I've seen cases where if the trust chain is not in the correct order, then Check Point will not accept it as valid, ensure that the Certificate is correctly crafted.
IPS/WSTLSD is sensitive to discrepancies that we might not notice initially reviewing the certificate details.
If this does not yield answers, and you need more information, a WSTLSD Debug would be more aligned, the command you mentioned is not recommended.
If you don't see more information under "More - Description" I recommend raising a case with TAC to assist with gathering more info.
https://sc1.checkpoint.com/sc/SolutionsStatics/sk159872/expired_cert1909100631.PNG