- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
06-01-2020 01:05 PM
Hi,
It appears that the UserTrust root CA and the Comodo RSA CA certificates expired this weekend and now my users are getting blocked since the certificate has expired. The sites are accessable through chrome when not behind the Palo. I've tried importing trusted CAs and the only thing that works is to add the site to a URL list and exclude it from SSL Decryption. We are currently running two 5520's with PAN OS 9.0.7. Any ideas would be appreciated
Thanks
Jonathon Page
06-02-2020 10:32 AM
Have you senn this topic discussing the same problem:
https://live.paloaltonetworks.com/t5/general-topics/sectigo-ca-chain-decryption-issues/m-p/330802#M8...https://live.paloaltonetworks.com/t5/general-topics/sectigo-ca-chain-decryption-issues/m-p/330802#M8...
cu
 
					
				
				
			
		
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!

