This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Snort takes too heavy process at Bridge Mode (Not used IPS in any rule)

Snort takes too heavy process at Bridge Mode (Not used IPS in any rule).

It communicate of clients delayed & lose that under the Sophos appliance.

Check please.

HW Appliance SG105 ~ SG135

v16.01.1 ~ v16.01.2



This thread was automatically locked due to age.
Parents Reply
  • XG125 seems to have an i5 CPU (very impressive Sophos!)

    So unfortunately, this is not CPU family related.

     

    We had been running an XG125 with the IPS service stopped for nearly 3 weeks, and on Friday it tried to start itself again, getting stuck in the Start/Stop loop and using 100% CPU on the appliance. Using pkill etc. just made it start the process again. In the end we had to reboot the appliance to resolve the start/stop loop.

Children