> Source: [sk83181](https://support.checkpoint.com/results/sk/sk83181)

# sk83181 - Remote Access VPN Clients that are authenticated by LDAP, are not able to connect due to VPN certificate validation errors

| Property | Value |
|----------|-------|
| Solution ID | sk83181 |
| Date Created | 2012-08-23 |
| Last Modified | 2017-10-25 |
| Technical Level | Advanced |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X |

## Symptoms

- * Remote Access VPN Clients use external LDAP authentication server. Randomly, establishing of some of the VPN tunnels fails due to VPN Security Gateway issue with fetching the CRL of the CA, which issued user certificates.  

* Clearing CRL cache ('`vpn crl_zap`') on VPN Security Gateway, or installing the policy onto VPN Security Gateway does not always help.

## Cause

Certificate validation timeouts are exceeded.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
