Solved

how to clear  fw log buffer from CheckPoint?

Posted on 2009-05-08
2
2,627 Views
Last Modified: 2013-11-16
my firewall present this error, i need clean the log buffer, we needs put the fw ok..

fw-1: log buffer is full
0
Comment
Question by:Estrateam
2 Comments
 
LVL 18

Accepted Solution

by:
deimark earned 500 total points
ID: 24343553
You cant clear the buffer bud, it just means that the allocated buffer is not big enough to handle all logs being sent to it.

It may mean an increase in traffic or the fact that your box is starting to creak under the strain.

Common things to do at this stage:

1.  Consider an upgrade to the latest and greatest CP
2.  If you box cannot handle the latest version, get a bigger box

If an upgrade is not on the cards, then have a look at this article

https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk39267&js_peid=P-114a7ba5fd7-10001&partition=Public&product=VPN-1

It gives some more info, but personally, I would go down the official line int his case and raise with your support provider, who have more access to the official resources and can advise appropriately.
0
 
LVL 14

Expert Comment

by:grimkin
ID: 24344733
DO you have a separate management server and gateway? If so,  the gateway may be unable to send logs to it and is consequently running out of disk / buffer space whilst logging them locally.

The kernel module maintains a buffer of waiting log messages that it gives to fwd to send to the management module. The buffer is circular, so high levels of logging may cause buffer entries to be overwritten before they can be sent to fwd. When this happens, the system log will display messages indicating that log entries are being lost - check that logs are being sent and also the disk space on the gateway.

If this is not the case, you may need to increase the log buffer size - how to do this depends on your platform and Checkpoint version.
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Join & Write a Comment

PREFACE The purpose of this guide is to explain how to manually move a SEP client to a different client group by performing steps on the client-side. These steps may prove particularly useful because they allow the client to move after it has alrea…
PREFACE The purpose of this guide is to explain what the SEPC Status Utility is and how it works. I have written the utility using AutoIt and have included the source code for your review. You are welcome to modify the code to your liking, but I wi…
Sending a Secure fax is easy with eFax Corporate (http://www.enterprise.efax.com). First, Just open a new email message.  In the To field, type your recipient's fax number @efaxsend.com. You can even send a secure international fax — just include t…
This video explains how to create simple products associated to Magento configurable product and offers fast way of their generation with Store Manager for Magento tool.

759 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

22 Experts available now in Live!

Get 1:1 Help Now