Configure Appliance-to-Appliance Encryption Using Predefined
Certificates Through the CLI
When configuring appliance-to-appliance encryption
using the CLI, you must issue all commands from the WildFire appliance
designated as the active-controller. The configuration changes are
automatically distributed to the passive-controller. If you are
operating a cluster with 3 or more nodes, you must also configure
the WildFire cluster appliances acting as server nodes with the
same settings as the active-controller.
Upgrade each managed WildFire appliance
to PAN-OS 8.1.x. All managed appliances must be running PAN-OS 8.1
or later to enable appliance-to-appliance encryption.