> Source: [sk65764](https://support.checkpoint.com/results/sk/sk65764)

# sk65764 - How to reset SIC

| Property | Value |
|----------|-------|
| Solution ID | sk65764 |
| Date Created | 2011-11-09 |
| Last Modified | 2025-07-20 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20, R81 (EOS) |
| OS | Gaia |

## Solution

**Warnings:**

* **For VSX Gateways / VSX Cluster Members:**
  * **Before implementing this procedure in a VSX environment, consult [Check Point Support](http://www.checkpoint.com/services/contact/index.html).**
  * **This article applies only to resetting the SIC with an entire VSX Gateway / VSX Cluster Member.** **To reset SIC with a specific Virtual System, refer to [sk34098 - How to reset SIC on a VSX Gateway for a specific Virtual System](https://support.checkpoint.com/results/sk/sk34098).**
  * **For Scalable Platforms in the VSX mode, refer to [sk155472 - How to reset SIC on a Scalable Platform in the VSX mode](https://support.checkpoint.com/results/sk/sk155472).**
* **This article applies only to resetting the SIC in a distributed environment, where a Management Server and all other managed servers (Security Gateway, Log Server, SmartEvent Server, and so on) run on different servers.**

*** ** * ** ***

### Part 1 - Perform this procedure on the Security Gateway / Log Server / SmartEvent Server

Show / Hide the instructions for a Security Gateway that runs Gaia OS  
> **Important:**
>
> * The Security Gateway will run the default policy until a policy is installed. It is recommended to install policy as soon as the SIC is reset on your Management Server.
> * In a VSX environment, a Policy Installation is required on VS0, otherwise policy installation will fail on other Virtual Systems.
>
> **Procedure:**
>
> 1. Connect to the command line on the Security Gateway / Cluster member / Log Server / SmartEvent Server (over SSH, or console).
>
>    **Note:** For a cluster, perform this procedure on Standby member first and then on the Active.
> 2. Start the Check Point Configuration menu:  
>    **`[Expert@HostName]# cpconfig`**
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_1.jpg)
> 3. Enter the corresponding number of the option "**Secure Internal Communication**" and press "Enter".
>
>    Example screenshot from a Security Gateway:
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_2.jpg)
> 4. When prompted if you would like to re-initialize the communication, enter "**y**" and then press "Enter":
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_3.jpg)
> 5. When prompted if you are sure, enter "**y**" and press "Enter":
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_4.jpg)
> 6. When prompted, enter the new "SIC" key.  
>    Enter the key and press "Enter".  
>    You must enter the same key in both fields.  
>    You must enter this key later in SmartConsole.
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_5.jpg)
> 7. Wait until you see that the communication was "**successfully initialized** ".  
>    Enter the corresponding number of the option "**Exit** " and press "Enter".  
>
>    Example from a Security Gateway:
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_6.jpg)
> 8. The Check Point processes are restarted.  
>    This takes several minutes.  
>    You are returned to the command line.
>
>    This ends the process on the Security Gateway / Cluster Member / Log Server / SmartEvent Server side:
>
![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_7.jpg)  
Show / Hide the instructions for a Quantum Spark Appliance that runs Gaia Embedded OS  
> **Important:**
>
> * The Quantum Spark Gateway will unload the central policy and apply only the local policy. It is recommended to install policy as soon as the SIC is reset on your Management Server.
>
> You can reset SIC in WebUI or in Gaia Clish.
>
> **Resetting SIC in WebUI:**
>
> 1. Connect to the WebUI.
>
> 2. From the left tree, click **Home**.
>
> 3. In the middle pane, expand the section **Overview** and click **Security Management**.
>
> 4. In the **Security Management Server** section, click **Advanced**.
>
> 5. Click **Reinitialize Trusted Communication**.
>
> 6. A warning message appears.
>
> 7. Click **Yes**.
>
> 8. The appliance unloads the central policy and applies only the local policy.
>
> **Resetting SIC in Gaia Clish**
>
> 1. Connect to the command line on the Quantum Spark Appliance.
>
> 2. If your default shell is the Expert mode, go to Gaia Clish:
>
>    `[Expert@HostName]# clish`
> 3. Run:
>
>    `set sic_init password <Activation-Key>`
>
>    You must enter this key later in SmartConsole in the Security Gateway object (in Part 2 below).
> 4. The appliance unloads the central policy and applies only the local policy.
>
>    Warning - If you are connected over SSH, your session may disconnect.

