> Source: [sk180499](https://support.checkpoint.com/results/sk/sk180499)

# sk180499 - "vsx_util reconfigure" command fails with "Failed to push certificate to 'NAME_of_OBJECT' Please check connectivity with the gateway and that SIC is initialized."

| Property | Value |
|----------|-------|
| Solution ID | sk180499 |
| Date Created | 2023-01-10 |
| Last Modified | 2023-09-18 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Symptoms

- * The "`vsx_util reconfigure`" command fails on Stage 2:

  > 1/10 : Certificate Revocation \[##############################################\] 100% 00:00:00  
  > 2/10 : Certificate Replacement \[ \] 0 % --:--:--
* The *$FWDIR/log/vsx_util_DATE_AND_TIME.elg* file shows this error:

  > "*Failed to push certificate to 'NAME_of_OBJECT'. Please check connectivity with the gateway and that SIC is initialized.*"

## Cause

Secure Internal Communication (SIC) was set on the Security Gateway and then**initialized** in the SmartConsole VSX object. Trust was established, but when the Management device tries to push a new SIC certificate to the Security Gateway (with the "`vsx_util reconfigure`" command), it recognizes the old SIC certificate, which was created in SmartConsole, and the process fails.

<br />

## Solution

**Procedure**

1. Change the Security Gateway's SIC settings via the command line. Access the **cpconfig** menu and generate a new Secure Internal Communication configuration.
2. Reset SIC within the SmartConsole for the specific object you want to reconfigure. **Do not initiate SIC using the new password generated from the gateway**; instead, push the configuration without SIC in the SmartConsole.
3. Finally run the "`vsx_util reconfigure`" command again.

<br />

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
