<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Palo Alto does not support global certificates. Is there a solution? in Next-Generation Firewall Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-does-not-support-global-certificates-is-there-a/m-p/1244966#M6565</link>
    <description>&lt;P&gt;You can import CA public key into Palo and set it as Trusted Root CA.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Raido_Rattameister_0-1767709496080.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/70268i5241C1631CC99263/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Raido_Rattameister_0-1767709496080.png" alt="Raido_Rattameister_0-1767709496080.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 06 Jan 2026 14:25:05 GMT</pubDate>
    <dc:creator>Raido_Rattameister</dc:creator>
    <dc:date>2026-01-06T14:25:05Z</dc:date>
    <item>
      <title>Palo Alto does not support global certificates. Is there a solution?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-does-not-support-global-certificates-is-there-a/m-p/1244905#M6560</link>
      <description>&lt;P&gt;Hello everyone. Among the Palo Alto default certificates, there's one that our clients use globally. However, this certificate is missing from the default Palo Alto certificate list. Do you know of any solution?&lt;/P&gt;
&lt;PRE id="tw-target-text" class="tw-data-text tw-text-large tw-ta" dir="ltr" tabindex="-1" role="text" data-placeholder="번역" data-ved="2ahUKEwiEuujN3_WRAxWZ0jQHHbDSFpkQ3ewLegQIDxAW" aria-label="번역된 텍스트: Hello everyone, among the Palo Alto default certificates, there is a certificate used globally by our customers. However, this certificate is not included in the default certificate in Palo Alto. Is there a solution? The certificate is a root CA (GeotrustRSACA2018)."&gt;&lt;SPAN class="Y2IQFc"&gt;The certificate is a root CA (GeotrustRSACA2018).&lt;/SPAN&gt;&lt;/PRE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jan 2026 01:24:41 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-does-not-support-global-certificates-is-there-a/m-p/1244905#M6560</guid>
      <dc:creator>JiHwanHam</dc:creator>
      <dc:date>2026-01-06T01:24:41Z</dc:date>
    </item>
    <item>
      <title>Re: Palo Alto does not support global certificates. Is there a solution?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-does-not-support-global-certificates-is-there-a/m-p/1244966#M6565</link>
      <description>&lt;P&gt;You can import CA public key into Palo and set it as Trusted Root CA.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Raido_Rattameister_0-1767709496080.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/70268i5241C1631CC99263/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Raido_Rattameister_0-1767709496080.png" alt="Raido_Rattameister_0-1767709496080.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Jan 2026 14:25:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-does-not-support-global-certificates-is-there-a/m-p/1244966#M6565</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2026-01-06T14:25:05Z</dc:date>
    </item>
    <item>
      <title>Re: Palo Alto does not support global certificates. Is there a solution?</title>
      <link>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-does-not-support-global-certificates-is-there-a/m-p/1245218#M6583</link>
      <description>&lt;P&gt;Cert that is missing - is it used as root cert or intermediate?&lt;/P&gt;
&lt;P&gt;If you set up decryption profile for web traffic to validate CA and website admin has been ignorant not to embed intermediate certificate into cert file used on web server then web server don't send intermediate together with server own cert (can be easily tested with ssllabs.com test) and Palo will block traffic claiming untrusted cert.&lt;/P&gt;</description>
      <pubDate>Thu, 08 Jan 2026 13:23:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/next-generation-firewall/palo-alto-does-not-support-global-certificates-is-there-a/m-p/1245218#M6583</guid>
      <dc:creator>Raido_Rattameister</dc:creator>
      <dc:date>2026-01-08T13:23:39Z</dc:date>
    </item>
  </channel>
</rss>

