<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic #fw ctl zdebug drop, strange log in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/fw-ctl-zdebug-drop-strange-log/m-p/95880#M18876</link>
    <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;Hi to all, anyone familiar with this drop (fw ctl zdebug + drop)&lt;/P&gt;&lt;P&gt;When I ping thru VPN s2s I get latency on the traffic (around 360ms on each ping)&lt;/P&gt;&lt;P&gt;On #fw ctl zdebug + drop is see this drop continually.&lt;BR /&gt;;[cpu_1];[fw4_0];update_narrowed_mspi_on_enc_opaque: Connection &amp;lt;dir 1, 192.168.1.1:2 -&amp;gt; 172.16.20.10:0 IPP 1&amp;gt; &lt;STRONG&gt;does not have an opaque;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;anyone is familiar with this?&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
    <pubDate>Wed, 02 Sep 2020 18:23:20 GMT</pubDate>
    <dc:creator>Pavel88</dc:creator>
    <dc:date>2020-09-02T18:23:20Z</dc:date>
    <item>
      <title>#fw ctl zdebug drop, strange log</title>
      <link>https://community.checkpoint.com/t5/General-Topics/fw-ctl-zdebug-drop-strange-log/m-p/95880#M18876</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;Hi to all, anyone familiar with this drop (fw ctl zdebug + drop)&lt;/P&gt;&lt;P&gt;When I ping thru VPN s2s I get latency on the traffic (around 360ms on each ping)&lt;/P&gt;&lt;P&gt;On #fw ctl zdebug + drop is see this drop continually.&lt;BR /&gt;;[cpu_1];[fw4_0];update_narrowed_mspi_on_enc_opaque: Connection &amp;lt;dir 1, 192.168.1.1:2 -&amp;gt; 172.16.20.10:0 IPP 1&amp;gt; &lt;STRONG&gt;does not have an opaque;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;anyone is familiar with this?&lt;/P&gt;&lt;P&gt;Thank you.&lt;/P&gt;</description>
      <pubDate>Wed, 02 Sep 2020 18:23:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/fw-ctl-zdebug-drop-strange-log/m-p/95880#M18876</guid>
      <dc:creator>Pavel88</dc:creator>
      <dc:date>2020-09-02T18:23:20Z</dc:date>
    </item>
    <item>
      <title>Re: #fw ctl zdebug drop, strange log</title>
      <link>https://community.checkpoint.com/t5/General-Topics/fw-ctl-zdebug-drop-strange-log/m-p/95881#M18877</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/47116"&gt;@Pavel88&lt;/a&gt;,&lt;/P&gt;
&lt;P&gt;MSPI is a tunnel identifier. It is a local counter that uniquely identifies a tunnel on the given machine. MSPI is an index to the MSA (Meta SA), which contains fields common to all SAs with the same peer, methods, and IDs. When a new IPsec tunnel is established, a new MSPI is created by it, and it gets the next free MSPI number. The MSPI counter is then increased.&lt;/P&gt;
&lt;P&gt;I think there is something incorrect with the MSPI update in the encryption process.&lt;/P&gt;
&lt;P&gt;I would open a TAC case.&lt;/P&gt;</description>
      <pubDate>Wed, 02 Sep 2020 18:49:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/fw-ctl-zdebug-drop-strange-log/m-p/95881#M18877</guid>
      <dc:creator>HeikoAnkenbrand</dc:creator>
      <dc:date>2020-09-02T18:49:17Z</dc:date>
    </item>
    <item>
      <title>Re: #fw ctl zdebug drop, strange log</title>
      <link>https://community.checkpoint.com/t5/General-Topics/fw-ctl-zdebug-drop-strange-log/m-p/95917#M18890</link>
      <description>&lt;P&gt;Open a TAC case, this is a clear support issue&lt;/P&gt;</description>
      <pubDate>Thu, 03 Sep 2020 06:33:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/fw-ctl-zdebug-drop-strange-log/m-p/95917#M18890</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2020-09-03T06:33:33Z</dc:date>
    </item>
  </channel>
</rss>

