View Single Post
  #2   (View Single Post)  
Old 29th August 2012
jggimi's Avatar
jggimi jggimi is offline
More noise than signal
 
Join Date: May 2008
Location: USA
Posts: 7,983
Default

I don't use X.509 certificates, I just use RSA public/private key pairs established with each FQDN. So I cannot answer certificate deployment questions. But ... I do not understand how your second scenario would possibly have correct SAs and Flows, as this would never establish them with 192.168.1.1.

Have you tested either scenario?
Reply With Quote