- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
10-10-2023 07:37 PM
So i've set up some firewall images in eve-ng 10.0.4,
I dhcp'd the management interfaces, connectivity is fine everything working as expected,
except I can't access the GUI on my local host chrome browser
Giving me the error:
NET::ERR_CERT_COMMON_NAME_INVALID
so I can't access the GUI, and I read on some other post about changing the alternative name as potentially solving the issue: https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000CluVCAS
among other Live forum discussions.
And so i can't do that in the GUI, so i figured I would try CLI,
I tried adding a random name with the ip as the FQDN, as one of the LIVE posts this may fix the issue just to give it a try and I get the failed to insert error.
Can someone guide me on how to fix my problem?
10-10-2023 08:28 PM
So so i managed to set up the cert on the PA device with this CLI command:
equest certificate generate ca yes digest sha256 algorithm RSA rsa-nbits 2048 certificate-name PA9 name 192.168.56.136
however when trying to get to the GUI via web browser I get this error:
NET::ERR_CERT_COMMON_NAME_INVALID
so if anyone could guide me on this it would be awesome
10-10-2023 08:42 PM - edited 10-10-2023 08:42 PM
I got it working just by typing http instead of https
XD
I'm going to be posting some heavy scripting soon, and maybe rolling it up into a bigger program to post on my github, so if you're interested would like to follow along and to help me you can check out my upcoming posts and follow my github 🙂
10-18-2023 05:43 AM
Hi @hfakoor2 ,
Did you use an SSL/TLS Service Profile to attach the certificate to the web UI (Panorama > Setup > Management > General Settings > SSL/TLS Service Profile)?
Thanks,
Tom
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!