> Source: [sk163894](https://support.checkpoint.com/results/sk/sk163894)

# sk163894 - SAM rule creation fails on CloudGuard Gateway

| Property | Value |
|----------|-------|
| Solution ID | sk163894 |
| Date Created | 2019-12-03 |
| Last Modified | 2021-04-07 |
| Technical Level | Advanced |
| Products | Cloud Firewall |
| Versions | R81 (EOS) |
| OS | Gaia |
| Platform | Azure |

## Symptoms

- * SAM rule can not be created automatically or manually on Virtual Machine Scale Sets (VMSS) and High Availability (HA) for Azure.
* Error received is:  
  `
  sam_client_demultiplex_datagram: status is 3
  sam: A02AZFW--A02AZFWFRON001_0--A02AZFWFRON001 (0/1) failed 'Inhibit Drop Close src ip 5.137.140.240 on <Object_Name>' processing`
* `Interfaces are using Alias.`

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
