Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Paloalto Networks Palo Alto Networks Next-Generation Firewall Engineer NGFW-Engineer Question # 11 Topic 2 Discussion

Paloalto Networks Palo Alto Networks Next-Generation Firewall Engineer NGFW-Engineer Question # 11 Topic 2 Discussion

NGFW-Engineer Exam Topic 2 Question 11 Discussion:
Question #: 11
Topic #: 2

A company is enabling SSL Forward Proxy to inspect encrypted traffic. A security engineer generates a new certificate on the firewall and flags it with the "Forward Trust" certificate property.

What is the critical next step that must be performed for decryption to function correctly without causing security warnings for end users?


A.

Set the forward trust certificate as the SSL/TLS Service profile for the management interface.


B.

Create a Security policy rule that allows traffic from the certificate of the firewall to all the zones.


C.

Import the private key of the forward trust certificate onto the domain controller.


D.

Install the public portion of the forward trust certificate into the trust store of all client machines.


Get Premium NGFW-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.