Certificate has been applied.
Creat CSR from Palo Alto firewall.
Device >> Certificate Management >> Certificates >> Generate
Use entries below

Download CSR and uploaded to digicert website. Renewed for 2 years.
Downloaded .PEM certificate

Showed as Pending in Palo Alto.
Selected Pending Cert vpn_mayfield_com>> Import >> type in the name vpn_mayfield_com >> Browsed to G:\Shared drives\IT Shared\APPS\Palo Alto Networks\SSL Certs\VPN Cert (downloaded from Digicert as .PEM) >> OK. Leave as screen below. Nothing needs to be checked.

Commited all changes.
Connected to https://vpn.mayfield.com/global-protect/login.esp from my laptop and confirmed expiration date.

This what needs to be done to update our VPN Certificate.
Thanks,
Audel