Which two intended purposes should the certificate for Server1 contain?

Your network contains an Active Directory domain named contoso.com. The domain
contains two servers named Server1 and Server2. Both servers have the Hyper-V server
role installed.
You plan to replicate virtual machines between Server1 and Server2. The replication will be
encrypted by using Secure Sockets Layer (SSL).
You need to request a certificate on Server1 to ensure that the virtual machine replication is
encrypted.
Which two intended purposes should the certificate for Server1 contain? (Each correct
answer presents part of the solution. Choose two.)

Your network contains an Active Directory domain named contoso.com. The domain
contains two servers named Server1 and Server2. Both servers have the Hyper-V server
role installed.
You plan to replicate virtual machines between Server1 and Server2. The replication will be
encrypted by using Secure Sockets Layer (SSL).
You need to request a certificate on Server1 to ensure that the virtual machine replication is
encrypted.
Which two intended purposes should the certificate for Server1 contain? (Each correct
answer presents part of the solution. Choose two.)

A.
Client Authentication

B.
Kernel Mode Code Signing

C.
Server Authentication

D.
IP Security end system

E.
KDC Authentication

Explanation:
Replica Server Certificate Requirements
To enable a server to receive replication traffic, the certificate in the replica server must meet
the following conditions
* Enhanced Key Usage must support both Client and Server authentication
Etc.
Reference: Hyper-V Replica – Prerequisites for certificate based deployments



Leave a Reply to kurt Cancel reply4

Your email address will not be published. Required fields are marked *

four × two =


Joe

Joe

client and server are correct

kurt

kurt

the encrypted replication of a vm requires the host servers to have installed a certificate including both client authentication and server authentication extensions for EKU (enhanced key usage) and hte fqdn of hte local server.