Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam 300-730 All Questions
Exam 300-730 All Questions

View all questions & answers for the 300-730 exam

Cisco CCNP Security 300-730 Question # 25 Topic 2 Discussion

300-730 Exam Topic 2 Question 25 Discussion:
Question #: 25
Topic #: 2

An engineer is requesting an SSL certificate for a VPN load-balancing cluster in which two Cisco ASAs provide clientless SSLVPN access. The FQDN that users will enter to access the clientless VPN is asa.example.com, and users will be redirected to either asa1.example.com or asa2.example.com. The cluster FQDN and individual Cisco ASAs FQDNs resolve to IP addresses 192.168.0.1, 192.168.0.2, and 192.168.0.3 respectively. The issued certificate must be able to be used to validate the identity of either ASA in the cluster without returning any certificate validation errors. Which fields must be included in the certificate to meet these requirements?


A.

CN=*.example.com, SAN=asa.example.com


B.

CN=192.168.0.1, SAN=asa1.example.com, asa2.example.com


C.

CN=asa.example.com, SAN=asa.example.com, asa1.example.com, asa2.example.com


D.

CN=192.168.0.1, SAN=192.168.0.1, 192.168.0.2, 192.168.0.3


Get Premium 300-730 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.