cancel
Showing results for 
Search instead for 
Did you mean: 
Create a Post

CPPCAP - Alternative to tcpdump on Gaia

Are you still running standard Linux tcpdump on your Firewalls? Did you know it can cause high CPU utilization?

For better results, use CPPCAP - Check Point specialized traffic capture utility. For more information, read this SecureKnowledge Article: sk141412

;
TO READ THE FULL POST it's simple and free
3 Comments
Iron

What tool is more preferred to use fw monitor or cppcap ?

Admin
Admin

It depends on a specific scenario. FW monitor shows you how traffic is passing FW kernel chains. CPPCAP & tcpdump are about how traffic looks on network interfaces. These two cases are linked but not identical