> Source: [sk106428](https://support.checkpoint.com/results/sk/sk106428)

# sk106428 - Connectivity issues through Security Gateway in Proxy mode due to an extra space in DNS Query sent by the Security Gateway

| Property | Value |
|----------|-------|
| Solution ID | sk106428 |
| Date Created | 2015-06-11 |
| Last Modified | 2017-04-09 |
| Technical Level | Advanced |

## Symptoms

- * Connectivity issues through Security Gateway in Proxy mode due to an extra space in DNS Query sent by the Security Gateway.

* SmartView Tracker logs show that connections are rejected due to DNS timeout:

  `Action = Reject`  
  `
  Reason = Proxy: DNS timeout/error; Connection was rejected due to DNS timeout or error`
* Traffic capture on Security Gateway in Proxy mode shows that DNS Query sent by Security Gateway to a DNS server contains an extra space at the end of the Hostname (e.g., the length of "helpdesk.mycompany.com" string is 23 bytes = 22 letters + 1 extra space).

* When running the *nslookup* command to resolve a hostname, traffic capture shows that DNS Query does *not* contain an extra space.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
