Using Palo Alto with Cloudflare Certs?

Trying to setup Global Protect VPN on a Palo Alto ¶, using a subdomain from a domain I have parked in Cloudflare (CF) and using Cloudflare DNS & SSL. Issue is everytime I create a .csr from the PA and complete it using CF Client Certs (with Cloudfare Manged CA). I get errors with the cert that saying it’s an “incomplete certificate chain”.

Anyone have issues like this? Or can I even use the CF Certs on a PA?

I have other servers (http, email and etc) that all use CF Certs with no issues.
Also I do have this subdomain (A record) proxied.

