> Source: [sk173124](https://support.checkpoint.com/results/sk/sk173124)

# sk173124 - RDP connections through VPN on Quantum Scalable Chassis/Quantum Maestro appliances terminate after 30 seconds

| Property | Value |
|----------|-------|
| Solution ID | sk173124 |
| Date Created | 2021-04-18 |
| Last Modified | 2023-01-25 |
| Technical Level | General |
| Products | Security Gateway, Scalable Platforms |
| Versions | R81 (EOS), R81 (EOS) |

## Symptoms

- * RDP connections through VPN on Quantum Scalable Chassis/Quantum Maestro appliances terminate after 30 seconds.
* A rule allowing external remote access traffic to the internal resource is in place. Dropped packets direction are from internal to external, if no specific rule is allowing that direction. This type of rule should not be needed on a connection that was established from the remote client to an internal resource.
* Kernel debug for the connection may show; vpnk_get_tunnel_conn: TCPT with tunnel id 3905: :-5163640 -\> :136623779 IPP 6\> fwha_vpn_get_tunnel_ifn: tunnel ifn for ip is not found! (ifn -1); asym_get_c2s_info_inbound: c2s connkey :-5163640 -\> :136623779 IPP 6\>, is tunnel 1, ifn (null); fwha_asym_handle_new_conn_inbound: failed to get c2s connkey or ifn; vpn_outbound_policy_chain: entered for conn :61708 -\> :3389 IPP 17\> ; request_to_open_tunnel_if_not_ready: entering; vpnk_get_mspi_from_opaque: retuned mspi = \[none\] (cdir = 1 dir = 1) );

## Cause

An uninitialized value causes the connection to be deleted from the Connections Table. (Because a struct is not initialized, VPN forwarding for tcpt packets is done incorrectly or the packets are dropped.)

<br />

## Solution

This problem was fixed. The fix is included in:

* [Jumbo Hotfix Accumulator for R81 (Take 13)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk170114)
* [Jumbo Hotfix Accumulator for R80.20SP (Take 310)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk155832)
* [Maestro R80.30SP Jumbo Hotfix Accumulator (Take 73)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk165312)

Check Point recommends to always upgrade to the most recent version.  

For other versions please [Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.   
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.   
For faster resolution and verification please collect [CPinfo](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92739) files from the Security Management and Security Gateways involved in the case.

**Hotfix installation instructions:**   
Refer to [sk168597 - How to install a Hotfix](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk168597).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
