Scenario:
A Citrix Administrator needs to create a single Fully Qualified Domain Name (FQDN) to access a
store internally and externally for the current StoreFront server. The internal FQDN is
inweb.company.com and the external FQDN is outweb.company.com. Which kind of certificate can
the administrator generate to support a wide range of unmanaged devices?

A.
Self-signed server certificate
B.
Public certificate with Subject Alternative Name
C.
Enterprise Root CA signed certificate with Subject Alternative Name
D.
Intermediate certificate
That would be B. Since you want to have exernall access and NOT get a certificate not trusted error B is the answer.
0
0
My answer would be B as well for the same reason ; An (internal) Enterprise certificate will not be trusted automatically by external devices. I will only be trusted by internal devices. Public certificates will be trusted by external clients resulting in more supported devices.
0
0