We help IT Professionals succeed at work.
Get Started

checkpoint firewall - efficiency drive

132 Views
Last Modified: 2015-09-29
Hello All

we run a 2 node cluster of checkpoint firewall with a number of remote sites coming up to us over a MPLS network presented to us on a Cisco router

this Cisco router is connected to a dedicated interface on the firewall

we are ultimately looking to reduce the amount of spurious traffic that comes up this link and hots the firewall only to be discarded

we have a process to switch the firewall log file at 23.59 every work day

doing some quick and dirty analysis on the fw logs we seem to be seeing approx 15 - 20 percent of log entries being logged as dropped or rejected

my question is; is this a reasonable overhead for the firewall. what sort of percentage of your log entries are dropped or rejected

thank you

Laurence
Comment
Watch Question
Exec Consultant
CERTIFIED EXPERT
Distinguished Expert 2019
Commented:
This problem has been solved!
Unlock 1 Answer and 1 Comment.
See Answer
Why Experts Exchange?

Experts Exchange always has the answer, or at the least points me in the correct direction! It is like having another employee that is extremely experienced.

Jim Murphy
Programmer at Smart IT Solutions

When asked, what has been your best career decision?

Deciding to stick with EE.

Mohamed Asif
Technical Department Head

Being involved with EE helped me to grow personally and professionally.

Carl Webster
CTP, Sr Infrastructure Consultant
Ask ANY Question

Connect with Certified Experts to gain insight and support on specific technology challenges including:

  • Troubleshooting
  • Research
  • Professional Opinions
Did You Know?

We've partnered with two important charities to provide clean water and computer science education to those who need it most. READ MORE