<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN certificate expired on one VS on a VSX cluster in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-certificate-expired-on-one-VS-on-a-VSX-cluster/m-p/200576#M37667</link>
    <description>&lt;P&gt;Thats bit odd, not sure if it is cosmetic if you say cert shows valid now. Maybe cpstop; cpstart or reboot the mgmt?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 14 Dec 2023 00:55:30 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-12-14T00:55:30Z</dc:date>
    <item>
      <title>VPN certificate expired on one VS on a VSX cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-certificate-expired-on-one-VS-on-a-VSX-cluster/m-p/200517#M37647</link>
      <description>&lt;P&gt;Hi,&lt;BR /&gt;&lt;BR /&gt;For a VS on a VSX Cluster we are getting the following error in SmartConsole:&lt;BR /&gt;&lt;BR /&gt;Error: The VPN Certificate "CN=vsid VPN Certificate,O=mgmt.-server.qqcbfh" expired on Wed XXX 4 16:15:14 2023. To renew it, follow sk178304&lt;BR /&gt;&lt;BR /&gt;The VSX cluster has several VS's and we are only seeing this on one VS. Other VS's are OK. And we are only seeing this on one cluster member for the affected VS.&lt;BR /&gt;&lt;BR /&gt;VPN is not enabled on this VS, but we followed&amp;nbsp;sk178304 to renew the certificate for the VS and the certificate shows a new date.&lt;BR /&gt;Published the changes, VS changes got pushed to the VS and we installed the policy. But for one VS on one member, this error remains.&lt;BR /&gt;&lt;BR /&gt;We can push policy to the affected VS without any problems or warnings. And 'vsx stat -v' shows a trust for this VS.&lt;BR /&gt;This VS is active within the cluster and is handling traffic. Logs are shown in SmartLog.&lt;BR /&gt;&lt;BR /&gt;Version Management: R81.20 take 41&lt;BR /&gt;Version VSX Cluster: R81.20 Take 26&lt;BR /&gt;SmartConsole: R81.20 B649&lt;BR /&gt;&lt;BR /&gt;Looks like something cosmetic, but would like to have a correct status in SmartConsole.&lt;BR /&gt;Any idea's, tips or suggetions?&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Martijn&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 13 Dec 2023 16:17:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-certificate-expired-on-one-VS-on-a-VSX-cluster/m-p/200517#M37647</guid>
      <dc:creator>Martijn</dc:creator>
      <dc:date>2023-12-13T16:17:07Z</dc:date>
    </item>
    <item>
      <title>Re: VPN certificate expired on one VS on a VSX cluster</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-certificate-expired-on-one-VS-on-a-VSX-cluster/m-p/200576#M37667</link>
      <description>&lt;P&gt;Thats bit odd, not sure if it is cosmetic if you say cert shows valid now. Maybe cpstop; cpstart or reboot the mgmt?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 14 Dec 2023 00:55:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/VPN-certificate-expired-on-one-VS-on-a-VSX-cluster/m-p/200576#M37667</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-12-14T00:55:30Z</dc:date>
    </item>
  </channel>
</rss>

