> Source: [sk173546](https://support.checkpoint.com/results/sk/sk173546)

# sk173546 - ICAP Client Error Logs

| Property | Value |
|----------|-------|
| Solution ID | sk173546 |
| Date Created | 2021-05-30 |
| Last Modified | 2021-10-20 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R81 (EOS) |

## Symptoms

- Noted in "/var/log/messages" following errors are constantly observed:  
`

[ERROR]: icap_client_blade_extract_user_from_ida: couldn't get users for src ip XXXX `  
`

[ERROR]: up_manager_cmi_handler_match_cb: up_conn_notify_parser_event failed `  
`

[ERROR]: up_manager_cmi_handler_match_cb: rc FALSE - rejecting conn [XXXX:X -> YYYY:Y, IPP 6]`

## Cause

These errors are possible flow if the IP does not have an identity by identity awareness blade.

In this scenario, ICAP does not add 'x-authenticated-user' to ICAP request.

Therefore, the ICAP client does not add a user header. Then ICAP client sends the file to the ICAP server without this header.

## Solution

This problem was fixed. The fix is included in:

* [Jumbo Hotfix Accumulator for R81](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk170114) starting from Take 42
* [Jumbo Hotfix Accumulator for R80.20](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk137592) starting from Take 203

If you choose not to upgrade, Check Point can supply a **Hotfix** . [Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.  
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.  
For faster resolution and verification, please collect [CPinfo files](http://supportcontent.checkpoint.com/solutions?id=sk92739) from the Security Management Server and Security Gateways involved in the case.

**Hotfix installation instructions:**   
Refer to [sk168597 - How to install a Hotfix](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk168597).

<br />

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
