Monday, July 23, 2012

PaloAlto Firewall SSL VPN with Client Certificate Verification

1. Import CA Certificate into PaltoAlto
2. Create Client Certificate Profile
Select CA Certificate
Input OCSP URL E.g. https://IP:PORT/ca/ocsp
Check use OCSP
3. Select that Client Certificate Profile in SSL VPN Tunnel Setting
4. Commit and Test

1 comment: