FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Anonymous
Not applicable
Article Id 205134
Description This article describes FSSO CA optimization regarding CPU resources consumed by the collector agent.
Scope FSSO CA 5.x
Solution

CA configuration for best practice resource utilization.

 

1) Enable cache from the CA menu.

 

ethomollari_0-1645287861272.png

 

2) Raise the Worker Thread to 512 (Advanced settings -> Worker thread count) from 128.

 

ethomollari_1-1645288030124.png

 

3) Set log level to Debug and log size to 100 MB.

 

Logging level 'Information' can also be used since it will generate and store less granular logs, whilst debug will give more information to troubleshoot user activity and general information about CA.

 

ethomollari_2-1645288286874.png

 

Note.

CA settings are usually left to default and that will not cause any issues.

Tips on this guide can be applied to specific cases when  the FSSO Collector agent is consuming too much CPU resources, and that after stopping the CA service, CPU falls back to normal levels.

Contributors