> Source: [sk163616](https://support.checkpoint.com/results/sk/sk163616)

# sk163616 - TLS FATAL ALERT log message received

| Property | Value |
|----------|-------|
| Solution ID | sk163616 |
| Date Created | 2020-01-07 |
| Last Modified | 2023-02-22 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- TLS FATAL ALERT log message received

## Cause

The most common root causes are:

* Security Gateway CA has not been imported into client's trust store.
* The client pinning the certificate, the CA or the public key. Such client will never trust the Security Gateway.

Usually in such cases, the client will terminate the connection by sending a TLS alert such as: certificate_unknown(46), unknown_ca(48) , bad_certificate(42).

For more information regarding the exact error alert, look for the received alert in [RFC 5246, section-7.2.2](https://tools.ietf.org/html/rfc5246#section-7.2.2)

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
