<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Migrating certs from one palo to another in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/migrating-certs-from-one-palo-to-another/m-p/1235768#M6186</link>
    <description>&lt;P&gt;Hello,&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;When you bring a new Palo Alto firewall into a device group via Panorama (or replace an old firewall), Panorama does not automatically copy certificates from the old device to the new one. Certificates live in the firewall’s local certificate store, not in the device group configuration, so you have to move them manually.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Aug 2025 11:06:00 GMT</pubDate>
    <dc:creator>max674lowes</dc:creator>
    <dc:date>2025-08-11T11:06:00Z</dc:date>
    <item>
      <title>Migrating certs from one palo to another</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/migrating-certs-from-one-palo-to-another/m-p/1235660#M6179</link>
      <description>&lt;P&gt;What is the process when migrating certs?&amp;nbsp;&lt;BR /&gt;are the added when new palo joins the device group?&lt;/P&gt;
&lt;P&gt;do I need to import export the top level cert?&lt;/P&gt;
&lt;P&gt;do I need to import the trusted root provided by customer or can I use what is already on the old palo?&lt;/P&gt;
&lt;P&gt;thank you&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 08 Aug 2025 04:02:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/migrating-certs-from-one-palo-to-another/m-p/1235660#M6179</guid>
      <dc:creator>PaloNetworkMonkey</dc:creator>
      <dc:date>2025-08-08T04:02:06Z</dc:date>
    </item>
    <item>
      <title>Re: Migrating certs from one palo to another</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/migrating-certs-from-one-palo-to-another/m-p/1235768#M6186</link>
      <description>&lt;P&gt;Hello,&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;When you bring a new Palo Alto firewall into a device group via Panorama (or replace an old firewall), Panorama does not automatically copy certificates from the old device to the new one. Certificates live in the firewall’s local certificate store, not in the device group configuration, so you have to move them manually.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Aug 2025 11:06:00 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/migrating-certs-from-one-palo-to-another/m-p/1235768#M6186</guid>
      <dc:creator>max674lowes</dc:creator>
      <dc:date>2025-08-11T11:06:00Z</dc:date>
    </item>
  </channel>
</rss>

