{"id":2464,"date":"2022-10-19T20:24:22","date_gmt":"2022-10-19T17:24:22","guid":{"rendered":"https:\/\/artem.services\/?p=2464"},"modified":"2022-10-25T15:53:24","modified_gmt":"2022-10-25T12:53:24","slug":"palo-alto-vm-series-firewall-lets-encrypt-%d1%81%d0%b5%d1%80%d1%82%d0%b8%d1%84%d0%b8%d0%ba%d0%b0%d1%82","status":"publish","type":"post","link":"https:\/\/artem.services\/?p=2464","title":{"rendered":"Palo Alto VM-Series Firewall: Let&#8217;s Encrypt \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442"},"content":{"rendered":"<p><img loading=\"lazy\" class=\"alignnone size-full wp-image-2328\" src=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo.png\" alt=\"\" width=\"2560\" height=\"465\" srcset=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo.png 2560w, https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo-300x54.png 300w, https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo-1024x186.png 1024w, https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo-768x140.png 768w, https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo-1536x279.png 1536w, https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo-2048x372.png 2048w, https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo-954x173.png 954w, https:\/\/artem.services\/wp-content\/uploads\/2022\/09\/palo-alto-logo-1354x246.png 1354w\" sizes=\"(max-width: 2560px) 100vw, 2560px\" \/><\/p>\n<p>PAN-OS \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u0435\u0442 \u0442\u043e\u043b\u044c\u043a\u043e \u0433\u0435\u043d\u0435\u0440\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u0441\u0430\u043c\u043e\u043f\u043e\u0434\u043f\u0438\u0441\u043d\u044b\u0435 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u044b \u0438\u043b\u0438 \u0443\u0436\u0435 \u0438\u043c\u043f\u043e\u0440\u0442\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u0441\u0443\u0449\u0435\u0441\u0442\u0432\u0443\u044e\u0449\u0438\u0435. \u0427\u0442\u043e\u0431\u044b \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c Let&#8217;s Encrypt \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442, \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u043e \u0435\u0433\u043e \u0437\u0430\u043f\u0440\u043e\u0441\u0438\u0442\u044c \u043d\u0430 \u0434\u0440\u0443\u0433\u043e\u043c \u0443\u0441\u0442\u0440\u043e\u0439\u0441\u0442\u0432\u0435 \u0438 \u043f\u043e\u044d\u0442\u043e\u043c\u0443 \u0432 \u043a\u0430\u0447\u0435\u0441\u0442\u0432\u0435 \u0432\u0430\u043b\u0438\u0434\u0430\u0446\u0438\u0438 \u043c\u043e\u0436\u0435\u043c \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c \u0442\u043e\u043b\u044c\u043a\u043e DNS.<\/p>\n<p>\u0412 \u043a\u0430\u0447\u0435\u0441\u0442\u0432\u0435 DNS \u043f\u0440\u043e\u0432\u0430\u0439\u0434\u0435\u0440\u0430 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0435\u0442\u0441\u044f AWS Route53, \u0434\u043b\u044f \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u044f \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0431\u0443\u0434\u0435\u043c \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c <a href=\"https:\/\/certbot.eff.org\/\" target=\"_blank\" rel=\"noopener\">Certbot<\/a>, \u0442\u0430\u043a \u0436\u0435 \u043f\u043e\u043d\u0430\u0434\u043e\u0431\u0438\u0442\u0441\u044f \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043b\u0435\u043d\u043d\u044b\u0439 \u0438 \u043d\u0430\u0441\u0442\u0440\u043e\u0435\u043d\u043d\u044b\u0439 <a