nerdexam
Juniper

JN0-633 · Question #30

You are asked to implement IPsec tunnels between your SRX devices located at various locations. You will use the public key infrastructure (PKI) to verify the identification of the endpoints. What…

The correct answer is A. Manually generating a PKCS10 request and submitting it to an authorized CA. D. Dynamically generating and sending a certificate request to an authorized CA using SCEP. trouble/configuring-and-troubleshooting-public-key-infrastructure.pdf

VPNs (IPsec, SSL)

Question

You are asked to implement IPsec tunnels between your SRX devices located at various locations. You will use the public key infrastructure (PKI) to verify the identification of the endpoints. What are two certificate enrollment options available for this deployment? (Choose two.)

Options

  • AManually generating a PKCS10 request and submitting it to an authorized CA.
  • BDynamically generating and sending a certificate request to an authorized CA using OCSP.
  • CManually generating a CRL request and submitting that request to an authorized CA.
  • DDynamically generating and sending a certificate request to an authorized CA using SCEP.

How the community answered

(24 responses)
  • A
    83% (20)
  • B
    4% (1)
  • C
    13% (3)

Explanation

trouble/configuring-and-troubleshooting-public-key-infrastructure.pdf

Topics

#PKI#SCEP#certificate enrollment#CA

Community Discussion

No community discussion yet for this question.

Full JN0-633 Practice