View Single Post
  #15 (permalink)  
Old 2008-01-31
lowfell lowfell is offline
Member
 
Join Date: 2006-06-06
Posts: 72
Rep Power: 3
lowfell has an average reputation (10+)
Default Re: UNABLE TO ESABLISH SIC ?

Quote:
Originally Posted by abusharif View Post
try debugging management and see if u get more info

fw debug fwm on TDERROR_ALL_ALL=5

(or something like that, check cli documentation)

try to connect, then check file
$FW(CP)DIR/log/fwm.elg
OK, thanks for the tip about the logs, so in the logs I can see the following when i try to connect from the INTERNET

"M 1260]@BACS SIC Error for cpmi: Got alert from peer that the certificate expired"

& when I try to connect locally I get this
"SIC Error for amon: Certificate expired"

So I beleive this means I need to reset sic!
So at the command line I type

>fwm sic_reset

Then I get this reply!

>There are IKE Certificates that were generated by the internal Certificate Authority. Please remove them (using the Policy Editor) so that the internal Certificate Authority can be destroyed."
"SIC Reset operation could not be completed".


So off I go to Checkpoint Secure Knowledge
Solution ID: #sk14532

Which then instructs me how to fix this by LOGGING ON TO THE DASHBOARD

Can someone tell me why this might not work??
Reply With Quote