Correct: A
The question reads, "Which is NOT a valid reason for receiving a decrypt-cert-validation error?"
Per the link "hamshoo" provided, receiving the decrypt-cert-validation error is valid for the following conditions: expired, untrusted issuer, unknown status, or status verification time-out. "Unsupported HSM" is not a valid reason for receiving a decrypt-cert-validation error.
decrypt-cert-validation error would appear for SSL Forward Proxy. HSM is used to hold the private key for SSL Inbound Inspection, so an HSM issue is NOT a valid reason.
Answer is A.
@Hamshoo, yes you are right I was thinking about HSM (Hardware security module), but then read the question very carefully and it said "decrypt cert validation" which one of the options is untrusted issuer, so yes D is right!
Answer is D:
https://docs.paloaltonetworks.com/pan-os/7-1/pan-os-new-features/networking-features/ssl-ssh-session-end-reasons
upvoted 2 times
...
This section is not available anymore. Please use the main Exam Page.PCNSE Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
ChiaPet75
Highly Voted 4 years, 4 months agoswajal
Highly Voted 4 years, 4 months agoMarshpillowz
Most Recent 9 months, 1 week agoTAKUM1y
2 years agoyogininangpal
3 years, 5 months agoPuckinWebGuy
3 years, 8 months agorammsdoct
4 years, 4 months agohamshoo
4 years, 4 months ago