<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Connection peak exceeded on vsx in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188556#M34718</link>
    <description>&lt;P&gt;Ah yes, right, I totally forgot about that : - (. I recall back in R77.30, was the same way, pretty sure.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 03 Aug 2023 11:59:59 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-08-03T11:59:59Z</dc:date>
    <item>
      <title>Connection peak exceeded on vsx</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188494#M34706</link>
      <description>&lt;P&gt;Hi mates&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I'm getting a 'Vsx firewall peak connection exceeded' warning. It has given me this warning twice in two days. The limit is set to 24,000. How can we increase this limit on VSX?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Aug 2023 17:46:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188494#M34706</guid>
      <dc:creator>starmen2000</dc:creator>
      <dc:date>2023-08-02T17:46:03Z</dc:date>
    </item>
    <item>
      <title>Re: Connection peak exceeded on vsx</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188502#M34707</link>
      <description>&lt;P&gt;You can modify the maximum number of connections in a VS by editing the VS, selecting Optimizations and entering the desired number.&lt;/P&gt;&lt;P&gt;Press OK, then install the policy.&lt;/P&gt;</description>
      <pubDate>Wed, 02 Aug 2023 19:52:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188502#M34707</guid>
      <dc:creator>Alex-</dc:creator>
      <dc:date>2023-08-02T19:52:24Z</dc:date>
    </item>
    <item>
      <title>Re: Connection peak exceeded on vsx</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188508#M34708</link>
      <description>&lt;P&gt;Below is what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/10384"&gt;@Alex-&lt;/a&gt;&amp;nbsp;is referring to. I would strongly suggest you choose automatic option, as gateway itself calculates the amount handles based on cpu/memory.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot_1.png" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21960i890A0D872D8A14A7/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Screenshot_1.png" alt="Screenshot_1.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Wed, 02 Aug 2023 23:05:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188508#M34708</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-02T23:05:37Z</dc:date>
    </item>
    <item>
      <title>Re: Connection peak exceeded on vsx</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188523#M34714</link>
      <description>&lt;P&gt;On VSX, this option is grayed out and you need a manual entry, So if 24K peaks every now and then you could go to 30 or 40K and monitor with either HCP or vsx stat -l.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Aug 2023 05:50:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188523#M34714</guid>
      <dc:creator>Alex-</dc:creator>
      <dc:date>2023-08-03T05:50:01Z</dc:date>
    </item>
    <item>
      <title>Re: Connection peak exceeded on vsx</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188556#M34718</link>
      <description>&lt;P&gt;Ah yes, right, I totally forgot about that : - (. I recall back in R77.30, was the same way, pretty sure.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 03 Aug 2023 11:59:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188556#M34718</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-08-03T11:59:59Z</dc:date>
    </item>
    <item>
      <title>Re: Connection peak exceeded on vsx</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188588#M34720</link>
      <description>&lt;P&gt;I would bump it to 250k or more. The point of the hard connections table limit is to protect other VSs on the system from resource exhaustion attacks against one VS. That is, if someone tries to fill up the connections table of your Internet VS, they won't also take down your interior VSs or the VS handling a second Internet connection. Ever since R67 (the first version to move to the 2.6 kernel), the connections table has been able to use many gigabytes of space, so the practical limit for the whole box is generally in the tens of millions of connections.&lt;/P&gt;
&lt;P&gt;Unless you're running a hundred VSs on a box, or you're running with very little RAM, tiny tables don't protect you from anything. Instead, they just shoot you in the foot like this over and over as load increases.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Aug 2023 14:54:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188588#M34720</guid>
      <dc:creator>Bob_Zimmerman</dc:creator>
      <dc:date>2023-08-03T14:54:10Z</dc:date>
    </item>
    <item>
      <title>Re: Connection peak exceeded on vsx</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188612#M34722</link>
      <description>&lt;P&gt;The easiest way to monitor is via SNMP.&lt;/P&gt;
&lt;P&gt;I've setup a table which combines Connection Limit, Current connections &amp;amp; Peak Connections.&amp;nbsp; In this way you can monitor over time.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Aug 2023 20:44:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Connection-peak-exceeded-on-vsx/m-p/188612#M34722</guid>
      <dc:creator>genisis__</dc:creator>
      <dc:date>2023-08-03T20:44:42Z</dc:date>
    </item>
  </channel>
</rss>

