> Source: [sk179572](https://support.checkpoint.com/results/sk/sk179572)

# sk179572 - Endpoint Security clients disconnect from the Endpoint Security server

| Property | Value |
|----------|-------|
| Solution ID | sk179572 |
| Date Created | 2022-06-20 |
| Last Modified | 2025-09-24 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | R81.10 (EOS), R81 (EOS) |
| OS | Gaia |
| Platform | Open Server |

## Symptoms

- * Endpoint Security clients disconnect from the Endpoint Security server.

* Similar logs are found in the %ProgramData%\\CheckPoint\\Logs\\cpda.log file:

  root \[debug\] Sent request duration 109ms, Url: https://XX.XX.XX.XX:443/cp/connectionPoint/regep \[CHTTPCall_curl::sendReq_internal\]

  root \[debug\] Send succeeded, Got HTTP response body size: 273 bytes \[CHTTPCall_curl::sendReq_internal\]

  root \[info \] HTTP response code: 500 \[CHTTPCall_curl::sendReq_internal\]

  root \[debug\] Request sent using local ip 192.168.188.90 \[UpdateLocalIp\]

  root \[error\] Unexpected HTTP response code: 500 \[CHTTPCall_curl::sendReq_internal\]

  root \[error\] Response without escape chars (possible truncated): 
  **500 Proxy Error**

  **Proxy Error**
  ===============

  **The proxy server could not handle the request
  Reason: **Error during SSL Handshake with remote server**
  <br />**

\[CHTTPCall_curl::sendReq_internal\]

<br />

* Similiar logs are found in the Endpoint Security server $UEPMDIR/logs/apache_error.log:

  \[ssl:error\] \[PID\] \[remote x.x.x.x:443\] AH02039: Certificate Verification: Error (10): certificate has expired

  \[proxy:error\] \[PID\] \[client y.y.y.y:54274\] AH00898: **Error during SSL Handshake with remote server returned by /cp/connectionPoint/regep**

* Checking the proxy_ca.pem certificate validation via SSH on the Endpoint Security server, it is expired:

  cpopenssl x509 -in $UEPMDIR/engine/conf/ssl/proxy_ca.pem -text \| grep Not

## Cause

The proxy_ca.pem certificate is expired.

## Solution

[Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.

A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.  
For faster resolution and verification, collect [Endpoint Security server log](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk158572&partition=Advanced&product=Endpoint) files from the server involved in the case.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
