> Source: [sk182131](https://support.checkpoint.com/results/sk/sk182131)

# sk182131 - Identity Broker "Failed to fetch certificates!" error when running "BrokerCertFetcher"

| Property | Value |
|----------|-------|
| Solution ID | sk182131 |
| Date Created | 2024-03-24 |
| Last Modified | 2024-03-26 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Symptoms

- * When running the command `BrokerCertFetcher`, the outcome indicates a failure with the message "Failed to fetch certificates! $FWDIR/bin/BrokerCertFetcher".
* Cannot run a `curl_cli` to the Gaia portal and access the WebUI of the subscriber. Note - The `curl_cli` operation returned "SSL_ERROR_SYSCALL".
* These symptoms are consistent with those describe [sk115732](https://support.checkpoint.com/results/sk/sk115732).

## Cause

When configured to use port 443, the Gaia portal uses a *Multiportal* infrastructure. This infrastructure manages connections for various portals, such as the Identity Awareness Captive Portal, UserCheck Portal, and Mobile Access Blade Portal, if they are enabled.

Note - The Captive Portal, Identity Awareness, and Mobile Access Blades may not be enabled, yet the Multiportal functionality could still be active.  

In this scenario, the Identity Broker is also integrated with a portal. If there is an issue with the Multiportal functionality, it will impact all associated portals, including the one linked with the Identity Broker.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
