with "3. Publish the policy." which is incorrect since the administrator should also install the policy. Therefore, A is correct.
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...