<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Failed Distribution Certificate RA VPN in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173050#M31441</link>
    <description>&lt;P&gt;Dear All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to ask related my case, and may be anyone know about this issue can give me advise or solution&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently we are using RA Vpn with certificate internal for authentication&amp;nbsp; and now we find issue related RA VPN certificate distribution , when we try to distribute certificate and send email to our user, the registration key is failed to send with capture below,&amp;nbsp;&lt;/P&gt;&lt;P&gt;and for additional information,&lt;BR /&gt;1.we use 2 gateways as vpn on different site (1pdc, 1HQ) and connected in 1 same fw mgmt for ex 10.1.1.1&lt;BR /&gt;2.we use 2 jump host/ terminal server (1pdc, 1drc) for access our smart console&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19835i9091135C6E7F6545/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;3.we already deploy and use this ra vpn for 4 month and working properly for send cert and access&lt;/P&gt;&lt;P&gt;but now we have problem in 1 jump host in drc make we strange, when we try to send / distribute certificate from fwm 10.1.1.1, its always failed with this info,&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19834i13A176E104D862C5/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;But if we try with our jump host in pdc, its normal, even though it uses the same fwm 10.1.1.1 like on jump host drc&lt;/P&gt;&lt;P&gt;and we already try to reinstall our smart console in drc, but still failed, as i think the process distribution and send mail is should do by fwm right ? not from jump host or endpoint we open smart console.&lt;BR /&gt;&lt;BR /&gt;CMIIW and Thanks&amp;nbsp;&lt;BR /&gt;&lt;LI-PRODUCT title="remote-access" id="remote-access"&gt;&lt;/LI-PRODUCT&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 28 Feb 2023 17:41:30 GMT</pubDate>
    <dc:creator>rdinata01</dc:creator>
    <dc:date>2023-02-28T17:41:30Z</dc:date>
    <item>
      <title>Failed Distribution Certificate RA VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173050#M31441</link>
      <description>&lt;P&gt;Dear All&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I want to ask related my case, and may be anyone know about this issue can give me advise or solution&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Currently we are using RA Vpn with certificate internal for authentication&amp;nbsp; and now we find issue related RA VPN certificate distribution , when we try to distribute certificate and send email to our user, the registration key is failed to send with capture below,&amp;nbsp;&lt;/P&gt;&lt;P&gt;and for additional information,&lt;BR /&gt;1.we use 2 gateways as vpn on different site (1pdc, 1HQ) and connected in 1 same fw mgmt for ex 10.1.1.1&lt;BR /&gt;2.we use 2 jump host/ terminal server (1pdc, 1drc) for access our smart console&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19835i9091135C6E7F6545/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;3.we already deploy and use this ra vpn for 4 month and working properly for send cert and access&lt;/P&gt;&lt;P&gt;but now we have problem in 1 jump host in drc make we strange, when we try to send / distribute certificate from fwm 10.1.1.1, its always failed with this info,&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19834i13A176E104D862C5/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;But if we try with our jump host in pdc, its normal, even though it uses the same fwm 10.1.1.1 like on jump host drc&lt;/P&gt;&lt;P&gt;and we already try to reinstall our smart console in drc, but still failed, as i think the process distribution and send mail is should do by fwm right ? not from jump host or endpoint we open smart console.&lt;BR /&gt;&lt;BR /&gt;CMIIW and Thanks&amp;nbsp;&lt;BR /&gt;&lt;LI-PRODUCT title="remote-access" id="remote-access"&gt;&lt;/LI-PRODUCT&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Feb 2023 17:41:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173050#M31441</guid>
      <dc:creator>rdinata01</dc:creator>
      <dc:date>2023-02-28T17:41:30Z</dc:date>
    </item>
    <item>
      <title>Re: Failed Distribution Certificate RA VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173073#M31450</link>
      <description>&lt;P&gt;Pretty sure this all happens through management (not SmartConsole machine).&lt;BR /&gt;What version/JHF level?&lt;/P&gt;</description>
      <pubDate>Tue, 28 Feb 2023 19:18:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173073#M31450</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-02-28T19:18:12Z</dc:date>
    </item>
    <item>
      <title>Re: Failed Distribution Certificate RA VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173098#M31456</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Currently our fwm using R80.40 T77&lt;/P&gt;&lt;DIV class=""&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19840iCF30F53BD5D6E23D/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Capture.PNG" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/19839i878EC1C75B7DC41A/image-size/large?v=v2&amp;amp;px=999" role="button" title="Capture.PNG" alt="Capture.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Mar 2023 05:31:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173098#M31456</guid>
      <dc:creator>rdinata01</dc:creator>
      <dc:date>2023-03-01T05:31:58Z</dc:date>
    </item>
    <item>
      <title>Re: Failed Distribution Certificate RA VPN</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173246#M31488</link>
      <description>&lt;P&gt;I just want to make sure I understand your problem correctly.&lt;BR /&gt;You are using numerous "jump hosts" (presumably via RDP) to access the same management server (10.1.1.1)&lt;BR /&gt;Not a management server with the same address, but the exact same management server in both cases.&lt;BR /&gt;When you attempt to perform this task from one of the jump posts, you get the problem described.&lt;BR /&gt;When you attempt to perform this task from the other jump hosts, the operation succeeds.&lt;BR /&gt;Am I restating the problem correctly?&lt;/P&gt;
&lt;P&gt;In any case, I recommend the following:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;Install the latest Recommend JHF for R80.40 (Take 77 is more than two years old):&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.40/R80.40/R80.40-List-of-all-Resolved-Issues.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.40/R80.40/R80.40-List-of-all-Resolved-Issues.htm&lt;/A&gt;&amp;nbsp;&lt;/LI&gt;
&lt;LI&gt;Install the latest R80.40 SmartConsole on the relevant jump hosts:&amp;nbsp;&lt;A href="https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.40_SC/R80.40/R80.40_Downloads.htm?tocpath=_____2" target="_blank"&gt;https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.40_SC/R80.40/R80.40_Downloads.htm?tocpath=_____2&lt;/A&gt;&amp;nbsp;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;If you're still having issues after doing these things, I recommend a TAC case.&lt;/P&gt;</description>
      <pubDate>Wed, 01 Mar 2023 17:45:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Failed-Distribution-Certificate-RA-VPN/m-p/173246#M31488</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-03-01T17:45:14Z</dc:date>
    </item>
  </channel>
</rss>

