> Source: [sk109408](https://support.checkpoint.com/results/sk/sk109408)

# sk109408 - Terminal Servers Identity Multi-User Host (MUH) Agent can't connect to gateway and is shown as Disconnected

| Property | Value |
|----------|-------|
| Solution ID | sk109408 |
| Date Created | 2016-01-02 |
| Last Modified | 2018-11-12 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- * MUH agent is showing as disconnected.

* pdpd debug shows:

  ```
  
  UTILS::WinHttpCCC::analyzeCertificate: CertGetNameString Failed getting certificate name
  [WinHttpCCC (NAC::IS::TD::Surprise)] UTILS::WinHttpCCC::verifyServer: Error analyzing certificate
  [WinHttpCCC (NAC::IS::TD::Surprise)] UTILS::WinHttpCCC::run: Server not verified correctly
  [WinHttpCCC (NAC::IS::TD::Important)] UTILS::WinHttpCCC::dataArrivedCB: Notifying bad or untrusted certificate
  [PDP Connection Manager (TD::Surprise)] NAC::CLIENT::PDPCOMM::PDPConnectionManager::Notify: bad cert or untrusted server, go to disconnect mode
  ```

## Cause

The certificate subject name is empty.

MUH agent **can't**work with certificate that have subject alternative name.

Usually certificates that have empty Subject name uses subject alternative name as seen below:

Empty Subject name:

![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk109408/empty subject1601050222.png)

Subject Alternative Name:

![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk109408/alternative1601050222.png)

**This is not supported configuration when using MUH agent on Terminal servers.**

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
