<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Import P12  Certificate in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/124180#M10344</link>
    <description>&lt;P&gt;I'm pretty sure this is one of the limitations of using custom certificates for remote access / VPN when not using the mobile access blade. If the mobile access blade is in use you have much better options for adding custom certificates and you should be able to simply import it directly without creating a new csr.&lt;/P&gt;</description>
    <pubDate>Fri, 16 Jul 2021 10:26:02 GMT</pubDate>
    <dc:creator>RamGuy239</dc:creator>
    <dc:date>2021-07-16T10:26:02Z</dc:date>
    <item>
      <title>Import P12  Certificate</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/86173#M10339</link>
      <description>&lt;P&gt;Hi there,&lt;/P&gt;&lt;P&gt;We're merging a R80.20 into a R80.30 SMS, the number of rules on the R80.20 is low -around 40 rules- so we're doing it via a simple script to create the objects/groups etc. which we don't have any issue with&lt;/P&gt;&lt;P&gt;The R80.20 is managing a single gateway used for remote access, the certificate used on it, is generated by the customer own CA server (we got a trusted root, subordinate and then the certificate).&lt;/P&gt;&lt;P&gt;We did export it using the command &lt;STRONG&gt;export_p12&lt;/STRONG&gt;, though how shall we import it into the R80.30 SMS?&lt;/P&gt;&lt;P&gt;Obviously &lt;EM&gt;import_p12&lt;/EM&gt; command doesn't exist, looked around but couldn't find any leads&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;Ps: we could've re-created the certificate on R80.30 from scratch, but we're trying to avoid the&amp;nbsp;&lt;SPAN&gt;fingerprint&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN&gt;warning window upon users trying to connect.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 24 May 2020 23:41:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/86173#M10339</guid>
      <dc:creator>_Daniel_</dc:creator>
      <dc:date>2020-05-24T23:41:16Z</dc:date>
    </item>
    <item>
      <title>Re: Import P12  Certificate</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/86260#M10340</link>
      <description>Pretty sure this is done on the relevant gateway object in SmartConsole.&lt;BR /&gt;You may also need to create an OPSEC CA object for the relevant CA as well, requiring the public CA key.</description>
      <pubDate>Mon, 25 May 2020 19:58:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/86260#M10340</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-05-25T19:58:11Z</dc:date>
    </item>
    <item>
      <title>Re: Import P12  Certificate</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/86272#M10341</link>
      <description>&lt;P&gt;Thanks Dameon,&lt;/P&gt;&lt;P&gt;We managed to import the Root CA and its subordinate with no issue (click on the trusted certificate --&amp;gt; from OPSEC PKI select Save As.., then on the new SMS create a new Root|Subordinate and clicking on "Get", pointing to the file saved in the previous step.&lt;/P&gt;&lt;P&gt;Though when it comes to the actual certificate (using the Root and Subordinate created above), there isn't a similar approach. Clicking on the gateway properties then IPSec VPN, you only have one choice to use the "Add" button which generates a new CSR file to sign the certificate, no import or get from a p12 file!&lt;/P&gt;</description>
      <pubDate>Mon, 25 May 2020 21:33:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/86272#M10341</guid>
      <dc:creator>_Daniel_</dc:creator>
      <dc:date>2020-05-25T21:33:42Z</dc:date>
    </item>
    <item>
      <title>Re: Import P12  Certificate</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/86365#M10342</link>
      <description>Hm... yeah, you're right, there's no obvious option for this.&lt;BR /&gt;Let me check with the experts here.</description>
      <pubDate>Tue, 26 May 2020 15:33:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/86365#M10342</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-05-26T15:33:26Z</dc:date>
    </item>
    <item>
      <title>Re: Import P12  Certificate</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/124093#M10343</link>
      <description>&lt;P&gt;Curious as to whether there was a method discovered which allowed the import of a cert/key pair? I too am stuck facing only the option of generating a new CSR when I want to import.&lt;/P&gt;</description>
      <pubDate>Thu, 15 Jul 2021 14:51:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/124093#M10343</guid>
      <dc:creator>ritchiet</dc:creator>
      <dc:date>2021-07-15T14:51:42Z</dc:date>
    </item>
    <item>
      <title>Re: Import P12  Certificate</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/124180#M10344</link>
      <description>&lt;P&gt;I'm pretty sure this is one of the limitations of using custom certificates for remote access / VPN when not using the mobile access blade. If the mobile access blade is in use you have much better options for adding custom certificates and you should be able to simply import it directly without creating a new csr.&lt;/P&gt;</description>
      <pubDate>Fri, 16 Jul 2021 10:26:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/Import-P12-Certificate/m-p/124180#M10344</guid>
      <dc:creator>RamGuy239</dc:creator>
      <dc:date>2021-07-16T10:26:02Z</dc:date>
    </item>
  </channel>
</rss>

