> Source: [sk149912](https://support.checkpoint.com/results/sk/sk149912)

# sk149912 - SNX client fails to connect when using large number of Native Applications

| Property | Value |
|----------|-------|
| Solution ID | sk149912 |
| Date Created | 2019-03-25 |
| Last Modified | 2020-07-28 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- * SNX client fails to connect when using large number of Native Applications.
* Client connection takes a long time and then fails with error message:   
  `SSL Network Extender is taking a long time to connect. Try to connect again`  
  And: `"Internal Server Error"`
* `vpnd.elg` shows:  

  `[vpnd pid][Date Time][RPC] timeout_handler: Timeout on conn 51
  `  
  `[vpnd pid][Date Time][slim] slim_rpc_connect_async_cb Callback received 'fail'. Disconnecting user: session uid 0xc1b4c043, tunnel id 3
  `  
  `[vpnd pid][Date Time][slim] send_slim_disconnect_to_id: sending reason code: Internal server error.
  `  
  `[vpnd pid][Date Time][slim] send_slim_proto_packet: len 65 (instance: 0, tunnel ID: 3, disconnect: 1)
  `  
  `[vpnd pid][Date Time][slim] sslt_send_data: tunnel ID 3 exists in hash
  `  
  `[vpnd pid][Date Time][slim] sslt_send_data: VPN_CPAS_SENDF ioctl returned -1
  `  
  `[vpnd pid][Date Time][slim] slim_cookie_del: Trying to delete a VPN web server cookie...
  `  
  And:  

  `
  `  
  `[vpnd pid][Date Time][slim] send_slim_disconnect_to_id: deleted cookie for tunnel ID 3
  `  
  `[vpnd pid][Date Time][slim] free_slim_proto: Freeing slim state for tunnel 3
  `  
  `[vpnd pid][Date Time][slim] remove_and_free_cpas_opq: deleting conn opq for ID 3 on instance 0
  `  
  `[vpnd pid][Date Time][slim] slim_disconnected: close connection for tunnel ID 3 on instance 0
  `  
  `[vpnd pid][Date Time][slim] slim_disconnected: message: Internal server error. (reason code 459)
  `  
* Kernel debugs show:  

  `[cpu_X];[fwX_0];fw_send_kmsg: log buffer for tsid 16 is full. len = 1652;
  `  
  `[cpu_X];[fwX_0];fw_send_kmsg: log_first:87048, log_last:85496, free space:1551 ;
  `  
  `[cpu_X];[fwX_0];1515507272:{mab} [WARNING]: mabk_send_trap: fw_send_kmsg failed!;
  `  
  `[cpu_X];[fwX_0];1515507272:{mab} [WARNING]: mabk_send_result_to_userspace_async: fw_send_kmsg failed!;
  `  
  `[cpu_X];[fwX_0];1515507272:{mab} [WARNING]: mabk_run_rulebase_and_send_response: failed to send response;
  `

## Cause

The large number of SNX Native Applications is causing a delay in the Mobile Access response to VPN.

VPN is seeing this as an error because we exceed the response timeout.

The log buffer for *tsid*is full and this causes a failure to respond to the user space about the result of authorization.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
