- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
Hi All,
In of our Checkpoint box inetrface utilization is going 98%(recieved) so just want to know which which users are sending the most
traffic and try to catch them . Gateway is R77.30 and want to know the output just like "ip-accounting" in Cisco ...
Please require your support .
Hi All
One thing also want to add that eth1-06 is the physical interface of the VSX gateway which is showing 96% of recieved utilization
and no ip is configured on this . There are 7-8 VSs like checked vsenv 7--> eth1-06.2781 like this different VLANs interfaces belong
to different VSs.
Very basic, but have you tried tcpdump, often enough you can see high bandwidth users from tcpdump. Just explicitly set good flags to stop the capture and not to saturate CPU. I.e count, -c xxx
See the VSX-specific sections of these SK's, the short answer is you have to use CPMonitor:
sk164215: How to Detect and Handle Heavy Connections
sk122013: Handling heavy connections in CoreXL
sk167553: Performance Investigation Procedure - How To
well you do have the routing table/antispoofing so just filter on those prefixes(networks) first then smartlog will do new calculation on top source and destinations.
Regards,
Magnus
How about using SmartviewMonitor and looking for top source, destination or service on the interface ?
Wolfgang
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 66 | |
| 19 | |
| 13 | |
| 12 | |
| 11 | |
| 9 | |
| 9 | |
| 7 | |
| 7 | |
| 7 |
Tue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY