<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Captive Portal SSL Certificate Error in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-ssl-certificate-error/m-p/47050#M34581</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks, looks like importing with the intermediate appended fixed it &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://live.paloaltonetworks.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 27 Apr 2014 09:15:54 GMT</pubDate>
    <dc:creator>networkadmin</dc:creator>
    <dc:date>2014-04-27T09:15:54Z</dc:date>
    <item>
      <title>Captive Portal SSL Certificate Error</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-ssl-certificate-error/m-p/47048#M34579</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We're running 5.0.10 with Captive Portal.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have an SSL certificate installed for *.domain.com and have several internal DNS entries that point something.domain.com to various physical interfaces on the Palo Alto.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We recently revoked and rekeyed our wildcard cert and since importing and replacing all instances with the new certificate, on some machines (not all), when getting to the captive portal there is a "Don't recognise the CA" error thrown up by Internet Explorer with Chrome simply saying "No Connection".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the PAN GUI the certificate shows as being issued by AlphSSL, which it was.&amp;nbsp; On machines with the error I can get to the management interface which uses the same certificate and I don't get any kind of error.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm a little confused - the only thing I can imagine is if I need to somehow get the intermediate onto the PAN, but that would seem unlikely since the management interface works perfectly using the same certificate.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Apr 2014 19:21:45 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-ssl-certificate-error/m-p/47048#M34579</guid>
      <dc:creator>networkadmin</dc:creator>
      <dc:date>2014-04-25T19:21:45Z</dc:date>
    </item>
    <item>
      <title>Re: Captive Portal SSL Certificate Error</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-ssl-certificate-error/m-p/47049#M34580</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You would have to ensure that the entire certificate chain (in your case the intermediate) that may have been used to sign the server certificate is imported onto the PAN firewall. &lt;/P&gt;&lt;P&gt;Under the following tab:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Network&amp;gt;&amp;gt;Global Protect&amp;gt;&amp;gt;Portal&amp;gt;&amp;gt; Client Config where it says "Root CA" - please include the requisite certificates to complete the certificate chain if they are in the PAN firewall, you can use the drop down.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Apr 2014 21:08:10 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-ssl-certificate-error/m-p/47049#M34580</guid>
      <dc:creator>sjamaluddin</dc:creator>
      <dc:date>2014-04-25T21:08:10Z</dc:date>
    </item>
    <item>
      <title>Re: Captive Portal SSL Certificate Error</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-ssl-certificate-error/m-p/47050#M34581</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks, looks like importing with the intermediate appended fixed it &lt;img id="smileyhappy" class="emoticon emoticon-smileyhappy" src="https://live.paloaltonetworks.com/i/smilies/16x16_smiley-happy.png" alt="Smiley Happy" title="Smiley Happy" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 27 Apr 2014 09:15:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/captive-portal-ssl-certificate-error/m-p/47050#M34581</guid>
      <dc:creator>networkadmin</dc:creator>
      <dc:date>2014-04-27T09:15:54Z</dc:date>
    </item>
  </channel>
</rss>

