
During regular firewall health check , I found one Check Point firewall cluster has a abnormal virtual memory usage from System Counters – System History view. The cluster is 5600 Security Appliance.
It looks the memory usage is going up significantly recently. There is no recent changes on hardware, software and configuration except normal firewall changes. I am afraid of Check Point gateway will freeze after this counter reached certain high number based on some SKs such as sk66482, sk110362,
sk35496 lists a bunch of methods how to detect memory leak. In my this specific case, the fix was simple, just installed a latest Jumbo Hotfix 205 for R77.30.
Sympotoms:
Here are some screenshots I took from Smartview Monitor
![]() ![]() |
| System Memory Going High for last 30 days |
![]() ![]() |
| System Memory Going High for six months |
Solution:
Suggestion I got from Check Point is to apply latest Jumbo Hotfix 205 rather than existing Jumbo Hotfix 159.
![]() ![]() | |
|
You may get some issues while installing your new patches/hotfixes. Here is what I met.
![]() ![]() |
| Patch/Hotfix Installation Failed |
I have to unintall Jumbo Hotfix 159 first. Unfortunately, uninstall Jumbo Hotfix 159 also failed from CPUSE.
![]() ![]() |
| Uninstall Hotfix Failed |
I had another post regarding “How to uninstall a CheckPoint Hotfix after a failed installation“. But in this case, the cause is hotfix for sk112829 is installed after Jumbo Hotfix 159 applied. After I uninstalled Hotfix for SK112829, uninstall Jumbo Hotfix 159 was able to complete. Also Installation Jumbo Hotfix 205 was successful too.
![]() ![]() |
| Uninstall Successed |
Waited a couple of days , I checked the used virtual memory is normal now.
![]() ![]() |
| Memory High Issue Fixed |
Reference:
- Security Gateway freezes due to memory leak (simi_mem_halloc , uc_hits_htab , uc_cache_htab)
- Memory leak on loaded Security Gateway with UserCheck rules in the policy
- Memory usage constantly increases on Security Gateway without results from memory leak detection procedure (sk35496)
本文介绍了一次定期防火墙健康检查中发现的Checkpoint防火墙集群虚拟内存使用异常情况。通过对系统计数器历史记录的观察,发现内存使用率近期显著增加。除了常规防火墙变更外,未进行其他硬件、软件配置变动。最终通过安装最新的Jumbo Hotfix 205解决了内存泄漏问题。







1万+

被折叠的 条评论
为什么被折叠?



