Technical Tip: PDQ_OSW_EHP and PDQ_OSW_IPSEC drop in NP6 units
| Description | This article describes the reason behind the drop counter PDQ_OSW_EHP and PDQ_OSW_IPSEC being observed in NP6 FortiGate. |
| Scope | FortiGate (NP6, NP6lite, NP6xlite). |
| Solution | The following drop can be observed in the NP6 series processor while running the diagnostics command of the drop counter engine(DCE) with NPU ID.
FGT# diag npu np6 dce 0
In general, the drop counter is observed to get increased after running the CLI command 'diag npu npX dce <npu_id>' multiple times. The above report is printing the counter for the counters 'PDQ_OSW_EHP' and 'PDQ_OSW_IPSEC'.
Here the packet descriptor queue refers to the mechanism to manage the flow of packets through the hardware acceleration pipeline.
Additionally, the SOFTIRQ counters may appear which is also expected with these NPU counters in the CPU performance report without triggering any packet drop or errors in the interface level. In any situation the drops cause a huge network performance interruption or the softirq rises high in the CPUs, it is requested to contact and report the incident to the Fortinet Technical Assistance Center |