<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Fetch Device Certificate failure in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567801#M114653</link>
    <description>&lt;P&gt;&lt;SPAN&gt;PaloAlto solved the problem for me by deleting the existing certificate and generating a new one. It needed root access to the firewall.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 30 Nov 2023 17:36:24 GMT</pubDate>
    <dc:creator>Meed</dc:creator>
    <dc:date>2023-11-30T17:36:24Z</dc:date>
    <item>
      <title>Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567670#M114640</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am getting this error (Failed to fetch device certificate.TPM public key match failed.) on a PA460 (11.0.2-h2).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I tried multiple solutions without success :&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;This KB&amp;nbsp;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000004NlxCAE" target="_blank"&gt;https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000004NlxCAE&lt;/A&gt;&amp;nbsp;but it didn't work.&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;Multiple commit force.&lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI&gt;&lt;SPAN&gt;I even generated an OTP on the CSP but I don't have the get certificate button on the web interface and can't use it on the CLI, I get &lt;STRONG&gt;invalid syntax&lt;/STRONG&gt; after&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;&lt;SPAN&gt;request certificate fetch OPT_value.&lt;/SPAN&gt;&lt;/EM&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;I can ping&amp;nbsp;&lt;I&gt;certificate.paloaltonetworks.com&amp;nbsp;&lt;/I&gt;form the management interface.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Kindly help to resolve the issue.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 29 Nov 2023 22:21:11 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567670#M114640</guid>
      <dc:creator>Meed</dc:creator>
      <dc:date>2023-11-29T22:21:11Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567695#M114643</link>
      <description>&lt;P&gt;Getting the same error on 440 too..&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2023 01:48:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567695#M114643</guid>
      <dc:creator>PravinSingi</dc:creator>
      <dc:date>2023-11-30T01:48:48Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567732#M114644</link>
      <description>&lt;P&gt;We have the same error with our new PA-3410 and PAN-OS 10.2.6.&lt;/P&gt;
&lt;P&gt;I am going to open a case...&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2023 07:42:21 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567732#M114644</guid>
      <dc:creator>Tobi</dc:creator>
      <dc:date>2023-11-30T07:42:21Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567801#M114653</link>
      <description>&lt;P&gt;&lt;SPAN&gt;PaloAlto solved the problem for me by deleting the existing certificate and generating a new one. It needed root access to the firewall.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 30 Nov 2023 17:36:24 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/567801#M114653</guid>
      <dc:creator>Meed</dc:creator>
      <dc:date>2023-11-30T17:36:24Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/568236#M114700</link>
      <description>&lt;P&gt;Thanks, &lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/228704"&gt;@Meed&lt;/a&gt;. I will reach out to PAN support.&lt;/P&gt;</description>
      <pubDate>Mon, 04 Dec 2023 17:34:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/568236#M114700</guid>
      <dc:creator>PravinSingi</dc:creator>
      <dc:date>2023-12-04T17:34:19Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/568835#M114763</link>
      <description>&lt;P&gt;Palo Alto also saved it for me. They u&lt;SPAN&gt;&lt;SPAN class="ui-provider ec bka bgl cjx cjy cjz cka ckb ckc ckd ckf ckg ckh cki ckj ckk ckl ckm ckn cko ckp ckq ckr cks ckt cku ckv ckw ckx cky ckz cla clb clc cld"&gt;pdated the claim&amp;nbsp;key&amp;nbsp;and&amp;nbsp;Hash&amp;nbsp;Key&amp;nbsp;from their end. After a "commit force" the issue was fixed.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Dec 2023 07:32:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/568835#M114763</guid>
      <dc:creator>Tobi</dc:creator>
      <dc:date>2023-12-07T07:32:31Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/568842#M114764</link>
      <description>&lt;DIV class="flex flex-grow flex-col max-w-full"&gt;
&lt;DIV class="min-h-[20px] text-message flex flex-col items-start gap-3 whitespace-pre-wrap break-words [.text-message+&amp;amp;]:mt-5 overflow-x-auto" data-message-author-role="assistant" data-message-id="89d86a8b-8a7b-4590-9555-031e7f8973fb"&gt;
&lt;DIV class="markdown prose w-full break-words dark:prose-invert light"&gt;
&lt;P&gt;Encountering a "Fetch Device Certificate" failure may result from various issues. Ensure network connectivity, valid credentials, and proper certificate configuration. Troubleshoot systematically, collaborating with support if needed&lt;A href="https://gbwaapps.com" target="_self"&gt;.&lt;/A&gt; A comprehensive approach ensures efficient resolution, maintaining secure and seamless device communication.&lt;/P&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;DIV class="mt-1 flex justify-start gap-3 empty:hidden"&gt;
&lt;DIV class="text-gray-400 flex self-end lg:self-center justify-center lg:justify-start mt-0 gap-1 visible"&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Fri, 22 Dec 2023 12:50:42 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/568842#M114764</guid>
      <dc:creator>luis56</dc:creator>
      <dc:date>2023-12-22T12:50:42Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/568874#M114773</link>
      <description>&lt;P&gt;It will require a maintenance&amp;nbsp; window you&amp;nbsp; can follow the below Steps and let me know if it works:&lt;BR /&gt;&lt;BR /&gt;1.Log in to cli&lt;BR /&gt;2. Configure&amp;nbsp;&amp;nbsp;&lt;BR /&gt;3. Commit force&lt;BR /&gt;4.exit&lt;BR /&gt;And see if it works and if you are still getting the same error&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 07 Dec 2023 12:00:36 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/568874#M114773</guid>
      <dc:creator>msyeedrafiqi</dc:creator>
      <dc:date>2023-12-07T12:00:36Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/570009#M114898</link>
      <description>&lt;P&gt;how to delete the existing certificate,?&lt;/P&gt;
&lt;P&gt;how to use root access?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 15 Dec 2023 08:13:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/570009#M114898</guid>
      <dc:creator>david.ge</dc:creator>
      <dc:date>2023-12-15T08:13:40Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/588837#M117385</link>
      <description>&lt;P&gt;This worked for me. I was trying to download device certificate using the web gui but was getting unexpected otp.&lt;/P&gt;</description>
      <pubDate>Wed, 05 Jun 2024 14:30:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/588837#M117385</guid>
      <dc:creator>armitchell</dc:creator>
      <dc:date>2024-06-05T14:30:18Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/1086849#M122930</link>
      <description>&lt;P&gt;Can you share with me the solution for this error? I have the same&lt;/P&gt;
&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Fri, 17 Jan 2025 11:48:28 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/1086849#M122930</guid>
      <dc:creator>Alpalo</dc:creator>
      <dc:date>2025-01-17T11:48:28Z</dc:date>
    </item>
    <item>
      <title>Re: Fetch Device Certificate failure</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/1237541#M125091</link>
      <description>&lt;P&gt;It require root access to resolve&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 09 Sep 2025 08:41:46 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/fetch-device-certificate-failure/m-p/1237541#M125091</guid>
      <dc:creator>UjjwalKumar</dc:creator>
      <dc:date>2025-09-09T08:41:46Z</dc:date>
    </item>
  </channel>
</rss>