href=\"https:\/\/docs.aws.amazon.com\/cli\/latest\/userguide\/getting-started-install.html\" target=\"_blank\" rel=\"noopener\">awscli<\/a><\/p>\n<h4>\u041f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0435 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430<\/h4>\n<p>\u0423\u0441\u0442\u0430\u043d\u0430\u0432\u043b\u0438\u0432\u0430\u0435\u043c \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0439 \u0441\u043e\u0444\u0442 (\u0432 \u0434\u0430\u043d\u043d\u043e\u043c \u043f\u0440\u0438\u043c\u0435\u0440\u0435 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u043b\u0430\u0441\u044c \u0441\u0438\u0441\u0442\u0435\u043c\u0430 macOS):<\/p>\n<pre class=\"brush: bash; title: ; notranslate\" title=\"\">\r\nbrew install certbot awscli\r\npip3 install certbot-dns-route53\r\n<\/pre>\n<p>\u041d\u0430\u0441\u0442\u0440\u0430\u0438\u0432\u0430\u0435\u043c awscli:<\/p>\n<pre class=\"brush: bash; title: ; notranslate\" title=\"\">\r\nawscli configure\r\n<\/pre>\n<p>&nbsp;<\/p>\n<p>\u041c\u0438\u043d\u0438\u043c\u0430\u043b\u044c\u043d\u044b\u0435 \u0440\u0430\u0437\u0440\u0435\u0448\u0435\u043d\u0438\u044f \u0434\u043b\u044f DNS \u0432\u0430\u043b\u0438\u0434\u0430\u0446\u0438\u0438<\/p>\n<p><strong>AWS IAM Policy:<\/strong><\/p>\n<pre class=\"brush: java; title: ; notranslate\" title=\"\">\r\n{\r\n  &quot;Version&quot;: &quot;2012-10-17&quot;,\r\n  &quot;Id&quot;: &quot;certbot-dns-route53&quot;,\r\n  &quot;Statement&quot;: [\r\n    {\r\n      &quot;Effect&quot;: &quot;Allow&quot;,\r\n      &quot;Action&quot;: [\r\n        &quot;route53:ListHostedZones&quot;,\r\n        &quot;route53:GetChange&quot;\r\n      ],\r\n      &quot;Resource&quot;: [\r\n        &quot;*&quot;\r\n      ]\r\n    },\r\n    {\r\n      &quot;Effect&quot;: &quot;Allow&quot;,\r\n      &quot;Action&quot;: [\r\n        &quot;route53:ChangeResourceRecordSets&quot;,\r\n        &quot;route53:ListResourceRecordSets&quot;\r\n      ],\r\n      &quot;Resource&quot;: [\r\n        &quot;arn:aws:route53:::hostedzone\/YOURDOMAINZONEID&quot;\r\n      ]\r\n    }\r\n  ]\r\n}\r\n<\/pre>\n<blockquote><p>\u0413\u0434\u0435 &quot;<strong>YOURDOMAINZONEID<\/strong>&quot; &#8212; ID \u0432\u0430\u0448\u0435\u0439 hosted zone<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><!--more-->\u0417\u0430\u043f\u0440\u0430\u0448\u0438\u0432\u0430\u0435\u043c \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442<\/p>\n<blockquote><p>Certbot \u043d\u0430 macOS \u0442\u0440\u0435\u0431\u0443\u0435\u0442 root \u043f\u0440\u0438\u0432\u0438\u043b\u0435\u0433\u0438\u0439<\/p><\/blockquote>\n<pre class=\"brush: bash; title: ; notranslate\" title=\"\">\r\nsudo certbot certonly \\\r\n  --register-unsafely-without-email \\\r\n  --dns-route53 \\\r\n  -d gp1.aws.artem.services\r\n<\/pre>\n<blockquote><p>\u0413\u0434\u0435 &quot;<strong>gp1.aws.artem.services<\/strong>&quot; &#8212; \u0434\u043e\u043c\u0435\u043d\u043d\u043e\u0435 \u0438\u043c\u044f \u0434\u043b\u044f \u0437\u0430\u043f\u0440\u0430\u0448\u0438\u0432\u0430\u0435\u043c\u043e\u0433\u043e \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><img loading=\"lazy\" class=\"alignnone size-full wp-image-2465\" src=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05.png\" alt=\"\" width=\"2868\" height=\"866\" srcset=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05.png 2868w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05-300x91.png 300w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05-1024x309.png 1024w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05-768x232.png 768w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05-1536x464.png 1536w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05-2048x618.png 2048w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05-954x288.png 954w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-20.01.05-1354x409.png 1354w\" sizes=\"(max-width: 2868px) 100vw, 2868px\" \/><\/p>\n<p>\u0422\u0430\u043a \u043a\u0430\u043a \u043c\u044b \u0437\u0430\u043f\u0443\u0441\u043a\u0430\u043b\u0438 Certbot \u043e\u0442 \u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u0435\u043b\u044f root, \u0442\u043e \u0441\u043a\u043e\u043f\u0438\u0440\u0443\u0435\u043c \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0435 \u0444\u0430\u0439\u043b\u044b \u0432 \u0434\u043e\u043c\u0430\u0448\u043d\u044e\u044e \u0434\u0438\u0440\u0435\u043a\u0442\u043e\u0440\u0438\u044f \u0438 \u043f\u043e\u043c\u0435\u043d\u044f\u0435\u043c \u0432\u043b\u0430\u0434\u0435\u043b\u044c\u0446\u0430<\/p>\n<pre class=\"brush: bash; title: ; notranslate\" title=\"\">\r\nsudo cp \/etc\/letsencrypt\/live\/gp1.aws.artem.services\/{fullchain,privkey}.pem ~\/\r\nsudo chown artem:staff ~\/{fullchain,privkey}.pem\r\n<\/pre>\n<p>\u0422\u0435\u043f\u0435\u0440\u044c \u043c\u043e\u0436\u043d\u043e \u043f\u0435\u0440\u0435\u0445\u043e\u0434\u0438\u0442\u044c \u043a \u0438\u043c\u043f\u043e\u0440\u0442\u0443 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430<\/p>\n<h4>Firewall<\/h4>\n<p><strong>Management<\/strong><\/p>\n<p>\u0414\u043b\u044f \u0438\u043c\u043f\u043e\u0440\u0442\u0430 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u043f\u0435\u0440\u0435\u0445\u043e\u0434\u0438\u043c &quot;<strong>Device<\/strong>&quot; -&gt; &quot;<strong>Certificate Management<\/strong>&quot; -&gt; &quot;<strong>Certificates<\/strong>&quot; -&gt; &quot;<strong>Device Certificates<\/strong>&quot; \u0438 \u043a\u043b\u0438\u043a\u0430\u0435\u043c &quot;<strong>Import<\/strong>&quot;<\/p>\n<ul>\n<li>Certificate File: <strong>fullchain.pem<\/strong><\/li>\n<li>Import Private Key: \u0441\u0442\u0430\u0432\u0438\u043c \u0433\u0430\u043b\u043e\u0447\u043a\u0443<\/li>\n<li>Key File: <strong>privkey.pem<\/strong><\/li>\n<li>Passphrase: \u0441\u043b\u0443\u0447\u0430\u0439\u043d\u044b\u0439 \u043f\u0430\u0440\u043e\u043b\u044c (\u0434\u0430\u043b\u044c\u0448\u0435 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c\u0441\u044f \u043d\u0438\u0433\u0434\u0435 \u043d\u0435 \u0431\u0443\u0434\u0435\u0442)<\/li>\n<\/ul>\n<p><img loading=\"lazy\" class=\"alignnone size-full wp-image-2473\" src=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.23.png\" alt=\"\" width=\"988\" height=\"730\" srcset=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.23.png 988w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.23-300x222.png 300w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.23-768x567.png 768w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.23-954x705.png 954w\" sizes=\"(max-width: 988px) 100vw, 988px\" \/><\/p>\n<p>\u041f\u0440\u043e\u0432\u0435\u0440\u044f\u0435\u043c \u0441\u0442\u0430\u0442\u0443\u0441 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0438 \u043e\u0431\u044f\u0437\u0430\u0442\u0435\u043b\u044c\u043d\u043e, \u0447\u0442\u043e \u043f\u043e\u043b\u0435 &quot;<strong>Key<\/strong>&quot; \u0438\u043c\u0435\u0435\u0442 \u0433\u0430\u043b\u043e\u0447\u043a\u0443.