Your remote company users work from their laptops and access the applications stored in Azure by using a point-to-site VPN connections. You will use certificates generated from an on-premises-based certifiate authority (CA). Which certificate should be stored where?

Experience Level: Senior
Tags: Azure CloudAzure Virtual Networks

Answer

Trusted Root Certification Authorities certificate store on each laptop must contain the root CA certificate with only the public key. If the private key was present, the CA would be compromised as everyone would be able to generate their own certificates using the CA private key.

The user's Personal store on each laptop must contain the user's certificate that has the private key.

The Azure VPN gateway must contain the root CA certificate with only the public key.
Related Azure Cloud job interview questions

Comments

No Comments Yet.
Be the first to tell us what you think.
Azure Virtual Networks
Azure Virtual Networks

Are you learning Azure Cloud ? Try our test we designed to help you progress faster.

Test yourself
AZ-304 Microsoft Azure Architect Design Preparation
AZ-304 Microsoft Azure Architect Design Preparation

Are you learning Azure Cloud ? Try our test we designed to help you progress faster.

Test yourself