> Source: [sk123353](https://support.checkpoint.com/results/sk/sk123353)

# sk123353 - After policy installation, Security Gateways drop traffic with "FW-1: fw_runfilter_ex(ctx id 0): function does not exist -1"

| Property | Value |
|----------|-------|
| Solution ID | sk123353 |
| Date Created | 2018-03-26 |
| Last Modified | 2021-08-05 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * In rare instances after a policy installation, some Security Gateways in the environment start dropping traffic with `'fw_runfilter_ex Reason: function does not exist'`.
* The Security Gateway goes down after performing the IPS Update, which includes policy installation.
* `'# fw unloadlocal'` resolves the issue only temporarily.

## Cause

The issue occurs when the user installs a policy on several Security Gateways whose inspection settings are not the same. The inspection profiles will then create implied rules. On the Security Gateways on which these profiles were disabled, traffic was dropped because of the mismatch in the implied rules.

## Solution

[Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.   
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.   
For faster resolution and verification, please collect [CPinfo](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92739) files from the Security Management and Security Gateways involved in the case.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
