Palo_Alto_Networks
PCNSE · Question #513
An engineer is configuring SSL Inbound Inspection for public access to a company's application. Which certificate(s) need to be installed on the firewall to ensure that inspection is performed…
The correct answer is C. Self-signed certificate with exportable private key. On the firewall, you must install the certificate and private key for each server for which you want to perform SSL Inbound Inspection.
Submitted by carlos_mx· Apr 18, 2026Deploy and Configure
Question
An engineer is configuring SSL Inbound Inspection for public access to a company's application. Which certificate(s) need to be installed on the firewall to ensure that inspection is performed successfully?
Options
- ASelf-signed CA and End-entity certificate
- BRoot CA and Intermediate CA(s)
- CSelf-signed certificate with exportable private key
- DIntermediate CA (s) and End-entity certificate
How the community answered
(39 responses)- A8% (3)
- B13% (5)
- C77% (30)
- D3% (1)
Explanation
On the firewall, you must install the certificate and private key for each server for which you want to perform SSL Inbound Inspection.
Topics
#SSL Inspection#Inbound Decryption#Certificates#Private Key
Community Discussion
No community discussion yet for this question.