フリー問題

Palo Alto Networks Certified Next-Generation Firewall Engineer のフリー問題 13 / 20 問目

問題文

Which statements correctly describe the forward trust and forward untrust certificates used for outbound decryption? (Select two.)

選択肢

  1. The forward untrust certificate is used instead when validation of the server certificate fails, so the user sees a warning.
  2. Both certificates are presented to the server so that the server can decide whether the firewall is allowed to inspect the session.
  3. The forward trust certificate is used to re-sign the server certificate when the firewall could validate the original server certificate.
  4. The forward trust certificate is the same object as the certificate presented by the firewall's own web interface.
  5. The forward untrust certificate must be installed in the trust store of every endpoint, otherwise the firewall cannot complete the session at all and the user is unable to reach the site even after acknowledging a warning.

解答・解説を確認するには

正解と解説の確認、回答の記録には無料登録が必要です。登録すると演習モードでフリー問題に回答し、正誤と解説をその場で確認できます。