We have a configuration of two Checkpoint Firewall configured in Cluster XL Unicast mode, using two Sun V245 Servers.
The issue we have is that at not specific intervals or periods, the not-pivot cluster member stops passing traffic (we have mainly observed it on http & https, but could be additional protocols).
The problems seems not related to load or connections limit, since it is happening even when firewalls are under low utilization.
We have tried the following:
change the pivot cluster member - the issue continued happen with the not-pivot member
perform cpstop on the not-pivot member - the issue happened on the pivot member
After a lot of searching we have identified the following:
running fw monitor we have observed that the traffic does not pass from all four stages ( i,I,o and O) but instead it is seen only on the first stage (i). When we don't have that issue the taffic is seen always passing from all four stages in fw monitor.
A similar case was mentioned in this link:
but no solution is recorded.
Any help would be much appreciated.