High (softirq) CPU usage with Checkpoint NGX R65 with VLAN's, Less than optimal performance.When running with SecureXL enabled on Checkpoint Firewall NGX R65 and VLAN interfaces, performance is less than optimal. A higher than normal CPU load is seen as a result.
SecureXL is not accelerating the related packets.
Add the following Checkpoint parameter as instructed in the Check Point HFA40 release notes (ID 00355718):
sim_vnd_route=1 to $PPKDIR/boot/modules/simkern.conf
Check Point HFA 40 Release Notes ID 00355718:
Product: Performance Pack with Crossbeam's VND on XOS platform
Category: Accelerated Features
Problem: VND VLAN interfaces on Crossbeam machines running XOS suffer from acceleration
Resolution: This HFA resolves support issues with VND. To ensure stability on XOS platforms, set
sim_vnd_route=1 in the
Imported Document ID: 000019979
Subscribing will provide email updates when this Article is updated. Login is required.