> Source: [sk118716](https://support.checkpoint.com/results/sk/sk118716)

# sk118716 - Running "fwaccel conns" command on Active cluster member causes high CPU load and cluster failover

| Property | Value |
|----------|-------|
| Solution ID | sk118716 |
| Date Created | 2017-07-06 |
| Last Modified | 2022-11-29 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Symptoms

- Running the "`fwaccel conns`" command on Active cluster member causes high CPU load.
Occasionally, this leads to cluster failover due to Interface Active Check.

## Cause

This is a known limitation.

Chain of events:

1. The "`fwaccel conns`" command prints the entire SecureXL Connections Table.
2. Reports from the field show that if the SecureXL Connections Table contains more than \~500,000 connections, then processing them all could load the CPU core(s) at a very high level.
3. Due to high load, CPU cores are not able to process in time the traffic from interfaces that are affined to those CPU cores.
4. By design, if CCP packets are not received / sent in time, then the Critical Device "Interface Active Check" would report its state as "problem".
5. By design, if a Critical Device reports its state as "problem", the cluster state of the cluster member is declared as "problem".
6. If this issue occurs on an Active cluster member, then its state is changed to "Down".
7. By design, when Active member goes "Down", failover takes place.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
