Firewall and Panorama mangement certificate expire

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Firewall and Panorama mangement certificate expire

Hi, 

 

We recently upgraded the firewall models 3220 and 820 last week and are managing them through Panorama. However, we received an alert message yesterday and also getting the alert message if i logging the panorama. Should we ignore this alert? To check if the certificates are up to date,  can we use the command "debug management-server panorama-root-ca-info." Using this command should not have any negative impact.

 

“If you are unable to manage NGFWs from Panorama or have issues with log collection on Log Collector due to expiration of Panorama management certificate on April 7, 2024 please consult the advisory for details and knowledge base article for remediation”

1 REPLY 1

L2 Linker

Hello @vfinetwork_support ,

 

You can see if you are affected in the Panorama Managed Devices. They all should appear in sync.

 

Also, another way to find out if you are affected or not is to check the System messages of both Panorama and Palo Alto Firewalls for:

 

Panorama certificate for Managing NGFWs and log collectors has been successfully extended until 19-Nov-2033

 

This message will appear if you have at least version 8822 as content update.

 

I hope this helps.

Don't forget to Like if you find this post helpful
  • 447 Views
  • 1 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!