Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
ShadowNif
Collaborator

VPN renew 3rd Party SSL Cert.

Hi, 

My SSL VPN Cert expierd in couple of days. so I get a new one with the same everything but different name. 
Both Certs now imported, I set the new one "The Gateway authentication Cert." but the clients still uses the old one. 

Should I delelte the old one in order for the new one to takeover or what should i change more ? 

I Dont have Mobile access blade, only the VPN.

 

image.pngimage.png

2 Replies
simonemantovani
MVP Diamond
MVP Diamond

Hello

first try to connect via browser to the IP address of you VPN site on port 443 and check the SSL certificate used; if it's the old certificate, try to perform this command directly on your gateway (or gateways if you have a cluster): fw kill vpnd.

Then check again on your browser if the certificate is changed.

After that you could remove the old certificate.

Lesley
MVP Platinum
MVP Platinum

You cannot delete the old cert? Does this give an error? If there is an error check: https://support.checkpoint.com/results/sk/sk108064

If there is no I suggest the same as simone restart the daemon / gateway -> https://support.checkpoint.com/results/sk/sk183123

-------
Please press "Accept as Solution" if my post solved it 🙂