- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
02-04-2026 09:17 AM
Hi, I am following the instructions to apply the device certificate, but I am blocked by the following error:
“Unable to execute OTP install operations command to some firewalls. Please identify the firewalls that failed the process from Panorama and retry OTP.”
I followed the instructions provided in this link:
https://live.paloaltonetworks.com/t5/customer-advisories/update-to-additional-pan-os-certificate-exp...
My setup is as follows:
Panorama: Software version 11.1.6-h3
NGFW: Model PA-850, Software version 11.1.6-h3
The command below shows the following output:
show device-certificate status
Device Certificate Information:
Current device certificate status: Valid
Not valid before: 2025/12/26 05:26:50 CST
Not valid after: 2026/03/26 06:26:49 CDT
Last fetched timestamp: 2026/02/04 10:42:39 CST
Last fetched status: Failure
Last fetched info: Failed to fetch device certificate. OTP is not valid
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!

