<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Bad certificate _ inbound ssl inspection in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221851#M63837</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/67619"&gt;@Rameshwar&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Can you provide the full error message; I would suspect that the firewall doesn't trust the full certificate chain.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 11 Jul 2018 21:11:02 GMT</pubDate>
    <dc:creator>BPry</dc:creator>
    <dc:date>2018-07-11T21:11:02Z</dc:date>
    <item>
      <title>Bad certificate _ inbound ssl inspection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221773#M63826</link>
      <description>&lt;P&gt;Hi All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;we are using 3rd party singed certificate for inbound SSL inspection , once we imported the certificate it is not showing any error and commit is working fine . once we add the certificate to decryption policy it is showing error as bad certificate and commit is failing . The certificate is 3rd part signed CA and its not the CA or subordinate CA this is normal server certificate and the key option after import is showing green check mark that means it has the key and also the certificate is valid . please advise what could be the issue for this bad certificate error ...&lt;/P&gt;</description>
      <pubDate>Wed, 11 Jul 2018 16:16:20 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221773#M63826</guid>
      <dc:creator>Rameshwar</dc:creator>
      <dc:date>2018-07-11T16:16:20Z</dc:date>
    </item>
    <item>
      <title>Re: Bad certificate _ inbound ssl inspection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221851#M63837</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/67619"&gt;@Rameshwar&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;Can you provide the full error message; I would suspect that the firewall doesn't trust the full certificate chain.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 11 Jul 2018 21:11:02 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221851#M63837</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-07-11T21:11:02Z</dc:date>
    </item>
    <item>
      <title>Re: Bad certificate _ inbound ssl inspection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221880#M63842</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/43480"&gt;@BPry&lt;/a&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;the actual error is failed to load: bad certificate.&lt;/P&gt;&lt;P&gt;error loading vsys cfg&lt;/P&gt;&lt;P&gt;failed to handle config_update_start&lt;/P&gt;</description>
      <pubDate>Thu, 12 Jul 2018 05:28:48 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221880#M63842</guid>
      <dc:creator>Rameshwar</dc:creator>
      <dc:date>2018-07-12T05:28:48Z</dc:date>
    </item>
    <item>
      <title>Re: Bad certificate _ inbound ssl inspection</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221981#M63870</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/67619"&gt;@Rameshwar&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;What's the signature algorithm that's being used on the cert you are trying to utilize. There's an issue when you attempt to utilize the RSASSA-PSS algorithm to sign certificates.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 12 Jul 2018 18:19:05 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/bad-certificate-inbound-ssl-inspection/m-p/221981#M63870</guid>
      <dc:creator>BPry</dc:creator>
      <dc:date>2018-07-12T18:19:05Z</dc:date>
    </item>
  </channel>
</rss>

