> Source: [sk123336](https://support.checkpoint.com/results/sk/sk123336)

# sk123336 - SNX traffic with R80.10 Security Gateway dropped with "Rulebase - ERROR"

| Property | Value |
|----------|-------|
| Solution ID | sk123336 |
| Date Created | 2018-03-06 |
| Last Modified | 2021-11-22 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Windows, macOS, Linux |

## Symptoms

- * SNX traffic with R80.10 Security Gateway dropped.  
  *#fw ctl zdebug drop \| grep* output:  
  dropped by fw_send_log_drop Reason: Rulebase - ERROR;
* VPN Kernel debug:  
  cmi_context_exec_from_non_stream: cmik_loader_fw_context_match_cb(context=352, app_id = 23, context_apps=ec0000) failed;  
  \[ERROR\]: up_manager_fw_handle_first_packet: cmi_exec_from_first_packet() failed;  
  \[ERROR\]: up_manager_fw_handle_first_packet: failed to execute first packet context; fw_log_drop_ex: Packet proto=xx x.x.x.x:xxxxx -\> y.y.y.y:yy dropped by fw_send_log_drop Reason: Rulebase - ERROR;
* *CVPND.elg* :  
  \[AUTHORIZATION\] \[CVPN_INFO\] Authorization::MailAuthorizeCommand::isSensitivitySatisfied: Sensitivity secondary authentication is not satisfied

## Cause

Mobile Access Blade protection levels were configured incorrectly and caused the Mobile Access Blade policy to drop/reject the specific connection.

## Solution

This problem was fixed. The fix is included in:

* [Check Point R80.20](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk122485)
* [Jumbo Hotfix Accumulator for R80.10](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk116380) - since *Take_112*

Check Point recommends to always [upgrade to the most recent version](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=184)

For **other [supported](http://www.checkpoint.com/support-services/support-life-cycle-policy/index.html) versions** , [Check Point Support](http://www.checkpoint.com/support-services/contact-support/index.html) can supply a **Hotfix** .  
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.   
For faster resolution and verification please collect [CPinfo](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92739) files from the Security Management and Security Gateways involved in the case.

**Hotfix installation instructions:**

1. Hotfix has to be installed on ***Security Gateway***.

   **Note:** In cluster environment, this procedure must be performed on *all* members of the cluster.
2. Procedure:

   * Using CPUSE on Gaia OS:

     Refer to [sk92449: CPUSE - Gaia Software Updates (including Gaia Software Updates Agent)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92449#How to work with CPUSE):
     * Section "[(4-A-c)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92449#How to work with CPUSE - How to download and import a CPUSE package - Import instructions for Offline procedure - Gaia Portal)" / "[(4-A-d)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92449#How to work with CPUSE - How to download and import a CPUSE package - Import instructions for Offline procedure - Gaia Clish)" - refer to import instructions for *Offline procedure*
     * Section "[(4-B-a)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92449#How to work with CPUSE - How to install a CPUSE package - Installing a Hotfix package / Minor Version package)" - refer to installation instructions for *Hotfixes*

     **Note:** Machine will be rebooted automatically.
   * Using Legacy CLI on Gaia/SecurePlatform/IPSO OS:

     1. Transfer the hotfix package to the machine (into some directory, e.g., */some_path_to_fix/*).

     2. Unpack and install the hotfix package:

        ***\[Expert@HostName:0\]# cd /some_path_to_fix/***   
        ***\[Expert@HostName:0\]# tar -zxvf fw1_wrapper_\<HOTFIX_NAME\>.tgz***   
        ***\[Expert@HostName:0\]# ./fw1_wrapper_\<HOTFIX_NAME\>***
        **Note:** The script will stop all of Check Point services (*cpstop*) - read the output on the screen.
     3. Reboot the machine.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
