ExamGecko
Question list
Search
Search

List of questions

Search

Question 44 - NSE6_FAC-6.4 discussion

Report
Export

Which behaviors exist for certificate revocation lists (CRLs) on FortiAuthenticator? (Choose two)

A.
CRLs contain the serial number of the certificate that has been revoked
Answers
A.
CRLs contain the serial number of the certificate that has been revoked
B.
Revoked certificates are automaticlly placed on the CRL
Answers
B.
Revoked certificates are automaticlly placed on the CRL
C.
CRLs can be exported only through the SCEP server
Answers
C.
CRLs can be exported only through the SCEP server
D.
All local CAs share the same CRLs
Answers
D.
All local CAs share the same CRLs
Suggested answer: A, B

Explanation:

CRLs are lists of certificates that have been revoked by the issuing CA and should not be trusted by any entity. CRLs contain the serial number of the certificate that has been revoked, the date and time of revocation, and the reason for revocation. Revoked certificates are automatically placed on the CRL by the CA and the CRL is updated periodically. CRLs can be exported through various methods, such as HTTP, LDAP, or SCEP. Each local CA has its own CRL that is specific to its issued certificates.

Reference: https://docs.fortinet.com/document/fortiauthenticator/6.4/administrationguide/ 372408/certificate-management/372413/certificate-revocation-lists

asked 18/09/2024
chengbin lin
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first