> Source: [sk172823](https://support.checkpoint.com/results/sk/sk172823)

# sk172823 - The preserve SIC feature on a centrally managed SMB gateway does not work with Zero Touch deployment

| Property | Value |
|----------|-------|
| Solution ID | sk172823 |
| Date Created | 2021-03-31 |
| Last Modified | 2022-07-13 |
| Technical Level | Advanced |
| Products | Spark Firewall (Locally Managed) |
| Versions | R81.10.X |
| Platform | 1570R, 1500, 1600, 1800 |

## Symptoms

- * After the Quantum Spark Appliance is reverted to factory-defaults and connects to the Zero Touch server to fetch the configurations, policy fetch on the gateway fails."

* The user sees this error message: "SIC is not initialized either at the Module or the peer \[SIC error no.119\]. Check that SIC is configured both on module and peer, and that both have SIC certificates."

## Cause

This is the sequence of events that results in SIC failure:

1. The `update default-image from current-image preserve-settings no preserve-sic yes` command is executed on the Quantum Spark Appliance to update its default image from the current image and to preserve the current SIC configuration.

2. After the gateway is reverted to factory-defaults, it connects to the Zero Touch server to fetch the configurations.

3. After the gateway is configured, SIC communication between the peer gateway and the Security Management is broken.

When you use Zero Touch deployment, by design the Zero Touch server executes the command `set security-management mode locally-managed`. This sets the gateway to locally managed mode which breaks the SIC certificate on the gateway.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
