QuestionQ14

PAN-OS Networking Configuration

A network administrator must replace a firewall’s default self-signed certificate with one that the company’s internal certificate authority (CA) has signed.

Which two firewall features require assignment of this new certificate through an SSL/TLS service profile?

Choose two
  • A User-ID agent redistribution
  • B RADIUS server authentication
  • C Authentication portal
  • D GlobalProtect gateway
Explanation

An SSL/TLS service profile defines the server certificate used to secure firewall services, including the Authentication Portal and GlobalProtect portals and gateways. A GlobalProtect gateway specifically selects an SSL/TLS service profile for gateway security; RADIUS server authentication and User-ID agent redistribution are not services that use this server-certificate assignment mechanism.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!