> Source: [sk185187](https://support.checkpoint.com/results/sk/sk185187)

# sk185187 - Capsule VPN clients fail to connect with Error 2250 when using RADIUS authentication and RADIUS Office Mode IP assignment

| Property | Value |
|----------|-------|
| Solution ID | sk185187 |
| Date Created | 2026-07-23 |
| Last Modified | 2026-07-24 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10 |

## Symptoms

- * After an upgrade of the Security Gateway to R82.10, Capsule VPN clients fail to establish a VPN connection.

  The Windows clients displays: `"Error Code: 2250"`
* The issue can affect:  
  * Capsule VPN for Windows
  * Capsule VPN for Android
  * Capsule VPN for iOS
* The issue occurs only when all of these are configured:  
  * Capsule VPN Remote Access
  * Authentication Server = RADIUS
  * Office Mode IP Assignment = RADIUS
  * The VPNRAD daemon is enabled
* Environments that use local users, LDAP authentication, or Office Mode IP assignment from the Security Gateway are not affected.

## Cause

When the VPNRAD daemon is enabled, the Remote Access connection processing is divided between the VPNRAD and VPND daemons.

Authentication completes in VPNRAD, which stores the authenticated user information in the VPNRAD local user cache.

Later in the connection flow, VPND continues processing the Capsule VPN session. During RADIUS Office Mode IP assignment, VPND cannot retrieve the authenticated user information that is required to complete the Office Mode IP allocation process. As a result, the VPN connection fails and the client displays `Error 2250`.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
