> Source: [sk108966](https://support.checkpoint.com/results/sk/sk108966)

# sk108966 - Corrupted default VPN certificate in the Security Gateway object causes connectivity issues

| Property | Value |
|----------|-------|
| Solution ID | sk108966 |
| Date Created | 2015-12-29 |
| Last Modified | 2024-12-31 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82, R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Symptoms

- * Traffic does not pass over the certificate-based Site to Site VPN.

* SmartConsole / SmartView shows this security log from the relevant Security Gateway:

  `IKE: Main Mode I have no certificate to use for IKE`
* In the problematic Security Gateway object, when viewing the certificate, this error appears:

  `Failed to read certificate from database`
* In the problematic Security Gateway object, when renewing the certificate, this error appears:

  `Generated key was not found in the database`
* There are issues when opening or working with web portals of Software Blades (Mobile Access Portal, Identity Awareness Captive Portal, UserCheck Portal, and so on).

## Cause

Corrupted default VPN certificate in the Security Gateway object.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
