exam questions

Exam NSE4_FGT-6.4 All Questions

View all questions & answers for the NSE4_FGT-6.4 exam

Exam NSE4_FGT-6.4 topic 1 question 26 discussion

Actual exam question from Fortinet's NSE4_FGT-6.4
Question #: 26
Topic #: 1
[All NSE4_FGT-6.4 Questions]

Which three pieces of information does FortiGate use to identify the hostname of the SSL server when SSL certificate inspection is enabled? (Choose three.)

  • A. The subject field in the server certificate
  • B. The serial number in the server certificate
  • C. The server name indication (SNI) extension in the client hello message
  • D. The subject alternative name (SAN) field in the server certificate
  • E. The host field in the HTTP header
Show Suggested Answer Hide Answer
Suggested Answer: ACD 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Xillar
Highly Voted 4 years, 1 month ago
A C and D is the correct answer. Fortigate firtsly uses SNI, if there is no SNI it uses Subject or Subject Alternatives
upvoted 21 times
...
Lionardo
Highly Voted 4 years ago
A, C & D is correct. FortiGate_Security_6.4 page 328
upvoted 15 times
...
Sergio3000
Most Recent 2 years, 2 months ago
Selected Answer: ACD
Is correct
upvoted 1 times
...
JohnBB
2 years, 9 months ago
FortiGate_Security_7.0 Study Guide .pdf page 326
upvoted 1 times
...
TinPogi
3 years, 1 month ago
Selected Answer: ACD
FortiGate_Security_6.4 page 328
upvoted 2 times
...
mario156090
3 years, 2 months ago
Selected Answer: ACD
FortiGate_Security_6.4 page 328. Says clearly.
upvoted 2 times
...
Stitch2020
3 years, 3 months ago
Selected Answer: ACD
ACD are the right answers
upvoted 3 times
...
MrSaintz
3 years, 4 months ago
Selected Answer: ACD
As Lionardo claims, page 328 in study Guide
upvoted 2 times
...
BIGRAOU
3 years, 4 months ago
Selected Answer: ABE
FortiGate_Security_6.4_Study_Guide-Online, PAGE 315
upvoted 1 times
lrosadini
3 years, 3 months ago
on pag 315 it says how to use the certificate to identify a Persone or a Device. This question is different.
upvoted 1 times
...
...
Hriibek
3 years, 4 months ago
Selected Answer: ACD
"...FortiGate parses server name indication (SNI) from client Hello..." "If there is no SNI exchanged, then FortiGate identifies the server by the value in the Subject field or SAN" Fortigate Security 6.4 Study Guide, page 328
upvoted 3 times
...
forti_Ctes
3 years, 6 months ago
A, C & D are correct
upvoted 1 times
...
Akoladet
3 years, 7 months ago
The right answer is A,C and D
upvoted 1 times
...
Ishan_Dis
4 years ago
A,C,D is correct one
upvoted 2 times
...
davidone
4 years ago
A,C,D are correct. Fortigate uses the server name indication (SNI) to discern the hostname of the SSL server at the beginning of the SSL handshake. If there is no SNI, Forigate looks at the subject and subject alternative name fields.
upvoted 5 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago