# Unable to create or view Suspicious Activity Monitoring (SAM) rules in SmartView Monitor on a standalone device

## Product
Security Gateways, SmartView Monitor

## Version
R81.20, R82, R82.10

## Last Modified
2026-07-23

## Symptoms
- Cannot create or fetch Suspicious Activity Monitoring (SAM) rules in SmartView Monitor. Trying to fetch SAM rules in SmartView Monitor returns this error: " _Unable to fetch suspicious Activity rules from: <Gateway name>_".
- Fetching SAM rules from the Security Gateway using the "`fw sam`" command returns: " _sam: <Gateway name>(0/1) failed 'Inhibit Drop Close src ip 1.1.1.1 on <Gateway name>'_".
- Debugging with the command: `fw debug fwd on TDERROR_ALL_ALL=1; tail -F $FWDIR/log/fwd.elg > FWD_sam.txt` repeatedly shows:

" _Could not find info for ...sam_proxy_server..._
_opsec_init_entity_sic: Authentication not initialized..._".
- Using the procedure in [sk127352 - "Unable to fetch Suspicious Activity Rules from : (Gateway Name)" error message](https://support.checkpoint.com/results/sk/sk127352) does not resolve the issue.

## Cause
In a standalone environment, the connections incorrectly open from the Security Gateway instead of from the Security Management Server.

## Solution
This problem was fixed. The fix is included in:
- [Jumbo Hotfix Accumulator for R82.10](https://sc1.checkpoint.com/documents/Jumbo_HFA/R82.10/Default.htm) starting from Take 36
- [Jumbo Hotfix Accumulator for R82](https://sc1.checkpoint.com/documents/Jumbo_HFA/R82/Default.htm) starting from Take 118
- [Jumbo Hotfix Accumulator for R81.20](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm) starting from Take 158

If you choose not to upgrade, Check Point can supply a **Hotfix**. [Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.

A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.

For faster resolution and verification, please collect [CPinfo files](http://supportcontent.checkpoint.com/solutions?id=sk92739) from the Security Management Server and Security Gateways involved in the case.

**Hotfix installation instructions:**

Refer to [sk168597 - How to install a Hotfix](https://support.checkpoint.com/results/sk/sk168597).

#### NOTE
This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.

## Article Properties
Access Level: General

Status: Approved by TAC

Date Created: 2025-11-24

Last Modified: 2026-07-23
