> Source: [sk170001](https://support.checkpoint.com/results/sk/sk170001)

# sk170001 - After users enter correct AD credentials, login to Remote Access VPN fails and a "<code>Wrong username or password</code>" message appears

| Property | Value |
|----------|-------|
| Solution ID | sk170001 |
| Date Created | 2020-10-15 |
| Last Modified | 2021-08-29 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * After users enter correct AD credentials, login to Remote Access VPN fails and a "`Wrong username or password`" message appears
* The problem affects users who log in with Active Directory credentials but does not affect local Check Point users.
* The issue is not resolved after users reset the AD password.

## Cause

The Active Directory server renewed its SSL certificate, but Check Point still uses the previous SSL fingerprint to identify the server. This causes authentication to fail.

## Solution

1. In SmartConsole, open the Object Explorer.
2. Select the **Servers** tab.
3. In the Account Unit, navigate to**Server Settings** and fetch the SSL fingerprint. If the value in the field changes, then the cause of the problem is as described in this article. If the value in the field does not change, then more troubleshooting is required.  

   ![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1602430421173/AU fingerprint202010111146101.jpg)
4. Confirm changes and repeat this procedure for each server in the Account Unit.
5. Push policy.

<br />

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
