sk181148 - Policy uninstall is not possible. The 'fw amw unload' command does not disable the Threat Prevention blades
Policy uninstall is not possible. The 'fw amw unload' command does not disable the Threat Prevention blades
Product
Anti-Bot, Anti-Virus, IPS
Version
R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20, R82
Last Modified
2024-10-22
Symptoms
Customer needs to disable Threat Prevention inspection on traffic from the Firewall. Due to High CPU utilization, a policy installation issue, a communication issue with the Management Server or some other issue - it is not possible to disable / uninstall the Threat Prevention policy/blades from SmartConsole.
Running the fw amw unload command from the Firewall does not disable Threat Prevention completely. Blades still inspect traffic on the Firewall and CPU/load on the Firewall is not reduced.
Solution
This problem was fixed. The fix is included in:
- Jumbo Hotfix Accumulator for R81.20 starting from Take 43
- Jumbo Hotfix Accumulator for R81.10 starting from Take 131
- Jumbo Hotfix Accumulator for R81 starting from Take 89
- Jumbo Hotfix Accumulator for R80.40 starting from Take 211
If you choose not to upgrade, Check Point can supply a Hotfix. Contact Check Point Support to get a Hotfix for this issue.
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.
For faster resolution and verification, please collect CPinfo files from the Security Management Server and Security Gateways involved in the case.
Hotfix installation instructions:
Refer to sk168597 - How to install a Hotfix.
NOTE
This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.
Article Properties
Access Level
General
Status
Approved by TAC
Date Created
2023-06-22
Last Modified
2024-10-22