10.1.4 HA config sync problems with certificates

I don't know if this is a 10.1.4 bug or by design but I have a pair of PA460's in HA with config sync enabled.


1. Firewall won't sync a certificate with a private key to the other firewall.  It syncs the root CA only.

2. I can't sync any SSL/TLS service profile settings to the other firewall.


Normally I use Panorama but I would have to be a huge masochist to upgrade it 10.1, knowing there's 50+ known bugs that have not been fixed in over 2 months.  Just a suggestion but maybe enforcing known buggy software on your latest firewalls with non-existent QA might not be such a great idea?

