nerdexam
Cisco

300-415 · Question #151

Which third-party Enterprise CA server must be used for a cloud-based vSmart controller?

The correct answer is A. RootCert. For Cisco SD-WAN cloud-based controllers, the specific 'RootCert' external CA is designated for certificate issuance and management.

Controller Deployment

Question

Which third-party Enterprise CA server must be used for a cloud-based vSmart controller?

Options

  • ARootCert
  • BVeriSign
  • CMicrosoft
  • DRADIUS

How the community answered

(20 responses)
  • A
    90% (18)
  • C
    5% (1)
  • D
    5% (1)

Why each option

For Cisco SD-WAN cloud-based controllers, the specific 'RootCert' external CA is designated for certificate issuance and management.

ARootCertCorrect

Cisco SD-WAN cloud-based controllers (vManage, vBond, vSmart) specifically use Cisco's own cloud-based certificate authority, 'RootCert,' for automated certificate management and authentication within the SD-WAN fabric.

BVeriSign

VeriSign (now DigiCert/Symantec) is a public CA, but it is not the designated or mandated CA for Cisco's cloud-based SD-WAN controllers.

CMicrosoft

Microsoft Certificate Authority (AD CS) can be used for on-premise SD-WAN deployments with an enterprise CA, but it is not the required CA for cloud-based controllers.

DRADIUS

RADIUS is an authentication, authorization, and accounting protocol, not a Certificate Authority (CA) server responsible for issuing and managing digital certificates.

Concept tested: Cloud-based vSmart controller CA requirement

Source: https://www.cisco.com/c/en/us/td/docs/routers/sdwan/configuration/sdwan-xe-gs-config-guide/cisco-sd-wan-gs-config-guide-xe-17-x/certificate-management.html

Topics

#vSmart controller#Certificate Authority#PKI#Cloud deployment

Community Discussion

No community discussion yet for this question.

Full 300-415 Practice