Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.

Unlimited Access

Get Unlimited Contributor Access to the all ExamTopics Exams!
Take advantage of PDF Files for 1000+ Exams along with community discussions and pass IT Certification Exams Easily.

Exam NSE7_ZTA-7.2 topic 1 question 20 discussion

Actual exam question from Fortinet's NSE7_ZTA-7.2
Question #: 20
Topic #: 1
[All NSE7_ZTA-7.2 Questions]

Refer to the exhibit.

User student is not able to log in to SSL VPN.
Given the output showing a real-time debug, which statement describes the login failure?

  • A. Unable to verify chain of trust for the peer certificate.
  • B. CN does not match the user peer configuration.
  • C. student is not part of the usergroup SSL_VPN_Users.
  • D. Client certificate has expired.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
d567468
5 days, 16 hours ago
Selected Answer: B
The certificate subject CN "student" fails to match the user peer configuration, leading to the login failure.
upvoted 1 times
...
lil_pc1972
3 months, 2 weeks ago
FortiClient validates certificates using the following industry standards: The domain or FQDN that FortiClient is connecting to, matches the domain to which the certificate is issued. The validation process correctly handles wildcards in the domain name in the certificate. The validation process considers both the CN in the subject or the SAN. The certificate expiry date is in the future. The certificate has not expired. The certificate issuer or the root certificate in the certificate chain is from a publicly trusted CA. Trusted CAs are read from the operating system.
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
ex Want to SAVE BIG on Certification Exam Prep?
close
ex Unlock All Exams with ExamTopics Pro 75% Off
  • arrow Choose From 1000+ Exams
  • arrow Access to 10 Exams per Month
  • arrow PDF Format Available
  • arrow Inline Discussions
  • arrow No Captcha/Robot Checks
Limited Time Offer
Ends in