> Source: [sk169614](https://support.checkpoint.com/results/sk/sk169614)

# sk169614 - Installation or upgrade of a Mobile Access Portal Agent fails on VSX

| Property | Value |
|----------|-------|
| Solution ID | sk169614 |
| Date Created | 2020-10-19 |
| Last Modified | 2021-07-06 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R81 (EOS) |

## Symptoms

- * Installation or upgrade of a Mobile Access Portal Agent fails on a VSX Gateway / VSX Cluster.
* Blank page opens when installing or upgrading the Mobile Access Portal Agent.
* Compliance Scanner, Secure Workspace, or SNX do not start.

## Cause

Issue with upgrade scripts that are called during the creation of new Virtual System. Two files have the content from New Mobile Access Portal, while they should have had the content from the Legacy Mobile Access Portal.  

This article is relevant for the following scenarios:  

**Scenario 1**   

1. A customer performed a clean installation of the R81 Security Gateway (or Cluster).
2. A customer configured this R81 Security Gateway (or Cluster) in VSX mode.
3. A customer configured several Virtual Systems and enabled the Mobile Access Software Blade on some of these Virtual Systems.   
   By default, in R81 version, the New Mobile Access Portal is enabled.
4. A customer changed the Mobile Access Portal from the New mode to the Legacy mode on some of these Virtual Systems.

**Scenario 2**   

1. A customer performed an upgrade on an existing VSX Gateway (or VSX Cluster) to R81.
2. A customer configured several Virtual Systems and enabled the Mobile Access Software Blade on some of these Virtual Systems.   
   By default, in R81 version, the New Mobile Access Portal is enabled.
3. A customer changed the Mobile Access Portal from the New mode to the Legacy mode on some of these Virtual Systems.

## Solution

This problem was fixed. The fix is included in:

* [Check Point R81.10](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk170416)

Check Point recommends to always upgrade to the most recent version   
([upgrade Security Gateway](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=435) / [upgrade Security Management Server](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=184) / [upgrade Multi-Domain Security Management](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=166)).

<br />

If you choose not to upgrade, use this Workaround:

1. Connect to the command line on the VSX Gateway (each VSX Cluster Member).

2. Log in to the Expert mode.

3. Get the IDs of the affected Virtual Systems:

   `vsx stat -v`
4. Replace the problematic files with the legacy files:

   1. Copy this file:

      `$CVPNDIR/htdocs_legacy/SNX/CSHELL/getAjaxCshell`

      to this directory:

      `$CVPNDIR/CTX/CTX0000`**<ID of Virtual System>**`/htdocs_legacy/SNX/CSHELL/`
   2. Copy this file:

      `$CVPNDIR/htdocs_legacy/SNX/CSHELL/getUpdateCshell`

      to this directory:

      `$CVPNDIR/CTX/CTX0000`**<ID of Virtual System>**`/htdocs_legacy/SNX/CSHELL/`

   Where **<ID of Virtual System>** is the ID of the Virtual System in which the administrator changed the Mobile Access Portal.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
