1Y0-204 · Question #82
Which two actions must be true for a client to connect to an SSL offload virtual server without any SSL errors? (Choose two.)
The correct answer is A. The Root Certificate is installed on the client's device. C. The Server Certificate is bound to the load-balancing virtual server. To connect to an SSL offload virtual server without any SSL errors, the client must trust the certificate that is bound to the virtual server. This means that the root certificate of the certificate authority (CA) that issued the server certificate must be installed on the…
Question
Which two actions must be true for a client to connect to an SSL offload virtual server without any SSL errors? (Choose two.)
Options
- AThe Root Certificate is installed on the client's device.
- BThe Server Certificate is from a private certificate authority (CA).
- CThe Server Certificate is bound to the load-balancing virtual server.
- DThe Root Certificate is installed on the Citrix ADC.
How the community answered
(32 responses)- A84% (27)
- B6% (2)
- D9% (3)
Explanation
To connect to an SSL offload virtual server without any SSL errors, the client must trust the certificate that is bound to the virtual server. This means that the root certificate of the certificate authority (CA) that issued the server certificate must be installed on the client's device. Additionally, the server certificate must be bound to the load-balancing virtual server that is configured for SSL offload, not to the back-end servers. This way, the Citrix ADC can terminate the SSL connection and communicate with the back-end servers using HTTP or TCP.
Topics
Community Discussion
No community discussion yet for this question.