<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic browser certificate prompt when trying to connect with Gp portal in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/browser-certificate-prompt-when-trying-to-connect-with-gp-portal/m-p/588054#M5392</link>
    <description>&lt;P&gt;the scenario&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;NDES server&lt;/P&gt;
&lt;P&gt;SCEP certificate profile intune&lt;/P&gt;
&lt;P&gt;auto enrolled windows 11 machine with business hello configured&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;our setup is look for certificates in the machine store and specific OID (registry setting and PA end)&lt;/P&gt;
&lt;P&gt;when trying to connect via vpn, the browser prompts for certificate (user cert in this) you can select it , press ok and it connects, or if you click cancel, it vpns in ok&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;it seems to be ignoring the registry settings?&amp;nbsp; we issue 2 certs (user and machine with ip security) that OID doesnt exist in other certs deployed to the machine, so i am at a loss why the prompt&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;if i delete the user cert it prompts for, it vpns in right away,&lt;/P&gt;</description>
    <pubDate>Tue, 28 May 2024 06:36:34 GMT</pubDate>
    <dc:creator>ilovegppa</dc:creator>
    <dc:date>2024-05-28T06:36:34Z</dc:date>
    <item>
      <title>browser certificate prompt when trying to connect with Gp portal</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/browser-certificate-prompt-when-trying-to-connect-with-gp-portal/m-p/588054#M5392</link>
      <description>&lt;P&gt;the scenario&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;NDES server&lt;/P&gt;
&lt;P&gt;SCEP certificate profile intune&lt;/P&gt;
&lt;P&gt;auto enrolled windows 11 machine with business hello configured&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;our setup is look for certificates in the machine store and specific OID (registry setting and PA end)&lt;/P&gt;
&lt;P&gt;when trying to connect via vpn, the browser prompts for certificate (user cert in this) you can select it , press ok and it connects, or if you click cancel, it vpns in ok&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;it seems to be ignoring the registry settings?&amp;nbsp; we issue 2 certs (user and machine with ip security) that OID doesnt exist in other certs deployed to the machine, so i am at a loss why the prompt&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;if i delete the user cert it prompts for, it vpns in right away,&lt;/P&gt;</description>
      <pubDate>Tue, 28 May 2024 06:36:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/browser-certificate-prompt-when-trying-to-connect-with-gp-portal/m-p/588054#M5392</guid>
      <dc:creator>ilovegppa</dc:creator>
      <dc:date>2024-05-28T06:36:34Z</dc:date>
    </item>
  </channel>
</rss>

