Who rated this post

cancel
Showing results for 
Search instead for 
Did you mean: 
shais
Employee
Employee

Hi Isrelfds95,

Thank you for the feedback — I apologize for the issues you experienced, and I'll review the relevant documentation to identify where we can improve clarity.

 

A few points I'd like to address, both for you and for others reading this thread:

 

In the early days of User-Mode SecureXL (UPPAK), we did encounter a number of complex field issues. Most were resolved quickly, and in critical cases we reverted gateways to Kernel-Mode SecureXL (KPPAK) while the root cause was investigated. All known critical issues have since been resolved, and the volume of UPPAK-related cases from the field is now very low while number of reporting UPPAK machine increases. If you ran into an issue that required moving back to KPPAK, I'd appreciate it if you could share the SR number so we can investigate further.

 

I'd also like to clarify an important distinction for anyone following along: moving to full Kernel Mode — where both the Firewall and SecureXL run in the kernel — is not the same as moving to KPPAK, and it removes the benefits provided by User-Space Firewall mode. One of those benefits is support for more than 40 CPUs, among others.

 

SK179432 notes that the appliance supports Kernel-Mode SecureXL (KPPAK), but this should not be read as support for full Kernel Mode (KMFW). In full Kernel Mode, the 40-CPU limitation still applies, as documented in SK167052.

I'll review the SKs that reference both modes to make sure the distinction is clearly communicated.

 

Thanks again for raising this.

(1)
Who rated this post