<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Port re-use issue on R80.20 in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-re-use-issue-on-R80-20/m-p/128389#M18699</link>
    <description>&lt;P&gt;The SK looks related to this issue.&lt;/P&gt;</description>
    <pubDate>Mon, 30 Aug 2021 20:50:05 GMT</pubDate>
    <dc:creator>Muazzam</dc:creator>
    <dc:date>2021-08-30T20:50:05Z</dc:date>
    <item>
      <title>Port re-use issue on R80.20</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-re-use-issue-on-R80-20/m-p/128377#M18696</link>
      <description>&lt;P&gt;Hardware: 13800 or 23500&lt;BR /&gt;OS: GAIA R80.20 T103 or T161&lt;BR /&gt;Blades: Only FW&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Overall utilization of the firewall is low, throughput around 100-200 Mbps, cores mostly in single digits.&lt;BR /&gt;Interface drops: Some drops but less than 0.001%&lt;/P&gt;&lt;P&gt;We have similar issues on multiple firewalls but not able to find any clear SK on our issue.&lt;BR /&gt;What we found is that firewall use the same NAT source port before a previous connection has completely expires and this cause a drop on the vendor side among other symptoms we have seen.&lt;/P&gt;&lt;P&gt;There are other factors that we are considering as the traffic goes from end-user to proxy to load balancer, multiple NAT's involved, finally traffic goes to out to the external vendor.&lt;/P&gt;&lt;P&gt;Just wondering if anyone has seen the port NAT source port re-use issue?&lt;BR /&gt;I heard that R80.40 works in a different way for allocating the NAT ports?&lt;/P&gt;</description>
      <pubDate>Mon, 30 Aug 2021 15:55:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-re-use-issue-on-R80-20/m-p/128377#M18696</guid>
      <dc:creator>Muazzam</dc:creator>
      <dc:date>2021-08-30T15:55:34Z</dc:date>
    </item>
    <item>
      <title>Re: Port re-use issue on R80.20</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-re-use-issue-on-R80-20/m-p/128381#M18697</link>
      <description>&lt;P&gt;I have a feeling below might be your solution...but if not, you may wish to contact TAC possibly and confirm.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk24960" target="_blank" rel="noopener"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk24960&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 30 Aug 2021 17:58:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-re-use-issue-on-R80-20/m-p/128381#M18697</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-08-30T17:58:01Z</dc:date>
    </item>
    <item>
      <title>Re: Port re-use issue on R80.20</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-re-use-issue-on-R80-20/m-p/128389#M18699</link>
      <description>&lt;P&gt;The SK looks related to this issue.&lt;/P&gt;</description>
      <pubDate>Mon, 30 Aug 2021 20:50:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Port-re-use-issue-on-R80-20/m-p/128389#M18699</guid>
      <dc:creator>Muazzam</dc:creator>
      <dc:date>2021-08-30T20:50:05Z</dc:date>
    </item>
  </channel>
</rss>

