List of questions
Related questions
Question 39 - FCP_FGT_AD-7.4 discussion
A network administrator has configured an SSL/SSH inspection profile defined for full SSL inspection and set with a private CA certificate. The firewall policy that allows the traffic uses this profile for SSL inspection and performs web filtering. When visiting any HTTPS websites, the browser reports certificate warning errors.
What is the reason for the certificate warning errors?
A.
The SSL cipher compliance option is not enabled on the SSL inspection profile. This setting is required when the SSL inspection profile is defined with a private CA certificate.
B.
The certificate used by FortiGate for SSL inspection does not contain the required certificate extensions.
C.
The browser does not recognize the certificate in use as signed by a trusted CA.
D.
With full SSL inspection it is not possible to avoid certificate warning errors at the browser level.
Your answer:
0 comments
Sorted by
Leave a comment first