QuestionQ16

Proxy Services

What is required to enable an HTTPS proxy?

  • A self-signed server certificate
  • B trusted third-party CA signed root certificate
  • C self-signed CSR
  • D self-signed root certificate
Explanation

HTTPS inspection requires the proxy to use a root/signing certificate to generate the server certificates presented to clients during decryption. Cisco Secure Web Appliance can generate this root certificate and key locally, producing a self-signed root certificate. A CSR is only a request for CA signing, not the certificate required for proxy operation.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!