Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

I cant complete the certificate

Status
Not open for further replies.

Zulan

Technical User
Sep 9, 2001
14
Hello!

I am trying to use a certificate for my remote clients. I start out with initiating it under the user properties. As I undestand it, step 2 is on the VPN-1 Secureclient go to "certificates -> CheckPoint Certificates -> Create..." and there enter my external IP for my checkpoint fw and the registration key given during the initilization process. However, here I get an error message saying:

VPN-1 SecureRemote/SecureCleint could not establish connection with internal CA. Enter the server IP or server name and try again. If this error occurs again, check your connectivity.

What am I doing wrong here? Connectivity to the internet using the client is working fine. If I skip the certificate process and use VPN-1 password I can log in fine. The log shows TCP FW1_ica_servcies as accepted.
 
I have now finally solved this problem. In addition to this, I couldnt get my secureclients to log on to to the policy server.

It turned out to be a portforwarding rule that used a port that this service needed. Removing the rules made it all work flawlessly...
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top