sk182825 - The interface link state is down on Security Gateway in SecureXL User Mode (UPPAK) working with Jumbo Frames
The interface link state is down on Security Gateway in SecureXL User Mode (UPPAK) working with Jumbo Frames
Product
Security Gateways
Version
R81.20
OS
Gaia
Platform
9000
Last Modified
2024-11-18
Symptoms
- The interface link state is down on Quantum Force 9000 appliances in SecureXL User Mode (UPPAK) when working with Jumbo Frames.
- The /var/log/usim_x86.elg file has many entries for:
[uspace];[tid_1];[UPPAK];cpfifo_port_allocate_mbufs: DPDK CPFIFO Out of mbuf
[uspace];[tid_1];[UPPAK];m_get: allocation failure
- The command:
# ipsctl -a | egrep 'rte.*mbuf'
Returns a very low number of mbufs.
Cause
When working with Jumbo Frames in SecureXL User Mode (UPPAK) on Quantum Force 9000 series appliances, incorrect memory allocation calculations may cause intermittent link failures.
Solution
This problem was fixed. The fix is included in:
- Check Point Quantum R82
- Jumbo Hotfix Accumulator for R81.20 starting from Take 90
If you choose not to upgrade, Check Point can supply a Hotfix.
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.
For faster resolution and verification, please collect CPinfo files from the Security Management and Security Gateways involved in the case.
Hotfix installation instructions:
Refer to sk168597 - How to install a Hotfix.
NOTE
This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.
Article Properties
Access Level: General Status: Approved by TAC Date Created: 2024-11-12 Last Modified: 2024-11-18