- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
Enhanced Security Measures in Place: To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.
11-29-2023 02:21 PM
Hello,
I am getting this error (Failed to fetch device certificate.TPM public key match failed.) on a PA460 (11.0.2-h2).
I tried multiple solutions without success :
I can ping certificate.paloaltonetworks.com form the management interface.
Kindly help to resolve the issue.
11-29-2023 05:48 PM
Getting the same error on 440 too..
11-30-2023 09:36 AM
PaloAlto solved the problem for me by deleting the existing certificate and generating a new one. It needed root access to the firewall.
12-04-2023 09:34 AM
Thanks, @Meed. I will reach out to PAN support.
12-06-2023 11:32 PM
Palo Alto also saved it for me. They updated the claim key and Hash Key from their end. After a "commit force" the issue was fixed.
12-07-2023 12:53 AM - edited 12-22-2023 04:50 AM
Encountering a "Fetch Device Certificate" failure may result from various issues. Ensure network connectivity, valid credentials, and proper certificate configuration. Troubleshoot systematically, collaborating with support if needed. A comprehensive approach ensures efficient resolution, maintaining secure and seamless device communication.
12-07-2023 04:00 AM
It will require a maintenance window you can follow the below Steps and let me know if it works:
1.Log in to cli
2. Configure
3. Commit force
4.exit
And see if it works and if you are still getting the same error
12-15-2023 12:13 AM
how to delete the existing certificate,?
how to use root access?
06-05-2024 07:30 AM
This worked for me. I was trying to download device certificate using the web gui but was getting unexpected otp.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!