📝 Section Review: Firewall & NAT

اہم نکاتKey TakeawaysKey Takeaways

خود جانچ (مشق)Self-Check (Practice)Self-Check (Practice)

یہ مشقی سوالات ہیں، امتحانی سوالات نہیں۔These are practice questions, not exam questions.These are practice questions, not exam questions.

❓ فائر وال رول میں priority 900 اور 1000 — کون سا پہلے لگے گا؟Firewall rule mein priority 900 aur 1000 — kaun sa pehle lagega?In a firewall rule, priority 900 vs 1000 — which applies first?

900 — چھوٹا نمبر زیادہ اہمیت رکھتا ہے۔900 — chhota number zyada ahmiyat rakhta hai.900 — the smaller number has higher importance.

❓ یہ صرف مشق ہے، امتحانی سوال نہیں: بغیر پبلک IP والی VM کو اپ ڈیٹس کیسے ملیں گے؟Yeh sirf mashq hai, imtihani sawal nahi: baghair public IP wali VM ko updates kaise milenge?Practice only, not an exam question: how does a VM without a public IP get updates?

Cloud NAT کے ذریعے — پرائیویٹ VM آؤٹ باؤنڈ انٹرنیٹ پر اپ ڈیٹس ڈاؤن لوڈ کر سکتی ہے۔Cloud NAT ke zariye — private VM outbound internet par updates download kar sakti hai.Via Cloud NAT — the private VM can download updates over outbound internet.

❓ Cloud Router Cloud NAT میں کیا کردار ادا کرتا ہے؟Cloud Router Cloud NAT mein kya kirdar ada karta hai?What role does Cloud Router play in Cloud NAT?

NAT کنفیگریشن اسی پر لگتی ہے — Router کنٹرول پلین ہے جس پر NAT gateway بنتا ہے۔NAT configuration isi par lagti hai — Router control plane hai jis par NAT gateway banta hai.The NAT configuration lives on it — the Router is the control plane on which the NAT gateway is built.

❓ SSH رول بنانے کے باوجود لاگ اِن ناکام — پہلی چیز کیا چیک کریں گے؟SSH rule banane ke bawajood log in nakaam — pehli cheez kya check karenge?Login fails despite an SSH rule — what do you check first?

رول کا target ٹیگ VM کے نیٹ ورک ٹیگ سے مل رہا ہے یا نہیں، اور source range درست ہے یا نہیں۔Rule ka target tag VM ke network tag se mil raha hai ya nahi, aur source range durust hai ya nahi.Whether the rule's target tag matches the VM's network tag, and whether the source range is correct.