> Source: [sk41044](https://support.checkpoint.com/results/sk/sk41044)

# sk41044 - FireWall-1 Error:SADeleteall:failed to stat tab:IKE_SA_table

| Property | Value |
|----------|-------|
| Solution ID | sk41044 |
| Date Created | 2009-04-19 |
| Last Modified | 2013-12-18 |
| Technical Level | General |

## Symptoms

- The VPN daemon will not start upon cpstart. Following error messages displayed when running vpnd in debug mode:

SADeleteall: failed to stat tab:IKE_SA_table  

VPN_cmail: failed to initialize resolver

## Solution

This error indicates that during the policy compilation, 'IKE_SA' table definition was not present in the local.ft file; as a result IKE_SA table was not built on the enforcement module.

VPND will not come up if this table is not present. When using traditional mode security policy, make sure either the Encrypt rules are defined or in the "Global Properties-VPN Advance -Enable decrypt on accept" option is checked.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
