Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Fortinet Exam NSE7_EFW-7.2 Topic 4 Question 31 Discussion

Actual exam question for Fortinet's NSE7_EFW-7.2 exam
Question #: 31
Topic #: 4
[All NSE7_EFW-7.2 Questions]

Refer to the exhibit, which shows an SSL certification inspection configuration.

Which action does FortiGate take if the server name indication (SNI) does not match either the common name (CN) or any of the subject alternative names (SAN) in the server certificate?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Lilli
16 days ago
I hope the exam doesn't have any 'Fortinet' questions. I'd rather be 'Fort-nite-ing' right now.
upvoted 0 times
...
Bette
18 days ago
B) FortiGate uses the CN information from the Subject field in the server certificate. Classic fallback option if SNI is not available.
upvoted 0 times
Tennie
3 days ago
B) FortiGate uses the CN information from the Subject field in the server certificate
upvoted 0 times
...
Pearline
6 days ago
A) FortiGate uses the first entry listed in the SAN field in the server certificate
upvoted 0 times
...
Daren
14 days ago
B) FortiGate uses the CN information from the Subject field in the server certificate
upvoted 0 times
...
Refugia
14 days ago
B) FortiGate uses the CN information from the Subject field in the server certificate
upvoted 0 times
...
...
Joseph
1 months ago
Hmm, that makes sense too. Let's review the question again to be sure.
upvoted 0 times
...
Hayley
1 months ago
I disagree, I believe the correct answer is B) FortiGate uses the CN information from the Subject field in the server certificate.
upvoted 0 times
...
Joseph
1 months ago
I think the answer is A) FortiGate uses the first entry listed in the SAN field in the server certificate.
upvoted 0 times
...
Barney
1 months ago
C) FortiGate uses the SNI from the user's web browser. This is the logical choice to accommodate different websites on the same IP address.
upvoted 0 times
...
Kallie
1 months ago
D) FortiGate closes the connection because this represents an invalid SSL/TLS configuration. That's the right move to ensure secure communication.
upvoted 0 times
Lynelle
16 days ago
User 3: B) FortiGate uses the CN information from the Subject field in the server certificate
upvoted 0 times
...
Tomoko
20 days ago
User 2: A) FortiGate uses the first entry listed in the SAN field in the server certificate
upvoted 0 times
...
Shawnta
28 days ago
User 1: D) FortiGate closes the connection because this represents an invalid SSL/TLS configuration. That's the right move to ensure secure communication.
upvoted 0 times
...
...

Save Cancel