carlopmart a écrit :
Thanks for your response Little Jun, but some observations:

a) this host have 2 GB RAM and when I push the policy, 60% of ram is free. Then it isn't a RAM problem

b) It is a clean R70 SM installation, I don't upgrade anything. My test policy only contains 25 objects and 10 rules. It is a really really small policy to consume 99% cpu when I push the policy.

I have enabled on SM side only management and log. On security gateway I have enabled only firewall and monitoring options: no VPN, no IPS, no QoS. Maybe the problem is monitoring???

 Somebody have tried to limit cpu usage for fwm??
Did you try to run the fwm load from the command line ?

You can also run the strace with the fwm load command and see what's going on.




Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================

Reply via email to