<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic upload intermediate certs in Panorama Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/panorama-discussions/upload-intermediate-certs/m-p/549451#M1639</link>
    <description>&lt;P&gt;We would like to avoid the need to create PEM certs that are copy-paste of text codes as we need to upload many certs on a regular basis.&lt;/P&gt;
&lt;P&gt;When we upload PKCS12 files - they don't seem to include an intermediate.&lt;/P&gt;
&lt;P&gt;OTOH it is unclear if one can upload an intermediate and refer to it as such. I was thinking of uploading it into the root CA store but this is controlled by Palo Alto.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is this at all possible?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We are using version 11.0.1 &lt;LI-PRODUCT title="Panorama" id="Panorama"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 16 Jul 2023 13:26:44 GMT</pubDate>
    <dc:creator>veredgf</dc:creator>
    <dc:date>2023-07-16T13:26:44Z</dc:date>
    <item>
      <title>upload intermediate certs</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/upload-intermediate-certs/m-p/549451#M1639</link>
      <description>&lt;P&gt;We would like to avoid the need to create PEM certs that are copy-paste of text codes as we need to upload many certs on a regular basis.&lt;/P&gt;
&lt;P&gt;When we upload PKCS12 files - they don't seem to include an intermediate.&lt;/P&gt;
&lt;P&gt;OTOH it is unclear if one can upload an intermediate and refer to it as such. I was thinking of uploading it into the root CA store but this is controlled by Palo Alto.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Is this at all possible?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We are using version 11.0.1 &lt;LI-PRODUCT title="Panorama" id="Panorama"&gt;&lt;/LI-PRODUCT&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 16 Jul 2023 13:26:44 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/upload-intermediate-certs/m-p/549451#M1639</guid>
      <dc:creator>veredgf</dc:creator>
      <dc:date>2023-07-16T13:26:44Z</dc:date>
    </item>
    <item>
      <title>Re: upload intermediate certs</title>
      <link>https://live.paloaltonetworks.com/t5/panorama-discussions/upload-intermediate-certs/m-p/553727#M1724</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/303584"&gt;@veredgf&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;When you export or create a PKCS12 file, you can choose to include the complete certificate chain, starting from the end-entity certificate and extending to the root certificate. This guarantees that the recipient, application, or device can access all essential certificates for establishing trust in the end-entity certificate.&lt;/P&gt;
&lt;P&gt;Alternatively, you have the option to download and import the intermediate and root certificates into the PA certificate store. This will lead to automatic formation of the certificate chain.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 15 Aug 2023 03:48:15 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/panorama-discussions/upload-intermediate-certs/m-p/553727#M1724</guid>
      <dc:creator>akuzhuppilly</dc:creator>
      <dc:date>2023-08-15T03:48:15Z</dc:date>
    </item>
  </channel>
</rss>

