CCSP CSPFA Exam Cram 2 (Exam Cram 642-521)

Terms you'll need to understand:

  • Translation table

  • Connection table

  • TCP

  • Embryonic connection

  • UDP

  • Static mapping

  • Dynamic mapping

  • Port redirection

Techniques you'll need to master:

  • The clear xlate command

  • The show xlate command

  • The show conn command

  • The static command

  • NAT and PAT

  • nat 0

  • Port redirection

The PIX firewall allows traffic to flow from higher security levels to lower security levels using features such as network address translation (NAT), port address translation (PAT), and static mappings. Traffic originating from lower security level interfaces destined to higher security level interfaces must be manually configured using the static and conduit commands before the traffic can pass. This chapter covers how to use the PIX firewall features to allow traffic to flow between interfaces.

Категории