> Source: [sk148073](https://support.checkpoint.com/results/sk/sk148073)

# sk148073 - DHCP relay traffic fails after upgrade to R80.10

| Property | Value |
|----------|-------|
| Solution ID | sk148073 |
| Date Created | 2019-03-03 |
| Last Modified | 2024-08-11 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |
| OS | Gaia |

## Symptoms

- * DHCP relay traffic fails after upgrade to R80.10.
* DHCP Traffic is randomly dropped with the reason:  

  ```
  fw_log_drop_ex: Packet proto=17 172.28.1.1:67 - > 10.100.10.1:67 dropped by fwpslglue_chain Reason: PSL Drop: ASPII_MT
  ```

* In UP debug (`fw ctl debug -m UP + all`) the following lines can be seen:  

  ```
  [ERROR]: up_manager_cmi_handler_match_cb: connection not found;
  [ERROR]: up_manager_cmi_handler_match_cb: rc FALSE - rejecting conn [X.X.X.X:67 -> Y.Y.Y.Y:67, IPP 17];
  ```

* In APPI debug (`fw ctl debug -m APPi + all`) the following lines can be seen:  

  ```
  {connection} [ERROR]: up_manager_cmi_handler_match_cb: connection not found;
  ```

## Cause

DHCP relay is configured on the gateway. A Limit is configured in one of the rules on which the DHCP traffic hits. For example:

![](https://sc1.checkpoint.com/sc/SolutionsStatics/NEW_SK_NOID1551250857594/example1902262326.jpg)

## Solution

[Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.   
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.   
For faster resolution and verification please collect [CPinfo](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92739) files from the Security Management and Security Gateways involved in the case.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
