> Source: [sk108158](https://support.checkpoint.com/results/sk/sk108158)

# sk108158 - EIGRP (multicast) neighborship through the Security Gateway is breaking while SecureXL is enabled

| Property | Value |
|----------|-------|
| Solution ID | sk108158 |
| Date Created | 2015-10-12 |
| Last Modified | 2017-06-08 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * EIGRP (multicast) neighborship through the Security Gateway is breaking in the following scenario:

  1. SecureXL is enabled
  2. SecureXL Drop Templates are enabled ([sk66402](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk66402))
* Kernel debug ('`fw ctl debug -m fw + drop`') shows that EIGRP multicast packets are dropped:

  `fw_log_drop_conn: Packet <dir 1, Source_IP_Address:0 -> 224.0.0.10:0 IPP 88>, dropped by handle_outbound_pac, Reason: matched partial connection`
* SecureXL debug ('`fwaccel dbg -m general + offload`' and '`fwaccel dbg -m db + routing`') shows:

  `cphwd_db_get_routing_info_ex: partial routing found (client=no, server=no).;`  
  `cphwd_offload_conn: Failed to find routing info for <dir 0, Source_IP_Address:0 -> 224.0.0.10:0 IPP 88>`
* Disabling SecureXL resolves the issue.

## Cause

FireWall kernel offloads partial connections for multicast traffic. New multicast packets that is matched to such a partial connection is dropped because the connection is not found in the SecureXL database because SecureXL is not able to get route information from its database.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
