> Source: [sk179671](https://support.checkpoint.com/results/sk/sk179671)

# sk179671 - Capsule Workspace false SSL warning when connecting to gateway with valid certificate

| Property | Value |
|----------|-------|
| Solution ID | sk179671 |
| Date Created | 2022-07-20 |
| Last Modified | 2023-02-27 |
| Technical Level | Advanced |
| OS | Android |

## Symptoms

- When a Capsule Workspace end-user creates a site, the app displays the warning: "Do you trust this server? Trust this server only if you can verify the following details with your IT helpdesk"

## Cause

The intermediate CA is not trusted.  

Running the command `#cpopenssl pkcs12 -in <<cert name?.pfx-nodes` did not indicate that the certificate's file does not contain the full certificate chain. It shows the gateway's server certificate, but intermediate CA or root CA are missing.  
Most browsers complete the chain by themselves if a broad list of CAs is available in their CA bundle. Some Android clients have lesser CA bundles that prevents them from  
completing the chain on their own. For more information on this issue, see <http://stackoverflow.com/questions/11340298/certificate-trusted-on-pc-but-not-in-android>

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
