<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cert Delete and Created new devicecert in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/514350#M369</link>
    <description>&lt;P&gt;Hello, this is normal to see a device cert get regenerated. It will do this every 90 days more or less.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SteveCantwell_0-1662676926758.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/43752i8FDF5C5F3C6677C3/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="SteveCantwell_0-1662676926758.png" alt="SteveCantwell_0-1662676926758.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 08 Sep 2022 22:42:35 GMT</pubDate>
    <dc:creator>S.Cantwell</dc:creator>
    <dc:date>2022-09-08T22:42:35Z</dc:date>
    <item>
      <title>Cert Delete and Created new devicecert</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/514049#M363</link>
      <description>&lt;P&gt;Anyone run into this?&lt;/P&gt;
&lt;P&gt;We discovered around 0400 AM (outside business hours so no admins online) the following logs generated. They appear system generated as if the device is regenerating a cert. Problem is, it doesn't match the dates on the device certificate that is normally generated under the device tab and PAN has zero documentation to tell us if this is normal behavior.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="logs-cert.jpg" style="width: 997px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/43690i7E24576B9BB107ED/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="logs-cert.jpg" alt="logs-cert.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Sep 2022 13:09:25 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/514049#M363</guid>
      <dc:creator>Gun-Slinger</dc:creator>
      <dc:date>2022-09-06T13:09:25Z</dc:date>
    </item>
    <item>
      <title>Re: Cert Delete and Created new devicecert</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/514350#M369</link>
      <description>&lt;P&gt;Hello, this is normal to see a device cert get regenerated. It will do this every 90 days more or less.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="SteveCantwell_0-1662676926758.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/43752i8FDF5C5F3C6677C3/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="SteveCantwell_0-1662676926758.png" alt="SteveCantwell_0-1662676926758.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Sep 2022 22:42:35 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/514350#M369</guid>
      <dc:creator>S.Cantwell</dc:creator>
      <dc:date>2022-09-08T22:42:35Z</dc:date>
    </item>
    <item>
      <title>Re: Cert Delete and Created new devicecert</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/514414#M376</link>
      <description>&lt;P&gt;We contacted TAC to get clarity on this issue and here is the answer received:&lt;/P&gt;
&lt;P&gt;This is a new feature in 10.1.&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;The&amp;nbsp;firewall&amp;nbsp;certificate&amp;nbsp;is&amp;nbsp;valid&amp;nbsp;for&amp;nbsp;3&amp;nbsp;Months.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;SPAN&gt;2&amp;nbsp;Weeks&amp;nbsp;prior&amp;nbsp;to&amp;nbsp;expiration,&amp;nbsp;the&amp;nbsp;firewall&amp;nbsp;will:&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp;-Create&amp;nbsp;a&amp;nbsp;new&amp;nbsp;CSR&amp;nbsp;and&amp;nbsp;send&amp;nbsp;this&amp;nbsp;to&amp;nbsp;panorama&amp;nbsp;for&amp;nbsp;signing&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp;-Panorama&amp;nbsp;will&amp;nbsp;sign&amp;nbsp;this&amp;nbsp;CSR&amp;nbsp;and&amp;nbsp;return,&amp;nbsp;signed&amp;nbsp;cert,&amp;nbsp;device&amp;nbsp;CA&amp;nbsp;cert,&amp;nbsp;SNI&amp;nbsp;to&amp;nbsp;use&amp;nbsp;for&amp;nbsp;this&amp;nbsp;new&amp;nbsp;certificate&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp;-Switches&amp;nbsp;the&amp;nbsp;connection&amp;nbsp;to&amp;nbsp;new&amp;nbsp;Cert&amp;nbsp;on&amp;nbsp;the&amp;nbsp;next&amp;nbsp;connect&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 09 Sep 2022 11:57:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/514414#M376</guid>
      <dc:creator>Gun-Slinger</dc:creator>
      <dc:date>2022-09-09T11:57:53Z</dc:date>
    </item>
    <item>
      <title>Re: Cert Delete and Created new devicecert</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/520121#M534</link>
      <description>&lt;P&gt;We're noticing similar issue on Panorama where there is no certificate creation however getting the high severity alert on the cert delete.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;is there anyway to stop this high severity cert delete alert?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Nov 2022 06:26:47 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/cert-delete-and-created-new-devicecert/m-p/520121#M534</guid>
      <dc:creator>Puvi12</dc:creator>
      <dc:date>2022-11-03T06:26:47Z</dc:date>
    </item>
  </channel>
</rss>

