<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SSL Decryption Certificate in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/6286#M4584</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The certificate already issued to the clients is fine, and you do not need to issue a new CA Certificate from that same enterprise cert chain for the SSL Decryption certificate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As long as the clients trust the CA who signed the cert you want to use for SSL Decryption, any CA certificate will work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps,&lt;/P&gt;&lt;P&gt;Greg&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 11 Jun 2014 19:40:59 GMT</pubDate>
    <dc:creator>gwesson</dc:creator>
    <dc:date>2014-06-11T19:40:59Z</dc:date>
    <item>
      <title>SSL Decryption Certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/6285#M4583</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #1f497d;"&gt;For SSL Decryption does the cert on the PALO need to be issued from the same enterprise cert chain as the workstations, or does the cert on the workstation have to match the cert on the PALO exactly?&amp;nbsp; We have about 2000 workstations that have been issued a unique cert already for other applications. &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #1f497d;"&gt;Thanks&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #1f497d;"&gt;Mark&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Jun 2014 17:57:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/6285#M4583</guid>
      <dc:creator>markk96</dc:creator>
      <dc:date>2014-06-11T17:57:12Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Decryption Certificate</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/6286#M4584</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The certificate already issued to the clients is fine, and you do not need to issue a new CA Certificate from that same enterprise cert chain for the SSL Decryption certificate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As long as the clients trust the CA who signed the cert you want to use for SSL Decryption, any CA certificate will work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps,&lt;/P&gt;&lt;P&gt;Greg&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Jun 2014 19:40:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-decryption-certificate/m-p/6286#M4584</guid>
      <dc:creator>gwesson</dc:creator>
      <dc:date>2014-06-11T19:40:59Z</dc:date>
    </item>
  </channel>
</rss>

