Answers to Review Questions

1. B. One of the main certificate validation methods is called Online Certificate Status Protocol (OCSP). When certificates get revoked, your certificate server needs to make sure that these certificates don’t get used again. You can perform this validation in many ways. The most common validation methods are CRLs, delta CRLs, and OCSP responses. Using Network Load Balancing ensures fault tolerance.

2. A. With the Certificate Authority Web Enrollment Role Service, users can easily request certificates and retrieve Certificate Revocation Lists (CRLs) through a web browser. It is a good practice to load this service on a member server and not a domain controller. This machine can issue certificates to web users, and ...

Get MCTS Windows Server® 2008 R2 Complete: Study Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.