Support Center > Search Results > SecureKnowledge Details
Gateway's SIC certificate is getting revoked every few days
Symptoms
  • In Management HA environment, SIC certificate on Gateway is getting revoked every few days.

  • CPD debug from the Gateway shows:

    fwca_read_crl_file: failed to open file
    read_crl: failed to read mgmt crl
    fwCRL::fwCRL: - 29 revoked


  • Audit logs from revocation time shows: "Multiple active Security Management Servers detected: <Management Name> <Management Name>"
Cause

Both Security Management servers are on active state. Due to that, every configuration change on one member will override the database of the other.


Solution
Note: To view this solution you need to Sign In .