<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic SSL Certificate renewal query in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-certificate-renewal-query/m-p/362389#M88277</link>
    <description>&lt;P&gt;&lt;SPAN&gt;We got certificate tree like this:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;the public certificate (Trusted root CA) from Digicert, Intermediate cert (Digi root) and then the SSL/TLS cert (DigiVPN). This DigiVPN is going to expire soon and we use it for GP portal and GW. The server cert is by itself and got a tick next to CA column. It is valid till 2023 and used as cert profile in GP.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Just want to know if DigiVPN certificate has to be installed on each client/end machines or only required to be updated/renewed on Panorama.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks in advance.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 12 Nov 2020 04:12:23 GMT</pubDate>
    <dc:creator>FarzanaMustafa</dc:creator>
    <dc:date>2020-11-12T04:12:23Z</dc:date>
    <item>
      <title>SSL Certificate renewal query</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-certificate-renewal-query/m-p/362389#M88277</link>
      <description>&lt;P&gt;&lt;SPAN&gt;We got certificate tree like this:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;the public certificate (Trusted root CA) from Digicert, Intermediate cert (Digi root) and then the SSL/TLS cert (DigiVPN). This DigiVPN is going to expire soon and we use it for GP portal and GW. The server cert is by itself and got a tick next to CA column. It is valid till 2023 and used as cert profile in GP.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Just want to know if DigiVPN certificate has to be installed on each client/end machines or only required to be updated/renewed on Panorama.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thanks in advance.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 12 Nov 2020 04:12:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-certificate-renewal-query/m-p/362389#M88277</guid>
      <dc:creator>FarzanaMustafa</dc:creator>
      <dc:date>2020-11-12T04:12:23Z</dc:date>
    </item>
    <item>
      <title>Re: SSL Certificate renewal query</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/ssl-certificate-renewal-query/m-p/362888#M88302</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;The certificate just needs to be trusted by the client machine. So as long as the client has a way to validate it, in this case reaching out to DIgiCert, you should be OK. Meaning you dont have to install it on every client. When it expires, just renew it and install it on the PAN and change the config on the PAN to use the new cert.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Hope that helps.&lt;/P&gt;</description>
      <pubDate>Thu, 12 Nov 2020 22:52:39 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/ssl-certificate-renewal-query/m-p/362888#M88302</guid>
      <dc:creator>OtakarKlier</dc:creator>
      <dc:date>2020-11-12T22:52:39Z</dc:date>
    </item>
  </channel>
</rss>

