This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Using the same HTTPS Scanning CA on multiple XG Firewalls

We have a customer that is planning to deploy multiple XG Firewalls in multiple sites and I was wondering is it possible to make them all use the same CA for HTTPS Decryption and Scanning so that roaming users don't have to install multiple certificates?



This thread was automatically locked due to age.
Parents
  • Apologies, I believe you have to generate a self-signed certificate on each XG.

    Certificates > Certificates > Add > Generate self-signed certificate

    So, technically the certificate doing the encryption on each XG is different.

    But the RootCertificate.pem that the clients need to install, and create the trust, is the same.

    I'm a bit new to this myself so happy to be corrected if wrong.

Reply
  • Apologies, I believe you have to generate a self-signed certificate on each XG.

    Certificates > Certificates > Add > Generate self-signed certificate

    So, technically the certificate doing the encryption on each XG is different.

    But the RootCertificate.pem that the clients need to install, and create the trust, is the same.

    I'm a bit new to this myself so happy to be corrected if wrong.

Children