Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Exonix
Advisor

Increasing the Logging Level to 3950

Hello everyone!

We are using two 3950 firewalls in a cluster, managed via CloudGuard Cloud-1, with ISP Redundancy enabled.

Recently, we experienced an issue where Internet access stopped working. In the logs, I first noticed that, for an unknown reason, an ISP failover had occurred. Later, I found that there had been high CPU utilization, which most likely caused the ISP failover. However, I was unable to determine what caused the high CPU load.

Is it possible to increase the firewall logging level without significantly affecting its performance, so that we can collect more information and better identify the cause if the issue occurs again?

Thank you!

0 Kudos
1 Reply
PhoneBoy
Admin
Admin

Logging, by it's very nature, will increase load.
You might start by reviewing historical data from HCP.
You can also look at historical data in cpview.

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events