Having this integration would be amazing. We manage around 100-odd PA-220's for small clients all with GP. To answer you questions: 1) If you're currently using Let's Encrypt certs with PAN-OS and your workflow does not look like the above, can you briefly describe it? We aren't using it because of the high maintenance. 2) Is your desired end goal that PAN-OS runs Let's Encrypt natively? If not, what is your desired end goal? 100% Natively would be the goal. 3) In between the end goal and now, would you want a stop-gap solution? Depends on how complex. 4) If you want a stop-gap solution, what form should it take? A standalone executable / script? Ansible module? Terraform resource? Tie-in to an existing Let's Encrypt client, such as certbot or acme.sh? Anything - but depends on how complex.
... View more