> Source: [sk165256](https://support.checkpoint.com/results/sk/sk165256)

# sk165256 - Failure in creating CMAs on Secondary MDS/MLM

| Property | Value |
|----------|-------|
| Solution ID | sk165256 |
| Date Created | 2020-02-17 |
| Last Modified | 2020-02-23 |
| Technical Level | Advanced |
| Products | Multi-Domain Security Management Server |
| Versions | R82.10, R81.20, R82 |

## Symptoms

- * CMA creation fails in 5%
* On Primary $MDS_FWDIR/log/mds.elg we see the following error:  

  `
  [MDS ...]@Host[DATE TIME] sic_client_handler: `**server sent wrong sic name to the client cn=cp_mgmt,o=FR000-Provider1..ass8sb**   
  `
  [MDS ...]@Host[DATE TIME] sic_client_handler: `**Trying to make connection with sic name "cn=cp_mgmt,o=FR000-Provider1..fjz9ot",
  but peer says its sic name is "cn=cp_mgmt,o=FR000-Provider1..ass8sb".**   
  `
  [MDS ...]@Host[DATE TIME][SIC] SIC Error for cpmi: Peer sent wrong DN: cn=cp_mgmt,o=FR000-Provider1..ass8sb`  
  `
  ....
  ....
  [MDS ...]@Host[DATE TIME][fwasync] fwasync_do_end_conn: closing connection 66 (conn=19fdc8f0)`  
  `
  [MDS ...]@Host[DATE TIME] sic_client_end_handler: for conn id = 66`

## Cause

Global ICA name is inconsistent on SIC certificate: *cn=cp_mgmt,o=FR000-Provider1..**ass8sb***   
and The Management object, (FR000-Provider1 in this example), in the database (postgres) shows: "*cn=cp_mgmt,o=FR000-Provider1..**fjz9ot*** ",  

The correct name in the one on the SIC certificate.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
