Which attribute or extension identifies the owner of a certificate?
The subject name
Which configuration requires FortiGate to act as a CA for full SSL inspection?
Multiple clients connecting to multiple servers
Which inspection mode can protect your LAN devices from encrypted malware?
Deep inspection
What certificate standard does FortiGate use?
X.509v3
Who acts as the FortiGate OSCP responder?
FortiAuthenticator
What does FortiGate check before trusting and using a certificate?
How does FortiGate verify a digital signature?
What is SSL inspection mode used for?
What does SSL inspection do?
What does FortiGate act as in full SSL inspection?
Main-in-the-middle proxy
What is a difference between SSL inspection and full SSL inspection?
How do sessions work in full SSL inspection mode?
Where can you select the SSL inspection mode?
At the firewall policy level
What are the pre-defined SSL profiles?
What should you do if you want to modify a SSL profile?
Why might you exempt sites from SSL inspection?
How does FortiGate inspect encrypted traffic?
Intercepts the certificate coming from the server, then generates a temporary one
What certificate is installed by default on FortiGate?
How would you avoid warnings on a user device when using the default FortiGate Self-Signed certificate?
What is a certificate requirement for full SSL inspection?
Requires that FortiGate acts as a CA to generate an SSL private key and certificate
What is the default SSL inspection profile?
no-inspection
What are limitations of the no-inspection profile?
Where can you find the FortiGate HTTPS Server Certificate?
System > Settings
What functions would you need to import a private certificate for?