> Source: [sk178625](https://support.checkpoint.com/results/sk/sk178625)

# sk178625 - "Unreached OCSP"  "OCSP: could not connect to server" reject and detect logs for traffic that is supposed to work

| Property | Value |
|----------|-------|
| Solution ID | sk178625 |
| Date Created | 2022-04-04 |
| Last Modified | 2023-04-18 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R81.10 (EOS), R81 (EOS) |

## Symptoms

- * There is intermittent connectivity though the Security Gateway from clients to servers.

* When the connection fails, SmartConsole shows a "Detect" log (followed by a "Reject" log).

* Configuring HTTPS Inspection (Inspect or Bypass) does not resolve this issue.

* The "Detect" log shows:

  ```
  
  	 Unreached OCSP.
  	 OCSP: could not connect to server. Make sure the server is up and running.
  ```

  > > ![](https://sc1.checkpoint.com/sc//SolutionsStatics/sk178625/Untitled202204060951311.png)
* Configuring a Custom Application/Site object with regular expressions or wild cards and using it in the rulebase does not resolve this issue.

## Cause

In some scenarios, probing occurs when the TLS Server Name Indication (SNI) is not cached.  

The Security Gateway detects this connection as if it belongs to a different application. As a result, the Security Gateway matches this connection to an incorrect rule.

<br />

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
