> Source: [sk123798](https://support.checkpoint.com/results/sk/sk123798)

# sk123798 - "ssl network extender failed to reconnect to gateway. try to reconnect" error message when assigned Office Mode IP

| Property | Value |
|----------|-------|
| Solution ID | sk123798 |
| Date Created | 2018-03-30 |
| Last Modified | 2018-12-11 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * "ssl network extender failed to reconnect to gateway. try to reconnect" error message when assigned Office Mode IP.
* Message file shows "kernel: \[fw4_0\];VPN-1 has reached its tunnel capacity" continuously.
* Mobile Access users are unable to login.

## Cause

The VPN capacity is reaching its maximum concurrent size.

Check the limit: *#fw tab -t MSPI_by_methods \| grep limit*

Then check: *#fw tab -t MSPI_by_methods -s*

**Notes:**

* The *MSPI_by_methods*table provides a way to access an actual SA, through MSA, which is pointed to by the MSPI.
* -s displays a short summary of the table's information (the current total number and peak number of connections)
* In R80.10 (and higher), this table was replaced by a global table called 'meta_sas' (that also uses a local cache table 'local_meta_sas')

If the peak number of connections exceeds the configured limit, then the concurrent tunnel capacity should be increased.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
