A security administrator is preparing to establish Secure Internal Communication (SIC) between a Security Management Server and a new Security Gateway. Which two actions are required to successfully initialize SIC? (Choose two.)
Entering the one-time password on the gateway via cpconfig completes the initial trust handshake. The gateway uses this password to authenticate to the management server, which then issues the SIC certificate. This step is mandatory; without it, the gateway remains in 'Not Communicating' state.
Why this answer
SIC initialization requires a shared secret. The administrator sets a one-time password in the gateway object in SmartConsole, then enters the identical password on the gateway using cpconfig's Secure Internal Communication section. This exchange authenticates the gateway to the management server's internal CA, which issues the SIC certificate.
Both actions are mandatory for successful initialization.
Exam trap
The trap here is thinking that manual certificate creation or legacy commands like fw putkey are needed, when the modern process relies solely on the one-time password exchange.