Refer to the exhibit.
Which two configurations are needed to get the WAN Edges registered with the controllers when certificates are used? (Choose two.)
Refer to the exhibit.
Which two configurations are needed to get the WAN Edges registered with the controllers when certificates are used? (Choose two.)
To get WAN Edges registered with the controllers when certificates are used, you need to generate a Certificate Signing Request (CSR) manually, which can be done within either the vManage server or the WAN Edge itself. This is required to obtain a certificate from a Certificate Authority (CA). Therefore, generating a CSR manually within vManage (option B) and generating a CSR manually on the WAN Edge (option C) are both necessary steps. Manually installing the certificate on vManage is not required, as it is only mentioned to be generated within the systems.
B and D are correct
BD don't make sense to me . I think it's A and E
In the picture it shows Enterprise not Manual. So, B and C eliminates. If Controller Certificate Authorization shows Enterprise I hope certificate from CA is already installed in vManage. So, D eliminates. Remains A and E.
not sure with the answer. B & D seems correct options.
the question said enterprise and manual. it means that you have to generate CSR and install it on vmanage.
To On-board a WAN edge using enterprise CA [which is the exact same lab setup by Keith B on CBTnug) You need to put a root cert on the edge, which you pull from the vmanage using the request file command. You then need to install it by using the request " request root-cert-chain install" https://www.cisco.com/c/en/us/support/docs/routers/sd-wan/221605-install-root-certificate-on-sdwan-vedges.html
Enterprise - Mean you are using an Enterprise CA, not Default / Cloud I.E Cisco & DigiCert. Process for that is B,D.
I believe is BD https://www.cisco.com/c/en/us/td/docs/solutions/CVD/SDWAN/cisco-sdwan-controller-cert-deploy-guide.html