- Products
- Learn
- Local User Groups
- Partners
- More
Step Into the Future of
AI-Powered Cyber Security
The State of Ransomware Q1 2026
Key Trends and Their Impact
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
Looks like you're using Gaia WebUI. This error is from your browser which doesn't like the TLS version being negotiated. Your browser may have a TLS configuration imposed by a GPO from your organization. You can try with Firefox instead to see if that works. For example, depending on your gateway configuration, the Gaia portal may not be able to support TLS 1.3:
https://support.checkpoint.com/results/sk/sk178505
If your GPO enforces TLS 1.3, then this may be your issue.
Can you confirm that this firewall is still running supported software? 90% of the time this error is related to ancient firewall software
What version? You can always try change web UI port and test
clish -> set web ssl-port 4434 -> save config -> test
If that fails, I would try open old school Internet explorer and see if that works
https://superuser.com/questions/1824875/where-is-internet-options-now-that-internet-explorer-is-gone
control panel -> internet options -> programs -> manage add-ons -> learn more about toolbars and extensions
Andy
What version/JHF is the device?
Older (out of support) versions may not support the ciphers mandated by current web browsers.
R81_10_JUMBO_HF_MAIN Take: 139
Did you try what we suggested?
Andy
Did you check to see if your organization enforces the use of TLS 1.3 as suggested by @Duane_Toler ?
organization enforced to use TLS 1.2 and same is configured in gateway as well.
Can you reach the gateway via other means (e.g. ssh)?
What is the network path between your client and the gateway and does it include any other firewalls?
VPN blade is not enabled, what is the process for renewal for self signed certificate in gateway ?
self signed certificate renewal fixed the issue.
Thats odd, can you send screenshot of that vpn tab? How did you renew it if blade is not even on??
CP Support did that, i am not sure about that.
Do you have commands they ran?
Andy
This is documented in https://support.checkpoint.com/results/sk/sk97792
VPN certificate is not only used for interal VPN but also for:
Ah, that sk...seen it before, though personally, I always thought there was an easier way to do this rather than enabling/disabling the blade 🙂
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 26 | |
| 13 | |
| 11 | |
| 10 | |
| 7 | |
| 7 | |
| 6 | |
| 6 | |
| 6 | |
| 6 |
Wed 13 May 2026 @ 11:00 AM (EDT)
TechTalk: The State of Ransomware Q1 2026: Key Trends and Their ImpactThu 14 May 2026 @ 07:00 PM (EEST)
Under the Hood: Presentando Check Point Cloud Firewall como ServicioAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY