> Source: [sk184383](https://support.checkpoint.com/results/sk/sk184383)

# sk184383 - "Unreached OCSP" logs in SmartConsole 

| Property | Value |
|----------|-------|
| Solution ID | sk184383 |
| Date Created | 2025-12-09 |
| Last Modified | 2025-12-11 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82, R81.20, R81.10 (EOS) |

## Symptoms

- * SmartConsole generates"`Unreached OCSP`" logs for a wide range of different sites in a short period of time. The logs appear in **Logs \& Monitor** \> **Logs** tab. Most of the sites with these logs use the same Online Certificate Status Protocol (OCSP) and Certificate Revocation List (CRL). To verify this, search for the applicable domains and the CRL/OCSP at [SSL Labs](https://www.ssllabs.com/ssltest/).

* A debug of the TLS daemon (WSTLSD ) shows these lines in the `wstlsd.elg` file:

  `
  [wstlsd Gateway ID]@WXXXX[20 Oct 7:09:24] cptls_Validation: m_NameConstraints: validate certificate OK.`  
  `[wstlsd Gateway ID]@WXXXX[20 Oct 7:09:24] cptls_Validation: m_VerifySignatures: validate certificate OK.`  
  `[wstlsd Gateway ID]@WXXXX[20 Oct 7:09:24] cptls_Validation: m_VerifyPath: validate certificate OK.`  
  `[wstlsd Gateway ID]@WXXXX[20 Oct 7:09:24] cptls_Validation: m_EndEntity: validate certificate OK.`  
  `[wstlsd Gateway ID]@WXXXX[20 Oct 7:09:24] cptls_Validation: m_IsRevoked: validation general error 
  `

  <br />

* There are URL errors for the applicable OCSP in the Resource Advisor Daemon (RAD) logs, under `$FWDIR/log/rad_events/rad_flows.csv`.

## Cause

The Security Gateway's HTTP connection to the OCSP server is handled by the RAD process. If RAD encounters an internal error, the OCSP connection may fail. As a result, the WSTLSD process cannot complete the OCSP validation and reports the "`Unreached OCSP`" error.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
