Destination NAT is the correct answer because it allows an external host to initiate traffic toward an internal resource by translating the destination address of inbound packets. In the exhibit, the requirement is that sessions can only be established from the external side. Static NAT is not the best choice because static NAT is bidirectional; it allows sessions to be originated from either side of the network. Source NAT is normally used for internal hosts initiating outbound access by translating their source address, which does not satisfy the requirement for external-only session establishment. Destination NAT changes the packet’s destination address before security policy evaluation, allowing the SRX to forward external requests to the internal host according to policy.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit