Gateway's SIC certificate is getting revoked every few days Technical Level
  • In Management HA environment, SIC certificate on Gateway is getting revoked every few days.

  • CPD debug from the Gateway shows:

    fwca_read_crl_file: failed to open file
    read_crl: failed to read mgmt crl
    fwCRL::fwCRL: - 29 revoked

  • Audit logs from revocation time shows: "Multiple active Security Management Servers detected: <Management Name> <Management Name>"

Both Security Management servers are on active state. Due to that, every configuration change on one member will override the database of the other.

