Hi, I have a customer who is currently only running the PA in vwire. They need to have custom URL filtering continue and override pages. My question is what needs to be done to have the end users browsers trust the certificate in vwire? I know in layer 3 mode I can use a pushed out trusted root certificate going to a L3 interface. Based on my testing, in vwire mode I need to use transparent filtering but even if I do that and create a wildcard certificate it doesn't trust the certificate, I think because it is going directly to IP address not a dns address. Any insights or being pointed in the right direction would be appreciated. Thanks,
... View more