The information you are about to copy is INTERNAL!
DO NOT share it with anyone outside Check Point.
"No valid certificate with acceptable DN found in the Keychain" pop-up in Endpoint Security Client / Endpoint Security VPN on Mac OS X when connecting with CAPI certificate
Technical Level
Solution ID
sk98466
Technical Level
Product
Endpoint Security Client
Version
E80.41 (EOL), E80.42 (EOL), E80.50 (EOL)
OS
macOS
Platform / Model
All
Date Created
05-Feb-2014
Last Modified
19-Apr-2017
Symptoms
User fails to connect with CAPI certificate on Mac OS X:
"No valid certificate with acceptable DN found in the Keychain".
The user is attempting to connect to the VPN using a *.p12 certificate (which was imported into the Keychain) which was issued by Microsoft CA with the following DN:
Email=...,CN=...,OU=...,OU=...,OU=...,DC=...,DC=...,DC=...,SerialNum=...
Cause
Endpoint Security Client is searching for "SerialNumber" in the DN. However, the DN in the certificate contains "SerialNum".