Active FTP with NAT
20 Questions
1 Views

Choose a study mode

Play Quiz
Study Flashcards
Spaced Repetition
Chat to lesson

Podcast

Play an AI-generated podcast conversation about this lesson

Questions and Answers

Which protocol requires a session helper in a NAT environment?

  • SIP (correct)
  • HTTP
  • SMTP
  • FTP
  • What is the purpose of the session helper in a NAT environment?

  • To create data channels
  • To manually create firewall policies
  • To translate IP addresses (correct)
  • To block incoming TCP sessions
  • What does the session helper do with the source port in the TCP header?

  • Blocks it
  • Translates it (correct)
  • Opens the door for it
  • Creates a pinhole for it
  • What does the session helper do for incoming TCP sessions with random port numbers?

    <p>Translates them</p> Signup and view all the answers

    What IP address does the session helper translate the port command to in the FTP example?

    <p>10.200.1.1</p> Signup and view all the answers

    What is the purpose of the session helper in the SIP example?

    <p>To translate IP addresses</p> Signup and view all the answers

    How many data channels are required for each SIP call?

    <p>Four</p> Signup and view all the answers

    What IP address does the session helper translate the invite packet to in the SIP example?

    <p>66.171.121.44</p> Signup and view all the answers

    What happens after the control channel is established in the SIP example?

    <p>Data channels are connected</p> Signup and view all the answers

    Are firewall policies needed to allow SIP traffic in the example?

    <p>No</p> Signup and view all the answers

    Which type of FTP does not work if the control channel crosses a network device doing NAT without a session helper?

    <p>Active FTP</p> Signup and view all the answers

    What is the IP address that the router in the example shown on the slide is doing NAT of?

    <p>10.0.1.10</p> Signup and view all the answers

    What is the IP address that the NAT IP-address 10.200.1.1 is translated to?

    <p>10.200.1.1</p> Signup and view all the answers

    What happens to the IP-address in the FTP port command when it crosses the router doing NAT?

    <p>It remains the same</p> Signup and view all the answers

    What happens when the server receives the FTP command with the private IP-address 10.0.1.10 as the destination for the data channel?

    <p>The file transfer fails</p> Signup and view all the answers

    What does the FTP session helper do to fix the problem?

    <p>All of the above</p> Signup and view all the answers

    What device replaces the router in the example to fix the problem?

    <p>FortiGate device</p> Signup and view all the answers

    What does the FortiGate device do when the packet with the FTP port command arrives?

    <p>All of the above</p> Signup and view all the answers

    What is the correct order of steps for an active mode FTP connection?

    <p>Control channel up, client sends port command, server brings up TCP session for data channel</p> Signup and view all the answers

    What is the likely reason that the IP address 10.0.1.10 is not routable when the server sends the SYN packet?

    <p>It is a private IP behind a device doing NAT</p> Signup and view all the answers

    More Like This

    Use Quizgecko on...
    Browser
    Browser