Sometimes the firewall simply needs to re-sync its local database. In the CLI, run: commit force . 2. Clear Existing Certificate State (CLI)