- Products
- Learn
- Local User Groups
- Partners
- More
Policy Insights and Policy Auditor in Action
19 November @ 5pm CET / 11am ET
Access Control and Threat Prevention Best Practices
Watch HereOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Greetings mates!!
I have a slight problem.
I have a signed certificate, which has already been imported to my cluster (2 firewalls) in a .p12 format to the Platform Portal section. But when I access the Gaia portal, I still get the "Your connection is not private" error. When checking the certificate, it shows a 192.168.1.1 certificate, which I understand is an auto-signed certificate.
I don't understand why I'm getting this error if the certificate is already imported to the cluster.
This is a procedure already done in other Gateways, so I don't understand what is happening.
Can you please help me or guide me to a solution please?
Thanks in advance
Can you send a screenshot of cert on the gateway settings? Please blur out sensitive info.
Andy
Additionally, the certificate is signed by the internal PKI; it has SANs, such as IP addresses of the gateways and the cluster, and DNSs (hostnames of the gateways and cluster, along with the domain)
It is showing that the certificate does not match the hostname. Are you sure you created it properly? Also, a silly question, did you push policy with these settings yet?
I'm uploading the error message, it shows a NET::ERR_CERT_AUTHORITY_INVALID
This are the steps followed in the creation of the certificate:
- Generate the CSR, which includes SANs
- Send the CSR and .key file to the PKI to be signed
- After they signed it, and sent it back, convert the .cer file to a .p12 using SSL Shopper's tool, which asks the .key file and a password
- Transfer the certificate to the server, in which the console is hosted
- In Platform Portal, import the certificate, in this step, the password configured in SSL Shopper is typed, after which, the certificate is imported
- Install policy on the firewall cluster
- After which, I access to a web browser, such as Chrome or Firefox, but it's where the error is shown
Can you send screenshot of the cert itself from smart console?
Andy
Cant open any of them, just says virus scan in progress. Can you message me directly?
Andy
Sorry, let me try that again
I see it now. If you installed policy after cert is uploaded, no reason why it would not work. Maybe engage TAC to confirm everything, hard to say for me without being able to check it via remote session.
Andy
Were you able to fix this problem, same occurred with me. Certificate replaced on platform portal but not reflecting on Gaia portal.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 25 | |
| 13 | |
| 12 | |
| 7 | |
| 6 | |
| 5 | |
| 4 | |
| 4 | |
| 3 | |
| 3 |
Wed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 03 Dec 2025 @ 10:00 AM (COT)
Última Sesión del Año – CheckMates LATAM: ERM & TEM con ExpertosThu 04 Dec 2025 @ 12:30 PM (SGT)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - APACThu 04 Dec 2025 @ 03:00 PM (CET)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - EMEAThu 04 Dec 2025 @ 02:00 PM (EST)
End-of-Year Event: Securing AI Transformation in a Hyperconnected World - AmericasWed 26 Nov 2025 @ 12:00 PM (COT)
Panama City: Risk Management a la Parrilla: ERM, TEM & Meat LunchAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY