nerdexam
Palo_Alto_Networks

PCNSE · Question #513

An engineer is configuring SSL Inbound Inspection for public access to a company's application. Which certificate(s) need to be installed on the firewall to ensure that inspection is performed…

The correct answer is C. Self-signed certificate with exportable private key. On the firewall, you must install the certificate and private key for each server for which you want to perform SSL Inbound Inspection.

Submitted by carlos_mx· Apr 18, 2026Deploy and Configure

Question

An engineer is configuring SSL Inbound Inspection for public access to a company's application. Which certificate(s) need to be installed on the firewall to ensure that inspection is performed successfully?

Options

  • ASelf-signed CA and End-entity certificate
  • BRoot CA and Intermediate CA(s)
  • CSelf-signed certificate with exportable private key
  • DIntermediate CA (s) and End-entity certificate

How the community answered

(39 responses)
  • A
    8% (3)
  • B
    13% (5)
  • C
    77% (30)
  • D
    3% (1)

Explanation

On the firewall, you must install the certificate and private key for each server for which you want to perform SSL Inbound Inspection.

Topics

#SSL Inspection#Inbound Decryption#Certificates#Private Key

Community Discussion

No community discussion yet for this question.

Full PCNSE Practice