06-09-2020 11:22 PM
Our GlobalProtect VPN was using a self-signed certificate which got expired caused end users not being able to connect to the VPN.
This raises the question that what are the ways to get alerted for these sort of incidents. Is there any in-build mechanism on the firewall or the Panorama that we could use to get notified of the Certificate Expiry incident before happening?
06-10-2020 02:54 AM
Hi @Jatin.Singh ,
No there is not.
There are several feature requests for something similar.
You might want to check with you local SE to have your vote added the FRs:
FR 5251 - Generate an alert when an imported cert is about to expire
FR 6069 - Alert on Pending Certificate Expiration
FR 7451 - Certificate Expiry Alerts
01-25-2021 05:52 AM
This is an urgent matter for us. Last Friday, our certificates expired, causing a major issue, since users couldn't connect to GlobalProtect due to the certificate being expired, as we use certificates for it. This feature should be added sooner rather than later.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!