Exam 156-21581 All QuestionsBrowse all questions from this exam
Question 25

Which of the following is NOT supported by Bridge Mode on the Check Point Security Gateway?

    Correct Answer: D

    Bridge Mode operates at Layer 2 of the OSI model, meaning it forwards traffic based on MAC addresses rather than IP addresses. As a result, NAT (Network Address Translation) which requires Layer 3 operations to translate IP addresses, cannot be performed. Therefore, NAT is not supported by Bridge Mode on the Check Point Security Gateway.

Discussion
monkemann21Option: D

Bridging is done at Layer 2, therefore NATing is not possible.

McBeanoOption: D

Correct. Limitations in Bridge Mode NAT rules (specifically, Firewall kernel in logs shows the traffic as accepted, but Security Gateway does not actually forward it). For more information, see sk106146. https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Installation_and_Upgrade_Guide/Topics-IUG/Deploying-Security-Gateway-or-ClusterXL-in-Bridge-Mode.htm

xaymacaOption: D

Sorry I made a mistake on my previous message . Correct is D.

xaymacaOption: A

It's not supported any feature that need the appliance to be the "default gateway". Correct is A

yuopOption: D

correct https://sc1.checkpoint.com/documents/R81/WebAdminGuides/EN/CP_R81_Installation_and_Upgrade_Guide/Topics-IUG/Deploying-Security-Gateway-or-ClusterXL-in-Bridge-Mode.htm