> Source: [sk167462](https://support.checkpoint.com/results/sk/sk167462)

# sk167462 - TCPdump tool does not show traffic on the virtual system's Wrp interfaces

| Property | Value |
|----------|-------|
| Solution ID | sk167462 |
| Date Created | 2020-06-28 |
| Last Modified | 2026-05-07 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Symptoms

- The WRP interface is part of Virtual Systems, and the WRPJ interface is a part of the Virtual Switch. You can't see the traffic logs when you execute the tcpdump command on the WRP interface. It is for all types of traffic.

## Cause

This behavior is by design. The SecureXL process will accelerate traffic on WRP interfaces. But we can see the traffic logs on the WRPJ interface when we execute the tcpdump command, as the SecureXL won't work on the Virtual Switch.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
