> Source: [sk160693](https://support.checkpoint.com/results/sk/sk160693)

# sk160693 - How to set an alternative certificate for Threat Prevention API functionality

| Property | Value |
|----------|-------|
| Solution ID | sk160693 |
| Date Created | 2019-08-21 |
| Last Modified | 2024-10-31 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82, R81.20, R81.10 (EOS), R81 (EOS) |

## Solution

**Overview**

* This feature lets the user set an alternative (non Check Point) certificate for the Threat Prevention API functionality.
* The feature lets the user replace the certificate on the Gateway that is used for the API calls (for example: https://:18194/tecloud/api/v1/file/upload).

**Limitations**

* This feature currently supports a pfx certificate without an export password.
* This feature is supported starting in Threat Emulation Engine Update 9.1 (refer to [sk95235](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk95235)for more information).

**How to use this feature**

1. Generate a pfx certificate (pkcs#12) without an export password and upload it to the Gateway.
2. Enable the feature by running: '*tecli adv server_cert set enable 1*'
3. Set the new certificate path by running: '*tecli adv server_cert set path \<certificate path\>* **'**
4. Restart the TED process by running: '*fw kill ted*'

**Verification**

* Check that the Server has initialized successfully (RemoteGWServerManager in TE logs).
* Check that the API functionality remains intact.
* Check that the new alternative certificate is the one that is used by the Gateway server.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
