Which of the following is true regarding the Proxy ARP feature for Manual NAT?
Select an option, then click Submit answer.
Reference / correct answer:
Automatic proxy ARP configuration can be enabled
Most accepted answer: B. Automatic proxy ARP configuration can be enabled
Community votes: A=2, B=3
Selected Answer: B Starting from R80.10, Check Point introduced the ability to automatically create Proxy ARP entries for Manual NAT rules by enabling a feature in the system profile files ($CPDIR/tmp/.CPprofile.sh and .CPprofile.csh). Why the other options are incorrect: A. The local.arp file must always be configured → Not true anymore; this was required before R80.10. C. fw ctl proxy should be configured → This is unrelated to Proxy ARP for NAT. D. Translate Destination on Client Side should be configured → This is a NAT setting, not related to enabling Proxy ARP. upvoted 2 times
Selected Answer: B B. Automatic proxy ARP configuration can be enabled In Check Point systems, particularly from version R80.10 onwards, you can enable automatic creation of Proxy ARP entries for manual NAT rules. This feature simplifies the process by eliminating the need for manual configuration of Proxy ARP entries, which was required in earlier versions. Here's a brief explanation of the other options: A. The local.arp file must always be configured: This is not always true. While manual configuration of the local.arp file was necessary in older versions for manual NAT rules, newer versions like R80.10 allow for automatic configuration. https://support.checkpoint.com/results/sk/sk114395 upvoted 1 times
Selected Answer: A https://support.checkpoint.com/results/sk/sk30197 On Check Point Security Gateway / Cluster Member, this matching is saved in the $FWDIR/conf/local.arp file. upvoted 2 times
Selected Answer: B https://supportcenter.checkpoint.com/supportcenter/portal?solutionid=sk114395 upvoted 1 times
Selected Answer: A for Manual NAT the local.arp must be configured upvoted 1 times