Which statement correctly matches the two RouterOS firewall sections with their chains?

Prepare for the MikroTik Certified Network Associate Exam. Enhance your skills with diverse modules, adaptive quizzes, and detailed explanations. Ace your certification with confidence!

Multiple Choice

Which statement correctly matches the two RouterOS firewall sections with their chains?

Explanation:
In RouterOS, firewall rules are organized into two sections with different purposes and chain concepts. The Filter section handles general packet filtering and uses the chains that describe where a packet is in its journey: input for traffic destined to the router, forward for traffic passing through the router, and output for traffic generated by the router itself. The NAT section deals with address translation and uses the NAT actions src-nat (source NAT) and dst-nat (destination NAT) to rewrite addresses as packets enter or leave the network. So, the correct pairing is that Filter uses Forward, Input, and Output, while NAT uses src-nat and dst-nat. The other options mix these roles, which doesn’t align with how RouterOS structures firewall rules.

In RouterOS, firewall rules are organized into two sections with different purposes and chain concepts. The Filter section handles general packet filtering and uses the chains that describe where a packet is in its journey: input for traffic destined to the router, forward for traffic passing through the router, and output for traffic generated by the router itself. The NAT section deals with address translation and uses the NAT actions src-nat (source NAT) and dst-nat (destination NAT) to rewrite addresses as packets enter or leave the network. So, the correct pairing is that Filter uses Forward, Input, and Output, while NAT uses src-nat and dst-nat. The other options mix these roles, which doesn’t align with how RouterOS structures firewall rules.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy