Fortinet
NSE8_812 · Question #23
Refer to the exhibit. The exhibit shows two error messages from a FortiGate root Security Fabric device when you try to configure a new connection to a FortiClient EMS Server. Referring to the…
The correct answer is B. Export and import the FortiClient EMS server certificate to the root FortiGate. D. Authorize the root FortiGate on the FortiClient EMS. See the full explanation below for the reasoning.
Question
Refer to the exhibit. The exhibit shows two error messages from a FortiGate root Security Fabric device when you try to configure a new connection to a FortiClient EMS Server. Referring to the exhibit, which two actions will fix these errors? (Choose two.)
Exhibit A:
# execute fctems verify Win2K16-EMS
certificate not configured/verified: 2
Could not verify server certificate based on current certificate authorities.
Error 1--9220-0-0 get SN call: EMS Certificate is not signed by a known CA.
Exhibit B:
# execute fctems verify Win2K16-EMS
failure in certificate configuration/verification: -4
Could not verify EMS. Error 1--94-0-401 in get SN call: Authentication deniedOptions
- AVerify that the CRL is accessible from the root FortiGate.
- BExport and import the FortiClient EMS server certificate to the root FortiGate.
- CInstall a new known CA on the Win2K16-EMS server.
- DAuthorize the root FortiGate on the FortiClient EMS.
How the community answered
(19 responses)- A5% (1)
- B74% (14)
- C21% (4)
Community Discussion
No community discussion yet for this question.