<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Certificate chain not correctly formed in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160874#M52416</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am getting the warning below after importing a certificate. Is there a link/KB I can check to fix this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Warning: certificate chain not correctly formed in certificate dc1pa.abcd.com.au&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks in advance!&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 13 Jun 2017 06:09:29 GMT</pubDate>
    <dc:creator>Farzana</dc:creator>
    <dc:date>2017-06-13T06:09:29Z</dc:date>
    <item>
      <title>Certificate chain not correctly formed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160874#M52416</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am getting the warning below after importing a certificate. Is there a link/KB I can check to fix this?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Warning: certificate chain not correctly formed in certificate dc1pa.abcd.com.au&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks in advance!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Jun 2017 06:09:29 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160874#M52416</guid>
      <dc:creator>Farzana</dc:creator>
      <dc:date>2017-06-13T06:09:29Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate chain not correctly formed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160881#M52417</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/45418"&gt;@Farzana&lt;/a&gt;&lt;/P&gt;&lt;P&gt;In order to fix this issue, you need to upload a copy of your&amp;nbsp;Root CA and and Intermediate&amp;nbsp;CA to the firewall.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This should fix the issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Jun 2017 06:19:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160881#M52417</guid>
      <dc:creator>acc6d0b3610eec313831f7900fdbd235</dc:creator>
      <dc:date>2017-06-13T06:19:49Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate chain not correctly formed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160883#M52418</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/36590"&gt;@acc6d0b3610eec313831f7900fdbd235&lt;/a&gt;,&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks for the response. Do you mean import the certs? If not, what steps I need to take?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Cert.png" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/9668iA66CF1873DEE381F/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Cert.png" alt="Cert.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Jun 2017 06:25:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160883#M52418</guid>
      <dc:creator>Farzana</dc:creator>
      <dc:date>2017-06-13T06:25:20Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate chain not correctly formed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160884#M52419</link>
      <description>Correct, you need to first get a copy of your Root CA and Intermediate CA. The Intermediate CA is not actually mandatory unless you have one. Then click in the Import button. Map to each one of the certificates, and click in OK. It will upload, and if everything is correct the certificate chain should be formed with no problems.</description>
      <pubDate>Tue, 13 Jun 2017 06:27:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/160884#M52419</guid>
      <dc:creator>acc6d0b3610eec313831f7900fdbd235</dc:creator>
      <dc:date>2017-06-13T06:27:54Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate chain not correctly formed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/161098#M52453</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/36590"&gt;@acc6d0b3610eec313831f7900fdbd235&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We currently have a wildcard SSL certificate that we use on Apache servers, Microsoft IIS servers, Cisco devices and when we try to import that same certificate to the Palos. However, we are unable to use that certificate (Device -&amp;gt; Certificates -&amp;gt; SSL/TLS Service Profile) i.e. we are unable to select the imported certificate.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Certificate.png" style="width: 800px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/9703i4FEBBADE2472B70C/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="Certificate.png" alt="Certificate.png" /&gt;&lt;/span&gt;&lt;BR /&gt;&lt;BR /&gt;We have also exported the certificates and keys from IIS and imported them to the Palos and we receive the following error message - "Warning: certificate chain not correctly formed in certificate". We have followed the links as well as the method described below and still get the same error message as above.&lt;BR /&gt;&lt;BR /&gt;Is there a guide to install a certificate on Palo similar to this (this is for a Cisco ASA)?&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&lt;A href="https://search.thawte.com/support/ssl-digital-certificates/index?page=content&amp;amp;id=SO22529&amp;amp;actp=search&amp;amp;viewlocale=en_US&amp;amp;searchid=1473589594289" target="_blank"&gt;https://search.thawte.com/support/ssl-digital-certificates/index?page=content&amp;amp;id=SO22529&amp;amp;actp=search&amp;amp;viewlocale=en_US&amp;amp;searchid=1473589594289&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 14 Jun 2017 02:05:54 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/161098#M52453</guid>
      <dc:creator>Farzana</dc:creator>
      <dc:date>2017-06-14T02:05:54Z</dc:date>
    </item>
    <item>
      <title>Re: Certificate chain not correctly formed</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/374031#M89002</link>
      <description>&lt;P&gt;Exact same issue. Did you ever get it resolved?&lt;/P&gt;</description>
      <pubDate>Sun, 13 Dec 2020 00:56:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/certificate-chain-not-correctly-formed/m-p/374031#M89002</guid>
      <dc:creator>RichardSh</dc:creator>
      <dc:date>2020-12-13T00:56:57Z</dc:date>
    </item>
  </channel>
</rss>

