Which two attributes are required on a certificate so it can be used as a CA certificate on SSL inspection? (Choose two.)
Which two attributes are required on a certificate so it can be used as a CA certificate on SSL inspection? (Choose two.)
Pag. 174
CA=True KeyUsage=KeyCertSign
B and D correct
The CA=True value identifies the certificate as a CA certificate. The KryUsage =KeyCertSign value indicates that the certificate corresponding private key is permitted to sign certificates. see RFC 5280 section 4.2.1.9 basic Constraints. Answer is B & D
page 174 of FGT 7.4 ASG
B&D are correct