- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
12-03-2023 01:07 AM
Dear memebers,
We are going to use palo alto vm series firewall on Azure and like to take your advice on the type of certificates to be installed. The firewalls will be public facing front end by Azure application gateway.
The FW will be protecting a web site running on the background. If my understanding is correct, I need 2 types of certificates.
plz advice if my understanding is correct.
12-04-2023 06:07 AM
you don't need the second ssl certificate as that is only required for outbound proxy inspection (and it needs to be from an internal PKI or selfsigned instead of a public one)
for inbound inspection, you need to have the server certificate (and preferably the CA/root and intermediate, to complete the certificate path)
you can use the server certificate on the firewall (WITH private key) to look inside the flow
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!