- Products
- Learn
- Local User Groups
- Partners
- More
Simplify Admin Operations with R82.20
Wed, 19 August @ 5pm CET/11am EDT
The industry's first AI Network Firewall
Securing AI traffic, everywhere
The State of Ransomware Q2 2026:
This Quarter's Trends, and Their Impact on Your Defenses
READY OR NOT: Securing the AI Enterprise
AI Research & Threat Landscape
CheckMates Go:
No Attack Required
Looks like you're using Gaia WebUI. This error is from your browser which doesn't like the TLS version being negotiated. Your browser may have a TLS configuration imposed by a GPO from your organization. You can try with Firefox instead to see if that works. For example, depending on your gateway configuration, the Gaia portal may not be able to support TLS 1.3:
https://support.checkpoint.com/results/sk/sk178505
If your GPO enforces TLS 1.3, then this may be your issue.
Can you confirm that this firewall is still running supported software? 90% of the time this error is related to ancient firewall software
What version? You can always try change web UI port and test
clish -> set web ssl-port 4434 -> save config -> test
If that fails, I would try open old school Internet explorer and see if that works
https://superuser.com/questions/1824875/where-is-internet-options-now-that-internet-explorer-is-gone
control panel -> internet options -> programs -> manage add-ons -> learn more about toolbars and extensions
Andy
What version/JHF is the device?
Older (out of support) versions may not support the ciphers mandated by current web browsers.
R81_10_JUMBO_HF_MAIN Take: 139
Did you try what we suggested?
Andy
Did you check to see if your organization enforces the use of TLS 1.3 as suggested by @Duane_Toler ?
organization enforced to use TLS 1.2 and same is configured in gateway as well.
Can you reach the gateway via other means (e.g. ssh)?
What is the network path between your client and the gateway and does it include any other firewalls?
VPN blade is not enabled, what is the process for renewal for self signed certificate in gateway ?
self signed certificate renewal fixed the issue.
Thats odd, can you send screenshot of that vpn tab? How did you renew it if blade is not even on??
CP Support did that, i am not sure about that.
Do you have commands they ran?
Andy
This is documented in https://support.checkpoint.com/results/sk/sk97792
VPN certificate is not only used for interal VPN but also for:
Ah, that sk...seen it before, though personally, I always thought there was an easier way to do this rather than enabling/disabling the blade 🙂
Andy
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 156 | |
| 103 | |
| 15 | |
| 12 | |
| 12 | |
| 9 | |
| 8 | |
| 6 | |
| 6 | |
| 6 |
Tue 11 Aug 2026 @ 11:00 AM (EDT)
Beyond Phishing: Securing Email Against SaaS and AI-Driven ThreatsThu 20 Aug 2026 @ 08:30 AM (COT)
Medellin: Workspace Evolution: Hybrid Mesh Management - Visibilidad, Automatización e IATue 11 Aug 2026 @ 11:00 AM (EDT)
Beyond Phishing: Securing Email Against SaaS and AI-Driven ThreatsThu 20 Aug 2026 @ 10:00 AM (PDT)
AI Security Masters E13: READY OR NOT: Securing the AI Ent 5/5 - AI Research & Threat LandscapeTue 25 Aug 2026 @ 05:00 PM (CEST)
The State of Ransomware Q2 2026: This Quarter's Trends, and Their Impact on Your DefensesThu 20 Aug 2026 @ 08:30 AM (COT)
Medellin: Workspace Evolution: Hybrid Mesh Management - Visibilidad, Automatización e IAThu 20 Aug 2026 @ 06:00 PM (COT)
Medellin: Workspace Intelligence: IA Generativa en Acción para Equipos de SeguridadAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY