- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
07-09-2023 11:54 PM
Hi Techies,
When shared location is enabled, I am not able to call the certificate profile in the EDL. Kindly give me the reason behind this. Because I need to use this EDL for all the location firewalls, so I don't want to do this EDL hosting service for multiple times
regards,
Akash Thangavel
Network Security Engineer
07-11-2023 12:18 AM
Thanks for the reply, Mr Aleksandar.Astardzhiev. From your input, I have made it possible.
In the common device group, the certificate profile is not showing
In the common device group call the common template as a reference template
In a common template create the certificate and certificate profile
Now in the common device group, the certificate profile will list, you can use it for all the device groups of the hierarchy.
regards,
Akash Thangavel
Network Security Engineer
07-10-2023 02:21 PM
Hi @AkashThangavel ,
The checkbox for "shared" doesn't mean this object is shared between all template/template-stacks in Panorama.
Checkbox for Shared means this config will be applied in the root/shared VSYS if your firewall is configured with multi-vsys
Sharing certificate between different template can be tricky because there is no direction relation between templates. What you can do is:
1. Create one template in which you define some global settings that should be applied to all managed FWs, like imported certificates
2. Create template-stack that add the global settings template and the template with the rest of each FW
07-11-2023 12:18 AM
Thanks for the reply, Mr Aleksandar.Astardzhiev. From your input, I have made it possible.
In the common device group, the certificate profile is not showing
In the common device group call the common template as a reference template
In a common template create the certificate and certificate profile
Now in the common device group, the certificate profile will list, you can use it for all the device groups of the hierarchy.
regards,
Akash Thangavel
Network Security Engineer
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!