<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic VSX Drop Debugs in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/VSX-Drop-Debugs/m-p/57470#M11564</link>
    <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;We are having CP 23k chassis and running VSX on it. We are also having 3 layer security architecture. Since last 2-3 days users are complaining about major access (intranet or internet etc.) not working and problem is growing further and further. When i performed fw ctl drop debugs on DMZ-VS i encountered below error messages:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;;[vs_7];[tid_0];[fw4_0];fw_log_drop_ex: Packet proto=6 &amp;lt;ip&amp;gt;:64062 -&amp;gt; ,ip&amp;gt;:80 dropped by fw_send_log_drop Reason: Rulebase - ERROR;&lt;BR /&gt;;[vs_7];[tid_0];[fw4_0];[ERROR]: up_rulebase_should_drop_possible_on_SYN: conn dir 0, &amp;lt;ip&amp;gt;:52193 -&amp;gt; ,&amp;lt;ip&amp;gt;:80, IPP 6 required_4_match = 0x100200, not expected required_4_match = 0x100000;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;VS-7 is our DMZ VS. I have tried to google for this error message but there is no useful information available. I have already raised TAC case with Diamond support. But wondering if someone has encountered this kind of issue and can advise what root cause and solution can be?&lt;/P&gt;&lt;P&gt;Any help or information is much appreciated.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Ashish&lt;/P&gt;</description>
    <pubDate>Thu, 04 Jul 2019 15:17:51 GMT</pubDate>
    <dc:creator>Ashish_Shah2</dc:creator>
    <dc:date>2019-07-04T15:17:51Z</dc:date>
    <item>
      <title>VSX Drop Debugs</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VSX-Drop-Debugs/m-p/57470#M11564</link>
      <description>&lt;P&gt;Hello Everyone,&lt;/P&gt;&lt;P&gt;We are having CP 23k chassis and running VSX on it. We are also having 3 layer security architecture. Since last 2-3 days users are complaining about major access (intranet or internet etc.) not working and problem is growing further and further. When i performed fw ctl drop debugs on DMZ-VS i encountered below error messages:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;;[vs_7];[tid_0];[fw4_0];fw_log_drop_ex: Packet proto=6 &amp;lt;ip&amp;gt;:64062 -&amp;gt; ,ip&amp;gt;:80 dropped by fw_send_log_drop Reason: Rulebase - ERROR;&lt;BR /&gt;;[vs_7];[tid_0];[fw4_0];[ERROR]: up_rulebase_should_drop_possible_on_SYN: conn dir 0, &amp;lt;ip&amp;gt;:52193 -&amp;gt; ,&amp;lt;ip&amp;gt;:80, IPP 6 required_4_match = 0x100200, not expected required_4_match = 0x100000;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;VS-7 is our DMZ VS. I have tried to google for this error message but there is no useful information available. I have already raised TAC case with Diamond support. But wondering if someone has encountered this kind of issue and can advise what root cause and solution can be?&lt;/P&gt;&lt;P&gt;Any help or information is much appreciated.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Ashish&lt;/P&gt;</description>
      <pubDate>Thu, 04 Jul 2019 15:17:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VSX-Drop-Debugs/m-p/57470#M11564</guid>
      <dc:creator>Ashish_Shah2</dc:creator>
      <dc:date>2019-07-04T15:17:51Z</dc:date>
    </item>
    <item>
      <title>Re: VSX Drop Debugs</title>
      <link>https://community.checkpoint.com/t5/General-Topics/VSX-Drop-Debugs/m-p/57502#M11569</link>
      <description>&lt;P&gt;Hi Ashish,&lt;BR /&gt;&lt;BR /&gt;I suspect you may have some legacy 'domain' (DNS based) objects that could do with some optimization...&lt;BR /&gt;&lt;BR /&gt;Some options that come to mind:&lt;BR /&gt;- Switch to FQDN objects&lt;BR /&gt;- Remove the legacy 'Domain' objects&lt;BR /&gt;- Revist the rule order&lt;BR /&gt;&lt;BR /&gt;Please continue investigations with TAC and advise regarding the final resolution accordingly - thanks.&lt;BR /&gt;&lt;BR /&gt;Hope this helps.&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Chris&lt;/P&gt;</description>
      <pubDate>Fri, 05 Jul 2019 04:11:48 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/VSX-Drop-Debugs/m-p/57502#M11569</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2019-07-05T04:11:48Z</dc:date>
    </item>
  </channel>
</rss>

