ExamGecko
Question list
Search
Search

Related questions











Question 210 - PCNSE discussion

Report
Export

An administrator is configuring SSL decryption and needs 10 ensure that all certificates for both SSL Inbound inspection and SSL Forward Proxy are installed properly on the firewall. When certificates are being imported to the firewall for these purposes, which three certificates require a private key?

(Choose three.)

A.
Forward Untrust certificate
Answers
A.
Forward Untrust certificate
B.
Forward Trust certificate
Answers
B.
Forward Trust certificate
C.
Enterprise Root CA certificate
Answers
C.
Enterprise Root CA certificate
D.
End-entity (leaf) certificate
Answers
D.
End-entity (leaf) certificate
E.
Intermediate certificate(s)
Answers
E.
Intermediate certificate(s)
Suggested answer: A, B, D

Explanation:

This is discussed in the Palo Alto Networks PCNSE Study Guide in Chapter 9: Decryption, under the section "SSL Forward Proxy and Inbound Inspection Certificates":

"When importing SSL decryption certificates, you need to provide private keys for the forward trust, forward untrust, and end-entity (leaf) certificates. You do not need to provide private keys for the root CA and intermediate certificates."

asked 23/09/2024
Alberto Paniagua
30 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first