The support for native certificate store enables the GlobalProtect app installed on
the Linux endpoints to use certificates from the certificate store
Starting from GlobalProtect app 6.2 or later versions, the support for native
certificate store enables the GlobalProtect app installed on the Linux endpoints to
use certificates from the certificate store for:
- Client cert authentication to the portal and gateway
- GlobalProtect app log reporting
Previously the GlobalProtect app used the client certificates installed using the
GlobalProtect CLI command, which is available only in the
/opt/paloaltonetworks/globalprotect/file directory
on Linux endpoints.
To configure GlobalProtect app to use the certificate in the native certificate
store, you must: