> Source: [sk108064](https://support.checkpoint.com/results/sk/sk108064)

# sk108064 - Renewing or deleting VPN certificate fails for Security Gateway object

| Property | Value |
|----------|-------|
| Solution ID | sk108064 |
| Date Created | 2015-10-18 |
| Last Modified | 2025-07-02 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82, R81.20, R81.10 (EOS) |
| OS | Gaia |

## Symptoms

- * In SmartConsole \> Security Gateway object \> **IPsec VPN** section, after users select a certificate and click **Renew**, the Security Gateway does not renew the certificate.
* After users click **Remove** , the Security Gateway does not remove the certificate from the table. This error message appears in SmartConsole:  
  "*This certificate is used in IKE authentication. Prior to deleting this certificate, define an alternative certificate, or remove the 'public key signature' authentication method.*"

## Cause

The VPN certificate for the Security Gateway object is corrupted.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
