CheckPoint Exam Questions

Which of the following is the MOST likely cause of the problem and the appropriate solution?

You are using Hybrid IKE for Client Authentication. SecureClient produces the error Certifcation is
badly signed. Which of the following is the MOST likely cause of the problem and the appropriate
solution?

A.
Under the firewall object > VPN > IKE Properties > Support Authentication Methods, Hybrid
Mode is not selected. Select the Hybrid Mode option, and stop and restart the Enforcement
Module.

B.
The Distinguished Name used is too long. Change it to a shorter name in the Manage
Certificate Properties screen.

C.
The certificate created by the Internal Certificate Authority (ICA) is corrupt. Create a new
certificate.

D.
The SecureClient and VPN-1/FireWall-1 Enforcement Module to which it is attempting to
connect are running incompatible versions. Upgrade the SecureClient to NG with Application
Intelligence.

E.
The digital signature is missing. Add the digital signature to the certificate in the Manage
Certificate Properties screen.