<\/p>\n<p><img loading=\"lazy\" class=\"alignnone size-full wp-image-2474\" src=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38.png\" alt=\"\" width=\"2464\" height=\"262\" srcset=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38.png 2464w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38-300x32.png 300w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38-1024x109.png 1024w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38-768x82.png 768w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38-1536x163.png 1536w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38-2048x218.png 2048w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38-954x101.png 954w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.24.38-1354x144.png 1354w\" sizes=\"(max-width: 2464px) 100vw, 2464px\" \/><\/p>\n<p>\u0414\u0430\u043b\u0435\u0435 \u043d\u0430\u043c \u043d\u0443\u0436\u043d\u043e \u0441\u043e\u0437\u0434\u0430\u0442\u044c \u043f\u0440\u043e\u0444\u0438\u043b\u044c, \u0434\u043b\u044f \u044d\u0442\u043e\u0433\u043e \u043f\u0435\u0440\u0435\u0445\u043e\u0434\u0438\u043c &quot;<strong>Device<\/strong>&quot; -&gt; &quot;<strong>Certificate Management<\/strong>&quot; -&gt; &quot;<strong>SSL\/TLS Service Profile<\/strong>&quot; \u0438 \u043a\u043b\u0438\u043a\u0430\u0435\u043c &quot;<strong>Add<\/strong>&quot;. \u0412\u044b\u0431\u0438\u0440\u0430\u0435\u043c \u043d\u0430\u0448 \u0438\u043c\u043f\u043e\u0440\u0442\u0438\u0440\u043e\u0432\u0430\u043d\u043d\u044b\u0439 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442, \u0443\u043a\u0430\u0437\u044b\u0432\u0430\u0435\u043c \u0438\u043c\u044f \u0438 \u0442\u0440\u0435\u0431\u043e\u0432\u0430\u043d\u0438\u044f \u043a TLS \u0432\u0435\u0440\u0441\u0438\u044f\u043c.<\/p>\n<p><img loading=\"lazy\" class=\"alignnone size-full wp-image-2475\" src=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.25.14.png\" alt=\"\" width=\"792\" height=\"484\" srcset=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.25.14.png 792w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.25.14-300x183.png 300w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.25.14-768x469.png 768w\" sizes=\"(max-width: 792px) 100vw, 792px\" \/><\/p>\n<p>\u041e\u0441\u0442\u0430\u043b\u043e\u0441\u044c \u0443\u043a\u0430\u0437\u0430\u0442\u044c \u043f\u0440\u043e\u0444\u0438\u043b\u044c \u0434\u043b\u044f \u043c\u0435\u043d\u0435\u0434\u0436\u043c\u0435\u043d\u0442 \u043f\u043e\u0434\u043a\u043b\u044e\u0447\u0435\u043d\u0438\u044f. \u041f\u0435\u0440\u0435\u0445\u043e\u0434\u0438\u043c &quot;<strong>Device<\/strong>&quot; -&gt; &quot;<strong>Setup<\/strong>&quot; -&gt; &quot;<strong>Management Settings<\/strong>&quot; \u0438 \u043d\u0430\u0436\u0438\u043c\u0430\u0435\u043c \u043d\u0430 &quot;\u0448\u0435\u0441\u0442\u0435\u0440\u0435\u043d\u043a\u0443&quot;. \u0417\u0430\u0434\u0430\u0435\u043c \u0434\u043e\u043c\u0435\u043d\u043d\u043e\u0435 \u0438\u043c\u044f \u0438 \u0432\u044b\u0431\u0438\u0440\u0430\u0435\u043c SSL\/TLS \u043f\u0440\u043e\u0444\u0438\u043b\u044c.<\/p>\n<p><img loading=\"lazy\" class=\"alignnone size-full wp-image-2476\" src=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.30.04.png\" alt=\"\" width=\"946\" height=\"1162\" srcset=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.30.04.png 946w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.30.04-244x300.png 244w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.30.04-834x1024.png 834w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.30.04-768x943.png 768w\" sizes=\"(max-width: 946px) 100vw, 946px\" \/><\/p>\n<p>\u041e\u0441\u0442\u0430\u043b\u043e\u0441\u044c \u043f\u0440\u0438\u043c\u0435\u043d\u0438\u0442\u044c \u0438 \u0441\u043e\u0445\u0440\u0430\u043d\u0438\u0442\u044c \u0438\u0437\u043c\u0435\u043d\u0435\u043d\u0438\u044f, \u0434\u043b\u044f \u044d\u0442\u043e\u0433\u043e \u0432 \u043f\u0440\u0430\u0432\u043e\u043c \u0432\u0435\u0440\u0445\u043d\u0435\u043c \u0443\u0433\u043b\u0443 \u043d\u0430\u0436\u0438\u043c\u0430\u0435\u043c \u043d\u0430 \u043a\u043d\u043e\u043f\u043a\u0443 &quot;<strong>Commit<\/strong>&quot;<\/p>\n<p><img loading=\"lazy\" class=\"alignnone size-full wp-image-2477\" src=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.35.09.png\" alt=\"\" width=\"1190\" height=\"478\" srcset=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.35.09.png 1190w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.35.09-300x121.png 300w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.35.09-1024x411.png 1024w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.35.09-768x308.png 768w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.35.09-954x383.png 954w\" sizes=\"(max-width: 1190px) 100vw, 1190px\" \/><\/p>\n<p>\u0427\u0435\u0440\u0435\u0437 \u043d\u0435\u0441\u043a\u043e\u043b\u044c\u043a\u043e \u043c\u0438\u043d\u0443\u0442 \u043c\u043e\u0436\u043d\u043e \u043f\u043e\u0434\u043a\u043b\u044e\u0447\u0430\u0442\u044c\u0441\u044f \u0432 WebUI \u043f\u043e \u0434\u043e\u043c\u0435\u043d\u043d\u043e\u043c\u0443 \u0438\u043c\u0435\u043d\u0438 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u044f \u043f\u0440\u043e\u0442\u043e\u043a\u043e\u043b HTTPS<\/p>\n<p><img loading=\"lazy\" class=\"alignnone size-full wp-image-2478\" src=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.36.44.png\" alt=\"\" width=\"1430\" height=\"1058\" srcset=\"https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.36.44.png 1430w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.36.44-300x222.png 300w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.36.44-1024x758.png 1024w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.36.44-768x568.png 768w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.36.44-954x706.png 954w, https:\/\/artem.services\/wp-content\/uploads\/2022\/10\/Screenshot-2022-10-19-at-22.36.44-1354x1002.png 1354w\" sizes=\"(max-width: 1430px) 100vw, 1430px\" \/><\/p>\n<p>&nbsp;<\/p>\n<blockquote><p>\u041d\u0435 \u0437\u0430\u0431\u0443\u0434\u044c\u0442\u0435 \u0441\u043e\u0437\u0434\u0430\u0442\u044c DNS \u0437\u0430\u043f\u0438\u0441\u044c \u0443\u043a\u0430\u0437\u044b\u0432\u0430\u044e\u0449\u0443\u044e \u043d\u0430 \u0432\u0430\u0448 \u0444\u0430\u0435\u0440\u0432\u043e\u043b<\/p><\/blockquote>\n<p>&nbsp;<\/p>\n<p><strong>GlobalProtect<\/strong><\/p>\n<p>\u0414\u043b\u044f \u0438\u043c\u043f\u043e\u0440\u0442\u0430 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0434\u043b\u044f GlobalProtect \u0432\u0430\u043c \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u043e \u0432\u044b\u043f\u043e\u043b\u043d\u0438\u0442\u044c \u0432\u0441\u0435 \u0442\u0435 \u0436\u0435 \u0434\u0435\u0439\u0441\u0442\u0432\u0438\u044f, \u0438 \u043f\u0440\u0438 \u043d\u0430\u0441\u0442\u0440\u043e\u0439\u043a\u0435 \u043f\u043e\u0440\u0442\u0430\u043b\u0430 \u0438 \u0433\u0435\u0439\u0442\u0432\u0435\u044f \u0443\u043a\u0430\u0437\u0430\u0442\u044c \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0439 \u043f\u0440\u043e\u0444\u0438\u043b\u044c.