> Source: [sk175111](https://support.checkpoint.com/results/sk/sk175111)

# sk175111 - Machine authentication fails with error "Machine certificate is required"

| Property | Value |
|----------|-------|
| Solution ID | sk175111 |
| Date Created | 2021-08-23 |
| Last Modified | 2025-11-24 |
| Technical Level | Advanced |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X |
| OS | Windows |

## Symptoms

- * Remote access using a machine authentication fails with error "Machine certificate is required" though a valid machine certificate exists in CAPI Personal store of the Local machine.

* In the *C:\\Program Files (x86)\\CheckPoint\\Endpoint Security\\Endpoint Connect\\trac.log* file you can see the following logs:  
  `
  [RaisCertManager] RaisCertManager::CertManager::GetCertByName: `**temp_cert is null!! => No cert was found with the given cert_name** `= [O=XXXXX-TESTLAGB..XXXX;CN=XXXXXX Root CA,O=XXXXXXX,C=XX]
  [RaisCertManager] CertManager::GetCertByName: __end__ 13:43:49.696. Total time - 31 milliseconds`  
  `
  [IKE] MM4PacketHandler: A matching certificate for the machine was not found when using machine only. Stopping the negotiations.
  [rais] [DEBUG] [RaisMessages::CreateMessageSet(s)] message: (msg_obj`  
  `
  :format (1.0)`  
  `
  :id (ClipsMessagesIkeNegFailed)`  
  `
  :def_msg ("Connection failed. A certificate for the machine cannot be found.")`

## Cause

The intermediate and Root certificates were added in **both** "Intermediate Certification Authorities" and "Trusted Root Certification Authorities" in the CAPI certificate store:

![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1629369511593/cert202108191416381.png)

**Note:** A mismatch of Root and Intermediate certificates in the relevant repositories will results an inability of a local machine to provide correct certificates on a connection attempt.  

<br />

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
