Hello,
We are experiencing the following issue.
We have a pair of ClusterXL CP5000 series devices that are managed by an external SMS and have a dedicated sync interface.
During the policy deployment procedure we are experiencing high latency issues ie by having a ping running indefinitely from a LAN PC we observe that the RTT towards 8.8.8.8 from 40ms gets as high as 2000ms for quite a few packets (10-20 in total) and we are also experiencing a few packet drops (ICMP request timeouts) 2,3 in total. This behavior occurs either when we ping an Internet site (8.8.8.8) or any other internal subnet / VLAN that is routed by the CP cluster and only when the policy gets deployed.
Also by issuing a ping towards 8.8.8.8 from the firewall , we also get a packet loss only during the policy installation procedure.
When the policy has finished everything goes back to normal ie low RTTs and no packet drop at all.
During the policy installation since I get a lot of CUL (Cluster Under Load) start & stop notifications, the CPU gets as high as 100% which I think is something not to worry about since in many if not all of the policy deployments I have seen so far in my career the CPU gets high enough.
Also we have toggled with all of the connection persistence options (Keep all connections, rematch connections) and the behavior is still the same.
What else could we check ?
Regards