Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco Exam 300-730 Topic 14 Question 80 Discussion

Actual exam question for Cisco's 300-730 exam
Question #: 80
Topic #: 14
[All 300-730 Questions]

An engineer is requesting an SSL certificate for a VPN load-balancing cluster in which two Cisco ASAs provide clientless SSLVPN access. The FQDN that users will enter to access the clientless VPN is asa.example.com, and users will be redirected to either asa1.example.com or asa2.example.com. The cluster FQDN and individual Cisco ASAs FQDNs resolve to IP addresses 192.168.0.1, 192.168.0.2, and 192.168.0.3 respectively. The issued certificate must be able to be used to validate the identity of either ASA in the cluster without returning any certificate validation errors. Which fields must be included in the certificate to meet these requirements?

Show Suggested Answer Hide Answer

Contribute your Thoughts:

Audry
4 days ago
Haha, imagine if the engineer asked for a certificate with just the IP addresses in the SAN. That would be a disaster waiting to happen!
upvoted 0 times
...
Celestina
5 days ago
Yeah, I agree with Norah. C seems like the most comprehensive option to meet the requirements. The CN and SAN fields should have the necessary information.
upvoted 0 times
...
Norah
6 days ago
Exactly! It's crucial to have the FQDNs in the certificate, not just the IPs. Otherwise, it'll never work as expected.
upvoted 0 times
...
Stephaine
7 days ago
Oh man, that would be a nightmare. Can you imagine the users' faces when they try to connect and get certificate validation errors?
upvoted 0 times
...

Save Cancel