nerdexam
Cisco

300-810 · Question #56

Refer to the exhibit. Users report that they are prompted to accept server certificates when they initially run Cisco Jabber. An engineer removes these prompts to prevent confusion. Which statement…

The correct answer is C. These certificates are self-signed certificates, so they must be added manually to the user OS. When Cisco Jabber connects to IM&P and CUCM servers, it presents the server's TLS certificate for validation. If those servers use self-signed certificates (not issued by a public or enterprise CA that the OS already trusts), the OS has no way to verify them automatically, so…

Application Clients

Question

Refer to the exhibit. Users report that they are prompted to accept server certificates when they initially run Cisco Jabber. An engineer removes these prompts to prevent confusion. Which statement about this scenario is true?

Exhibit

300-810 question #56 exhibit

Options

  • APresentation of the certificates can be disabled by setting up Cisco IM&P servers into nonsecure
  • BNothing can be done to resolve this issue because certificates must be accepted by each Jabber
  • CThese certificates are self-signed certificates, so they must be added manually to the user OS
  • DThe behavior is a security breach because certificates are considered untrusted and as not

How the community answered

(38 responses)
  • A
    8% (3)
  • B
    16% (6)
  • C
    74% (28)
  • D
    3% (1)

Explanation

When Cisco Jabber connects to IM&P and CUCM servers, it presents the server's TLS certificate for validation. If those servers use self-signed certificates (not issued by a public or enterprise CA that the OS already trusts), the OS has no way to verify them automatically, so Jabber surfaces an 'accept this certificate?' prompt to the user. The correct resolution is to add those self-signed certificates to each user's operating system trusted certificate store (e.g., via Group Policy on Windows or MDM on macOS). Once the OS trusts the CA or the self-signed cert directly, Jabber validates the certificate silently and the prompts disappear. Option A is wrong because disabling security on IM&P doesn't remove certificate prompts-it removes encryption entirely. Option B is wrong because the issue is solvable. Option D mischaracterizes the situation; the certificates are not a breach, they are simply untrusted by the OS.

Topics

#Cisco Jabber#Server Certificates#Self-signed Certificates#Certificate Trust

Community Discussion

No community discussion yet for this question.

Full 300-810 Practice