Checkpoint firewall CPU high alarm
A few days ago, the alarm system frequently reported that the utilization rate of checkpoint firewall CPU0,CPU1 was as high as 95%. Log in to the checkpoint command line
Expert mode uses the "top" command to see that a "monitored" process takes up a lot of CPU.
Checked the relevant documents, mainly db files under / var/log/db/var/log/ up to more than 700m.
The official methods are as follows:
=
Tellpmprocess:monitord
This command is used to pause the monitored process
Cp / var/log/db / var/log/db_ORIGINAL
Back up db as db_ORIGNAL
Sqlite3 / var/log/db
VACUUM
.exit
Tellpm process:monitord t
Start the monitored process
But after the implementation, the effect is not good. The original size of the db is more than 700m, but after the implementation, it becomes 700m.
You can use ls-lh / var/log/db* to view the size of the db
=
Find another solution on the Internet, directly delete the entire db file after backup, and wait for the system to regenerate.
Tellpmprocess:monitord
This command is used to pause the monitored process
Mv / var/log/db / var/log/db_ORIGINAL
Back up db as db_ORIGNAL and delete the original db file
Tellpm process:monitord t
Start the monitored process
Wait a few minutes after execution for the system to regenerate the db file, and the load of the whole CPU drops.
You can use the following command to view the status of the monitored process
Ps auxwww | grep monitord
=