nerdexam
Palo_Alto_Networks

PCNSE · Question #261

Based on the following image, what is the correct path of root, intermediate, and end-user certificate?

The correct answer is B. VeriSign > Symantec > Palo Alto Networks. A certificate chain establishes trust by linking an end-user certificate back to a trusted Root Certificate Authority through a series of intermediate certificates.

Submitted by mike_84· Apr 18, 2026Core Concepts

Question

Based on the following image, what is the correct path of root, intermediate, and end-user certificate?

Exhibit

PCNSE question #261 exhibit

Options

  • APalo Alto Networks > Symantec > VeriSign
  • BVeriSign > Symantec > Palo Alto Networks
  • CSymantec > VeriSign > Palo Alto Networks
  • DVeriSign > Palo Alto Networks > Symantec

How the community answered

(64 responses)
  • A
    5% (3)
  • B
    91% (58)
  • C
    2% (1)
  • D
    3% (2)

Why each option

A certificate chain establishes trust by linking an end-user certificate back to a trusted Root Certificate Authority through a series of intermediate certificates.

APalo Alto Networks > Symantec > VeriSign

This order incorrectly places Palo Alto Networks as the root and Symantec as an intermediate, which does not reflect a standard certificate chain hierarchy.

BVeriSign > Symantec > Palo Alto NetworksCorrect

In a common certificate hierarchy, VeriSign acts as a well-known Root Certificate Authority, Symantec could function as an Intermediate CA signing authority, and Palo Alto Networks would typically represent the End-User (leaf) certificate issued for a specific device or service.

CSymantec > VeriSign > Palo Alto Networks

This order incorrectly positions Symantec as the root and VeriSign as an intermediate, which contradicts the typical roles of these certificate authorities.

DVeriSign > Palo Alto Networks > Symantec

This order incorrectly places Palo Alto Networks as the intermediate certificate and Symantec as the end-user, misrepresenting the trust chain.

Concept tested: Certificate chain hierarchy (Root, Intermediate, End-User)

Source: https://docs.paloaltonetworks.com/pan-os/10-2/pan-os-admin/decryption/decryption-concepts/how-certificate-authority-works

Topics

#Certificate Chain#PKI#Digital Certificates#SSL/TLS

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice