nerdexam
Palo_Alto_Networks

PCNSC · Question #8

An administrator encountered problems with inbound decryption. Which option should the administrator investigate as part of triage?

The correct answer is D. Security policy rule allowing SSL to the target server. Inbound decryption is where you are decrypting traffic to your internal server. You don't use a Root CA, you load that server's cert and private key. The Root cert is 'Optional'. https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/decryption/configure-ssl-inbound-

User-ID, Decryption, and Authentication

Question

An administrator encountered problems with inbound decryption. Which option should the administrator investigate as part of triage?

Options

  • Afirewall connectivity to a CRL
  • BRoot certificate imported into the firewall with "Trust" enabled
  • Cimportation of a certificate from an HSM
  • DSecurity policy rule allowing SSL to the target server

How the community answered

(48 responses)
  • A
    2% (1)
  • B
    15% (7)
  • C
    6% (3)
  • D
    77% (37)

Explanation

Inbound decryption is where you are decrypting traffic to your internal server. You don't use a Root CA, you load that server's cert and private key. The Root cert is 'Optional'. https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/decryption/configure-ssl-inbound-

Topics

#inbound decryption#SSL troubleshooting#security policy#triage

Community Discussion

No community discussion yet for this question.

Full PCNSC Practice