View all questions & answers for the NSE 5 - FortiWeb 8.0 Administrator Exam Materials exam
NSE 5 - FortiWeb 8.0 Administrator Exam Materials-Question 33 Discussion
Comments
Selected Answers: B, C
Configure SNI routing so FortiWeb selects the correct certificate after it finishes decrypting traffic.
The problem is "after it finishes decrypting."
SNI is part of the TLS handshake. FortiWeb uses the client's SNI/server name to determine which certificate to present, so this happens during the TLS negotiation, before the encrypted application traffic is decrypted. Fortinet documents SNI as a mechanism for determining which certificate FortiWeb presents based on the domain.
So:
SNI → select certificate → TLS handshake → encryption/decryption
not:
decrypt → SNI → select certificate
You are configuring FortiWeb to handle encrypted HTTPS traffic. You must decide when FortiWeb should terminate SSL and which configuration is required for decryption in each deployment mode. Which two configuration actions correctly implement HTTPS handling on FortiWeb? (Choose two answers)
Brave-Dump Clients Votes