### Part 2 - Perform this procedure on the Management Server

Show / Hide this section  
> 1. Connect with SmartConsole to Security Management Server / Domain Management Server that manages the Security Gateway / Cluster / Log Server / SmartEvent Server object.
>
> 2. From the left navigation panel, click **Gateways \& Servers**.
>
> 3. Open the Security Gateway / Cluster Member / Log Server / SmartEvent Server object, for which you reset the SIC in "Part 1":
>
>    Example of a Security Gateway object:
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/sk65764_R80_11909180421.PNG)
> 4. Near the **Secure Internal Communication** field, click the "**Communication**" button:
>
>    **Note:** For a cluster, perform this procedure on each cluster member. First, on the Standby members, and then on the Active member.
> 5. Click the "**Reset**" button:
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/sk65764_R80_21909180434.PNG)
> 6. Click "**Yes**" to confirm:
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_11.jpg)
> 7. Click "**OK**" in the warning popup (appears for a Security Gateway / Cluster Member):
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_12.jpg)
> 8. In the top **Platform** field, select the correct value.  
>    Enter the same activation key you entered on the Security Gateway / Cluster Member / Log Server / SmartEvent Server.  
>    Click "**Initialize**".
>
>    Example:  
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_13.jpg)
> 9. After the SIC is initialized, the **Certificate state** field must show "**Trust established**":
>
>    ![](https://sc1.checkpoint.com/sc/SolutionsStatics/sk65764/Reset_Sic_14.jpg)
> 10. Click "**OK** " to close the **Trusted Communication** window.
>
> 11. Click "**OK**" to close the Security Gateway / Cluster Member / Log Server / SmartEvent Server object.
>
> 12. Apply the changes you made in SmartConsole:
>
>     * If you reset SIC with a Security Gateway / Cluster Member object, then install the applicable Access Control policy on the Security Gateway / Cluster object.
>
>     * If you reset SIC with a Log Server / SmartEvent Server, then click the **Menu** button (top left corner) \> click **Install Database** \> select all objects in this window \> click **Install**.

**Notes:**

* The Security Gateway / Cluster Member will run the default policy until a policy is installed. It is recommended to install policy as soon as the SIC has been reset.
* In a VSX environment, a Policy Installation is required on VS0, otherwise policy installation will fail on other Virtual Systems.

*** ** * ** ***

**Related solutions:**

* [sk30579 - Troubleshooting SIC](https://support.checkpoint.com/results/sk/sk30579)
* [sk34098 - How to reset SIC on a VSX Gateway for a specific Virtual System](https://support.checkpoint.com/results/sk/sk34098)
* [sk155472 - How to reset SIC on a Scalable Platform in the VSX mode](https://support.checkpoint.com/results/sk/sk155472)
* [sk37422 - How to reset SIC on CMA / Domain Management Server in Multi-Domain Server High Availability environment](https://support.checkpoint.com/results/sk/sk37422)
* [sk36359 - How to reset SIC between CLM / Domain Log Server and the respective CMA / Domain Management Server](https://support.checkpoint.com/results/sk/sk36359)
* [sk161532 - How to reset SIC on a Centrally Managed Quantum Spark Appliance](https://support.checkpoint.com/results/sk/sk161532)[](https://support.checkpoint.com/results/sk/sk14532)

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
