Fortigate 800c
Firmware 5.2.4
Hey Guys,
Looking for some help finding out what's eating up all my ram. Currently at 92-93% total usage.
diagnose sys top-summary shows me that scanunitd is using 40% of the memory and ipsmonitor is using 22%. From what I can see we aren't running the IPS security profile on a large number of our policies, but I'm having trouble finding out what scanunitd actually is.
Thanks!
Some of the releases have problems with memory leaks - We had exactly that behaviour with a HA-set of 800c around 5.2.2-5.2.5.
Upgrade your firmware.
Richie
NSE7
Same idea, upgrade to the latest v5.2.8.
Additionally, review your IPS sensor - I've seen admins activating all categories (4.700+ signatures) and wondering why the memory footprint was around 90%...You only need a subset which depends on the OSes used, client or server, such things. I always deploy different IPS profiles in separate policies, to handle servers and clients.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1736 | |
1107 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.