#43. Consider the following Rule Base for VPN-1/Firewall-1: No. Source Destination Service Action Track 1 Any Web server http Accept Long 2 Any Any Any Drop Long Assuming the default settings in the policy properties have not been changed ICMP would be allowed though the firewall.
#45. As a firewall administrator, if you want a log of packets dropped by "implicit drop anything not covered" rules. You must explicitly define a "Clean-Up" rule. Thus must be the last rule in the Rule Base.
#46. As a VPN-1/FireWall-1 administrator, you have a group of contiguous IP addresses for which you want to perform address translation. You can simplify your effort through the use of ADDRESS RANGES.
#49. When defining an RPC service, what happens if the program number is omitted? If resolution fails, an error message is issued and installation will continue.