> Source: [sk106941](https://support.checkpoint.com/results/sk/sk106941)

# sk106941 - "The name of the security certificate (CN) does not match the name of the target server (IP_Address)" message when Identity Agent connects

| Property | Value |
|----------|-------|
| Solution ID | sk106941 |
| Date Created | 2015-07-23 |
| Last Modified | 2017-04-12 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Windows |

## Symptoms

- * Identity Agent does not trust Security Gateway's certificate although Security Gateway's CN is defined in the certificate.

  The following message appears when Identity Agent connects:

  ```
  
  The name of the security certificate (<CN>) does not match the
  name of the target server (<IP_Address>)
  ```

  *Example*:
  [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk106941/Identity_Agent.png)](https://sc1.checkpoint.com/sc/SolutionsStatics/sk106941/Identity_Agent.png "Click the image to see it in full size in a new tab/window")

  Click on "*View Certificate...* " - go to "*Details* " tab - click on "*Subject*" line - you can see that Security Gateway's CN is defined in the certificate.

  *Example*:
  [![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk106941/Certificate.png)](https://sc1.checkpoint.com/sc/SolutionsStatics/sk106941/Certificate.png "Click the image to see it in full size in a new tab/window")
* Issue occurs every time the IP address of the server (Security Gateway) changes.

* Issue occurs even if the server in Identity Agent was defined as a URL and not as an IP address.

## Cause

In order to avoid excess DNS requests, the Identity Agent only resolves the DNS name once in a while and refers to the server only by its IP address. This creates a mismatch between the name in the certificate (defined by URL) and the address of the server (defined by an IP address).

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
