Active FTP with NAT
20 Questions
1 Views

Choose a study mode

Play Quiz
Study Flashcards
Spaced Repetition
Chat to Lesson

Podcast

Play an AI-generated podcast conversation about this lesson

Questions and Answers

Which protocol requires a session helper in a NAT environment?

  • SIP (correct)
  • HTTP
  • SMTP
  • FTP

What is the purpose of the session helper in a NAT environment?

  • To create data channels
  • To manually create firewall policies
  • To translate IP addresses (correct)
  • To block incoming TCP sessions

What does the session helper do with the source port in the TCP header?

  • Blocks it
  • Translates it (correct)
  • Opens the door for it
  • Creates a pinhole for it

What does the session helper do for incoming TCP sessions with random port numbers?

<p>Translates them (A)</p> Signup and view all the answers

What IP address does the session helper translate the port command to in the FTP example?

<p>10.200.1.1 (C)</p> Signup and view all the answers

What is the purpose of the session helper in the SIP example?

<p>To translate IP addresses (C)</p> Signup and view all the answers

How many data channels are required for each SIP call?

<p>Four (C)</p> Signup and view all the answers

What IP address does the session helper translate the invite packet to in the SIP example?

<p>66.171.121.44 (A)</p> Signup and view all the answers

What happens after the control channel is established in the SIP example?

<p>Data channels are connected (B)</p> Signup and view all the answers

Are firewall policies needed to allow SIP traffic in the example?

<p>No (A)</p> Signup and view all the answers

Which type of FTP does not work if the control channel crosses a network device doing NAT without a session helper?

<p>Active FTP (C)</p> Signup and view all the answers

What is the IP address that the router in the example shown on the slide is doing NAT of?

<p>10.0.1.10 (A)</p> Signup and view all the answers

What is the IP address that the NAT IP-address 10.200.1.1 is translated to?

<p>10.200.1.1 (A)</p> Signup and view all the answers

What happens to the IP-address in the FTP port command when it crosses the router doing NAT?

<p>It remains the same (A)</p> Signup and view all the answers

What happens when the server receives the FTP command with the private IP-address 10.0.1.10 as the destination for the data channel?

<p>The file transfer fails (B)</p> Signup and view all the answers

What does the FTP session helper do to fix the problem?

<p>All of the above (D)</p> Signup and view all the answers

What device replaces the router in the example to fix the problem?

<p>FortiGate device (B)</p> Signup and view all the answers

What does the FortiGate device do when the packet with the FTP port command arrives?

<p>All of the above (D)</p> Signup and view all the answers

What is the correct order of steps for an active mode FTP connection?

<p>Control channel up, client sends port command, server brings up TCP session for data channel (B)</p> Signup and view all the answers

What is the likely reason that the IP address 10.0.1.10 is not routable when the server sends the SYN packet?

<p>It is a private IP behind a device doing NAT (A)</p> Signup and view all the answers

More Like This

Use Quizgecko on...
Browser
Browser