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>PAN-OS \u043f\u043e\u0437\u0432\u043e\u043b\u044f\u0435\u0442 \u0442\u043e\u043b\u044c\u043a\u043e \u0433\u0435\u043d\u0435\u0440\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u0441\u0430\u043c\u043e\u043f\u043e\u0434\u043f\u0438\u0441\u043d\u044b\u0435 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u044b \u0438\u043b\u0438 \u0443\u0436\u0435 \u0438\u043c\u043f\u043e\u0440\u0442\u0438\u0440\u043e\u0432\u0430\u0442\u044c \u0441\u0443\u0449\u0435\u0441\u0442\u0432\u0443\u044e\u0449\u0438\u0435. \u0427\u0442\u043e\u0431\u044b \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c Let&#8217;s Encrypt \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442, \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u043e \u0435\u0433\u043e \u0437\u0430\u043f\u0440\u043e\u0441\u0438\u0442\u044c \u043d\u0430 \u0434\u0440\u0443\u0433\u043e\u043c \u0443\u0441\u0442\u0440\u043e\u0439\u0441\u0442\u0432\u0435 \u0438 \u043f\u043e\u044d\u0442\u043e\u043c\u0443 \u0432 \u043a\u0430\u0447\u0435\u0441\u0442\u0432\u0435 \u0432\u0430\u043b\u0438\u0434\u0430\u0446\u0438\u0438 \u043c\u043e\u0436\u0435\u043c \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c \u0442\u043e\u043b\u044c\u043a\u043e DNS. \u0412 \u043a\u0430\u0447\u0435\u0441\u0442\u0432\u0435 DNS \u043f\u0440\u043e\u0432\u0430\u0439\u0434\u0435\u0440\u0430 \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u0443\u0435\u0442\u0441\u044f AWS Route53, \u0434\u043b\u044f \u043f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u044f \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0431\u0443\u0434\u0435\u043c \u0438\u0441\u043f\u043e\u043b\u044c\u0437\u043e\u0432\u0430\u0442\u044c Certbot, \u0442\u0430\u043a \u0436\u0435 \u043f\u043e\u043d\u0430\u0434\u043e\u0431\u0438\u0442\u0441\u044f \u0443\u0441\u0442\u0430\u043d\u043e\u0432\u043b\u0435\u043d\u043d\u044b\u0439 \u0438 \u043d\u0430\u0441\u0442\u0440\u043e\u0435\u043d\u043d\u044b\u0439 awscli \u041f\u043e\u043b\u0443\u0447\u0435\u043d\u0438\u0435 \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442\u0430 \u0423\u0441\u0442\u0430\u043d\u0430\u0432\u043b\u0438\u0432\u0430\u0435\u043c \u043d\u0435\u043e\u0431\u0445\u043e\u0434\u0438\u043c\u044b\u0439 \u0441\u043e\u0444\u0442 &hellip; <a href=\"https:\/\/artem.services\/?p=2464\" class=\"more-link\">\u041f\u0440\u043e\u0434\u043e\u043b\u0436\u0438\u0442\u044c \u0447\u0438\u0442\u0430\u0442\u044c<span class=\"screen-reader-text\"> &quot;Palo Alto VM-Series Firewall: Let&#8217;s Encrypt \u0441\u0435\u0440\u0442\u0438\u0444\u0438\u043a\u0430\u0442&quot;<\/span><\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[24,42],"tags":[25,1891,84,1889,86],"_links":{"self":[{"href":"https:\/\/artem.services\/index.php?rest_route=\/wp\/v2\/posts\/2464"}],"collection":[{"href":"https:\/\/artem.services\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/artem.services\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/artem.services\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/artem.services\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2464"}],"version-history":[{"count":15,"href":"https:\/\/artem.services\/index.php?rest_route=\/wp\/v2\/posts\/2464\/revisions"}],"predecessor-version":[{"id":2490,"href":"https:\/\/artem.services\/index.php?rest_route=\/wp\/v2\/posts\/2464\/revisions\/2490"}],"wp:attachment":[{"href":"https:\/\/artem.services\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2464"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/artem.services\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2464"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/artem.services\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2464"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}