ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 13 - NSE7_LED-7.0 discussion

Report
Export

Refer to the exhibit

Examine the sections of the configuration shown in the output

What action will FortiGate take when verifying the student certificate through OCSP?

A.
Reject the student certificate if the OCSP server replies that the student certificate status is unknown
Answers
A.
Reject the student certificate if the OCSP server replies that the student certificate status is unknown
B.
Not verify the OCSP server certificate
Answers
B.
Not verify the OCSP server certificate
C.
Use the OCSP URL included in the student certificate to verify the student certificate
Answers
C.
Use the OCSP URL included in the student certificate to verify the student certificate
D.
Consider the student certificate status as valid if the OCSP server is unreachable
Answers
D.
Consider the student certificate status as valid if the OCSP server is unreachable
Suggested answer: C

Explanation:

According to the exhibit, the FortiGate configuration has ocsp-status enabled and ocsp-option set to certificate. This means that FortiGate will use OCSP to verify the revocation status of certificates presented by clients.According to the FortiGate Administration Guide2, ''If you select certificate, FortiGate uses an OCSP URL included in a certificate to verify that certificate.'' Therefore, option C is true because it describes what action FortiGate will take when verifying the student certificate through OCSP. Option A is false because FortiGate will not reject the student certificate if the OCSP server replies that the student certificate status is unknown, but rather accept it as valid. Option B is false because FortiGate will verify the OCSP server certificate by default, unless strict-ocsp-check is disabled. Option D is false because FortiGate will not consider the student certificate status as valid if the OCSP server is unreachable, but rather reject it as invalid.

asked 18/09/2024
Jay Fletcher
49 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first