What should you identify?

Your network contains a perimeter network and an internal network. The internal network contains an Active
Directory Federation Services (AD FS) infrastructure. The infrastructure uses Active Directory as the attribute
store. All servers run Windows Server 2012 R2.
You plan to deploy a Web Application Proxy to a server named Server2 in the perimeter network.
You need to identify which value must be included in the certificate that is deployed to Server2.
What should you identify?

Your network contains a perimeter network and an internal network. The internal network contains an Active
Directory Federation Services (AD FS) infrastructure. The infrastructure uses Active Directory as the attribute
store. All servers run Windows Server 2012 R2.
You plan to deploy a Web Application Proxy to a server named Server2 in the perimeter network.
You need to identify which value must be included in the certificate that is deployed to Server2.
What should you identify?

A.
The name of the Federation Service

B.
The name of the Active Directory domain

C.
The FQDN of the AD FS server

D.
The public IP address of Server2

Explanation:
Web Application Proxy servers require the following certificates in the certificate store on each Web Application
Proxy server:
*A certificate whose subject covers the federation service name. If you want to use Workplace Join, the
certificate must also contain the following subject alternative names (SANs): <federation service
name>.<domain> and enterpriseregistration.<domain>.
*A wildcard certificate, a subject alternative name (SAN) certificate, several SAN certificates, or several
certificates whose subjects cover each web application.
*A copy of the certificate issued to external servers when using client certificate preauthentication.



Leave a Reply 1

Your email address will not be published. Required fields are marked *