- Products
- Learn
- Local User Groups
- Partners
- More
Quantum Spark Management Unleashed!
Check Point Named Leader
2025 Gartner® Magic Quadrant™ for Hybrid Mesh Firewall
HTTPS Inspection
Help us to understand your needs better
CheckMates Go:
SharePoint CVEs and More!
I’ve noticed a high number of RX drops on one of the interfaces.
Is it possible to reset these counters?
If so, how can I do that?
Diagnosing RX-DRP issues became significantly more complicated in Gaia 3.10 when the counter's meaning changed. Here are the relevant pages from my Gateway Performance Optimization Course detailing how to assess whether or not you should do something about them:
the issue it solved by replacing the cable, now there is not any latency
I don't recall seeing any newer guidance on this.
For a cluster you can failover then perform:
ifdown ethX; ifup ethX
Thank you, if i do set interface off and on, it's the same right?
The technique Chris posted is the only way I know how. Note that it does technically cause an outage on the interface; however, if you execute the command as a single command with a semicolon, the outage is extremely brief. Not all RX-DRPs are loss of frames the firewall should have processed, some of them were probably "junk" frames the firewall can't process anyway. See sk166424: Number of RX packet drops on interfaces increases on a Security Gateway R80.30 and higher ...
Does HCP health check report also complain about the rx drops? are there any performance issues on the system?
What is the current value? ethtool -g eth1
yes, hcp report complain about rx drop, yes on the system the latency it's very solw
You most probably have a receiving side issue on that interface that needs to be investigated and fixed. Resetting counters will not fix it, it can only mask the issue for a period of time.
Ok, share some details please. Check with cpview the errors and drops, make screenshot, check next day again. If they increase a lot share current buffer value.
clish
set interface Lan3 rx-ringsize 1024
save config
exit
ethtool -g Lan3
# ethtool -g Lan1
Ring parameters for Lan1:
Pre-set maximums:
RX: 4096
RX Mini: 0
RX Jumbo: 0
TX: 4096
Current hardware settings:
RX: 256
RX Mini: 0
RX Jumbo: 0
TX: 1024
the issue it solved by replacing the cable, now there is not any latency
Are you sure replacing the cable solved your RX-DRPs, not RX-ERR? A cable should not cause buffering misses (RX-DRP) unless the cable was the wrong type and linked up at a much slower speed than it should, which would actually be more likely to cause RX-OVR. Having a hard time accepting that replacing a cable fixed just RX-DRPs.
When the customer reported an issue with network connectivity, I checked the netstat -ni output and noticed the following:
RX-DRP: 34,137,237
RX-OK: 411,649,242
RX-ERR: Around 150, which I assume isn't significant.
and the ratio it's very high please see here:
https://community.checkpoint.com/t5/General-Topics/Ifconfig-dropped-explanation/td-p/24447
after we change the cable now seems everything works fine
Hi
Can you check the interrupts on the interfaces ? I think the box is just overloaded....
Diagnosing RX-DRP issues became significantly more complicated in Gaia 3.10 when the counter's meaning changed. Here are the relevant pages from my Gateway Performance Optimization Course detailing how to assess whether or not you should do something about them:
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
User | Count |
---|---|
9 | |
7 | |
6 | |
6 | |
5 | |
5 | |
5 | |
5 | |
4 | |
4 |
Fri 12 Sep 2025 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 38: Harmony Email & CollaborationTue 16 Sep 2025 @ 02:00 PM (EDT)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - AmericasWed 17 Sep 2025 @ 04:00 PM (AEST)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - APACWed 17 Sep 2025 @ 03:00 PM (CEST)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - EMEAThu 18 Sep 2025 @ 03:00 PM (CEST)
Bridge the Unmanaged Device Gap with Enterprise Browser - EMEAFri 12 Sep 2025 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 38: Harmony Email & CollaborationTue 16 Sep 2025 @ 02:00 PM (EDT)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - AmericasWed 17 Sep 2025 @ 04:00 PM (AEST)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - APACWed 17 Sep 2025 @ 03:00 PM (CEST)
Securing Applications with Check Point and AWS: A Unified WAF-as-a-Service Approach - EMEAThu 18 Sep 2025 @ 03:00 PM (CEST)
Bridge the Unmanaged Device Gap with Enterprise Browser - EMEAAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY