sk180897 - Remote CPM server user exceeded session limit (100). Logins from remote clients are prohibited.
Remote CPM server user exceeded session limit (100). Logins from remote clients are prohibited.
Product: Multi-Domain Security Management
Version: R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20
OS: Gaia
Platform: Open Server, Smart-1
Last Modified: 2023-07-30
Symptoms
- $FWDIR/log/cpm.elg shows:
[date, time],737 ERROR com.checkpoint.management.web_services.dleserver.internal.ActionCannotBeExecutedExceptionMapper.map:9 [qtp1068582505-11877832]: You have reached the maximum number of active sessions. Ask another administrator to discard or publish some of your sessions. See sk113955 for more details and other recovery options.
[date, time],807 ERROR com.checkpoint.management.dleserver.coresvc.internal.WorkSessionMgmtSvcImpl.verifyExceededOpenSessionsLimit:3482 [qtp1068582505-11869846]: Number of occupied Object Store Session Entities for username Remote CPM Server and domainId b462757d-6047-5840-b479-0c0d37abb3aa ,exceeded it's limit (100). Logins from remote clients will be prohibited!!!
- Login to the Multi-Domain Server through SmartConsole times out.
Cause
CPM relay fails because the administrator of the remote CPM server has 100 open sessions on the target machine.
Solution
This problem was fixed. The fix is included in:
- Jumbo Hotfix Accumulator for R81.20 starting from Take 14
- Jumbo Hotfix Accumulator for R81.10 starting from Take 110
- Jumbo Hotfix Accumulator for R81 starting from Take 87
- Jumbo Hotfix Accumulator for R80.40 starting from Take 198
If you choose not to upgrade, Check Point can supply a Hotfix. Contact Check Point Support to get a Hotfix for this issue. Support Engineer will make sure the Hotfix is compatible with your environment before providing it.
For faster resolution and verification, collect these files:
- CPinfo file from the Management Server involved in the case.
- CPinfo file from the Security Gateway / each Cluster Member involved in the case.
Hotfix installation instructions:
Refer to sk168597 - How to install a Hotfix.
NOTE
This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.