> Source: [sk106420](https://support.checkpoint.com/results/sk/sk106420)

# sk106420 - Memory leak on Security Gateway in rare scenarios when identity sharing and Application Control rules (with access roles) are configured

| Property | Value |
|----------|-------|
| Solution ID | sk106420 |
| Date Created | 2015-06-10 |
| Last Modified | 2017-05-21 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- * Memory consumption constantly increases on Security Gateway when Identity sharing and Application Control rules (with access roles) are configured. Eventually, Security Gateway might crash due to memory exhaustion.

* Output of memory leak detection procedure ([sk35496](http://supportcontent.checkpoint.com/solutions?id=sk35496)) shows:

  `;fw_drv_fini: XXX bytes allocated by 'idapi_create_handle' leaked at ... allocation time ...`  
  `
  ;FW-1: Leak in: idapi_create_handle: hmem_bytes XXX`
* */var/log/messages* file repeatedly shows:

  `;FW-1: fw_kfree: memory already freed at XXX. caller is 'appi_transaction_destroy_rb_async_opaque' sz=XXX`

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
