300-415 · Question #151
Which third-party Enterprise CA server must be used for a cloud-based vSmart controller?
The correct answer is A. RootCert. For Cisco SD-WAN cloud-based controllers, the specific 'RootCert' external CA is designated for certificate issuance and management.
Question
Options
- ARootCert
- BVeriSign
- CMicrosoft
- DRADIUS
How the community answered
(20 responses)- A90% (18)
- C5% (1)
- D5% (1)
Why each option
For Cisco SD-WAN cloud-based controllers, the specific 'RootCert' external CA is designated for certificate issuance and management.
Cisco SD-WAN cloud-based controllers (vManage, vBond, vSmart) specifically use Cisco's own cloud-based certificate authority, 'RootCert,' for automated certificate management and authentication within the SD-WAN fabric.
VeriSign (now DigiCert/Symantec) is a public CA, but it is not the designated or mandated CA for Cisco's cloud-based SD-WAN controllers.
Microsoft Certificate Authority (AD CS) can be used for on-premise SD-WAN deployments with an enterprise CA, but it is not the required CA for cloud-based controllers.
RADIUS is an authentication, authorization, and accounting protocol, not a Certificate Authority (CA) server responsible for issuing and managing digital certificates.
Concept tested: Cloud-based vSmart controller CA requirement
Source: https://www.cisco.com/c/en/us/td/docs/routers/sdwan/configuration/sdwan-xe-gs-config-guide/cisco-sd-wan-gs-config-guide-xe-17-x/certificate-management.html
Topics
Community Discussion
No community discussion yet for this question.