<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Internal CA Query in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Internal-CA-Query/m-p/76176#M15462</link>
    <description>&lt;P&gt;While I was on holiday last week (so I didn't check anything at the time) a customer gateway had the internal CA expire.&amp;nbsp; At that time, the site-to-site VPN to a managed gateway dropped, and remote access clients also had problems connecting.&lt;/P&gt;&lt;P&gt;Apparently, without doing anything (without renewing the internal CA cert) the site-to-site and Remote Access clients started working again after about 40 minutes.&lt;/P&gt;&lt;P&gt;Can anyone explain how this could happen if the internal CA cert was still expired at that point?&amp;nbsp; It hadn't been renewed yet.&amp;nbsp; How could VPN's come back up again?&lt;/P&gt;</description>
    <pubDate>Mon, 24 Feb 2020 11:16:38 GMT</pubDate>
    <dc:creator>biskit</dc:creator>
    <dc:date>2020-02-24T11:16:38Z</dc:date>
    <item>
      <title>Internal CA Query</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Internal-CA-Query/m-p/76176#M15462</link>
      <description>&lt;P&gt;While I was on holiday last week (so I didn't check anything at the time) a customer gateway had the internal CA expire.&amp;nbsp; At that time, the site-to-site VPN to a managed gateway dropped, and remote access clients also had problems connecting.&lt;/P&gt;&lt;P&gt;Apparently, without doing anything (without renewing the internal CA cert) the site-to-site and Remote Access clients started working again after about 40 minutes.&lt;/P&gt;&lt;P&gt;Can anyone explain how this could happen if the internal CA cert was still expired at that point?&amp;nbsp; It hadn't been renewed yet.&amp;nbsp; How could VPN's come back up again?&lt;/P&gt;</description>
      <pubDate>Mon, 24 Feb 2020 11:16:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Internal-CA-Query/m-p/76176#M15462</guid>
      <dc:creator>biskit</dc:creator>
      <dc:date>2020-02-24T11:16:38Z</dc:date>
    </item>
    <item>
      <title>Re: Internal CA Query</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Internal-CA-Query/m-p/76523#M15539</link>
      <description>&lt;P&gt;The described scenario is very unlikely. I would assume someone opened the GW object, renewed VPN cert by doing that and installed policy on the GW afterwards.&lt;BR /&gt;&lt;BR /&gt;These actions can be traced in the audit log.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Feb 2020 07:51:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Internal-CA-Query/m-p/76523#M15539</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-02-27T07:51:47Z</dc:date>
    </item>
  </channel>
</rss>

