<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: We're encountering a GlobalProtect error stating 'Certificate is not within its validity period,' despite this being a newly configured Palo Alto in GlobalProtect Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/we-re-encountering-a-globalprotect-error-stating-certificate-is/m-p/1233855#M6903</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/269173"&gt;@Glenyvie&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-start="933" data-end="1114"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-start="933" data-end="1114"&gt;Which GP client version are you running? Where did you get your cert from? I would double check to make sure the entire cert chain (root and any intermediate CAs) have correctly been imported into the firewall and the client machine (trusted root cert store). Id also verify the correct SSL/TLS profile is being referenced in the Portal and Gateway.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sat, 12 Jul 2025 15:43:46 GMT</pubDate>
    <dc:creator>JayGolf</dc:creator>
    <dc:date>2025-07-12T15:43:46Z</dc:date>
    <item>
      <title>We're encountering a GlobalProtect error stating 'Certificate is not within its validity period,' despite this being a newly configured Palo Alto setu</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/we-re-encountering-a-globalprotect-error-stating-certificate-is/m-p/1233575#M6888</link>
      <description>&lt;P data-start="59" data-end="396"&gt;&lt;STRONG data-start="59" data-end="396"&gt;We are currently setting up a PA-VM Firewall under the Alibaba Cloud Platform. However, we are encountering an issue with GlobalProtect. The client keeps showing an error stating that the certificate is not within its validity period, even though the certificate is valid until July 2026, as this setup was just recently provisioned.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P data-start="398" data-end="528"&gt;&lt;STRONG data-start="398" data-end="528"&gt;We have already manually installed the certificate on the client devices, including the root CA, but the issue still persists.&lt;/STRONG&gt;&lt;/P&gt;
&lt;P data-start="398" data-end="528"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-start="398" data-end="528"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-start="398" data-end="528"&gt;&lt;STRONG data-start="398" data-end="528"&gt;&lt;LI-PRODUCT title="GlobalProtect" id="GlobalProtect"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp; #CertificateIssue&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 09 Jul 2025 04:27:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/we-re-encountering-a-globalprotect-error-stating-certificate-is/m-p/1233575#M6888</guid>
      <dc:creator>Glenyvie</dc:creator>
      <dc:date>2025-07-09T04:27:57Z</dc:date>
    </item>
    <item>
      <title>Re: We're encountering a GlobalProtect error stating 'Certificate is not within its validity period,' despite this being a newly configured Palo Alto</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/we-re-encountering-a-globalprotect-error-stating-certificate-is/m-p/1233855#M6903</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/269173"&gt;@Glenyvie&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-start="933" data-end="1114"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P data-start="933" data-end="1114"&gt;Which GP client version are you running? Where did you get your cert from? I would double check to make sure the entire cert chain (root and any intermediate CAs) have correctly been imported into the firewall and the client machine (trusted root cert store). Id also verify the correct SSL/TLS profile is being referenced in the Portal and Gateway.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 12 Jul 2025 15:43:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/we-re-encountering-a-globalprotect-error-stating-certificate-is/m-p/1233855#M6903</guid>
      <dc:creator>JayGolf</dc:creator>
      <dc:date>2025-07-12T15:43:46Z</dc:date>
    </item>
    <item>
      <title>Re: We're encountering a GlobalProtect error stating 'Certificate is not within its validity period,' despite this being a newly configured Palo Alto</title>
      <link>https://live.paloaltonetworks.com/t5/globalprotect-discussions/we-re-encountering-a-globalprotect-error-stating-certificate-is/m-p/1234030#M6908</link>
      <description>&lt;P&gt;s this issue resolved itself in the meantime?&lt;/P&gt;
&lt;P&gt;most commonly this issue happens when you have a brand new certificate and due to misconfiguration in the time of the firewall or client (no NTP, wrong timezone, wrong time or date,...) and the system thinks it has not reached the starting ValidFrom date&amp;amp;time on the certificate yet&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;setting up NTP everywhere and ensure the right timezone etc usually fixes this issue&lt;/P&gt;</description>
      <pubDate>Tue, 15 Jul 2025 11:56:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/globalprotect-discussions/we-re-encountering-a-globalprotect-error-stating-certificate-is/m-p/1234030#M6908</guid>
      <dc:creator>reaper</dc:creator>
      <dc:date>2025-07-15T11:56:10Z</dc:date>
    </item>
  </channel>
</rss>

