Question 121

Which is a suitable command to check whether Drop Templates are activated or not?
  • Question 122

    Because of pre-existing design constraints, you set up manual NAT rules for your HTTP server. However, your FTP server and SMTP server are both using automatic NAT rules. All traffic from your FTP and SMTP servers are passing through the Security Gateway without a problem, but traffic from the Web server is dropped on rule 0 because of anti-spoofing settings. What is causing this?
  • Question 123

    You enable Hide NAT on the network object, 10.1.1.0 behind the Security Gateway's external interface.
    You browse to the Google Website from host, 10.1.1.10 successfully. You enable a log on the rule that allows 10.1.1.0 to exit the network. How many log entries do you see for that connection in SmartView Tracker?
  • Question 124

    Why would you not see a CoreXL configuration option in cpconfig?
  • Question 125

    You want VPN traffic to match packets from internal interfaces. You also want the traffic to exit the Security Gateway bound for all site-to-site VPN Communities, including Remote Access Communities. How should you configure the VPN match rule?