B is incorrect as Its not madatory to have a wildcard certificate.
A is incorrect because certificate can be signed by any CA private or public.
So C & D is correct.
C & D, FortiGate Security 7.0 pp 328 "In order for FortiGate to act in these roles, its CA
certificate must have the basic constraints extension set to cA=True and the value of the keyUsage extension set to keyCertSign."
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
yadavarya97
Highly Voted 3 years, 8 months agoGape4
Highly Voted 3 years, 9 months agoNicolaeEast
Most Recent 2 years, 8 months agoJ_Olin
2 years, 8 months agoAJDLM
2 years, 10 months agoSandroAlex
3 years, 1 month agoCorynth
3 years, 1 month agoCeajance
3 years, 2 months agoMrSaintz
3 years, 4 months agobubba808
3 years, 10 months agophototrait
3 years, 10 months ago