> Source: [sk168674](https://support.checkpoint.com/results/sk/sk168674)

# sk168674 - CPD process consumes CPU at high level on Security Gateway

| Property | Value |
|----------|-------|
| Solution ID | sk168674 |
| Date Created | 2020-08-28 |
| Last Modified | 2021-10-11 |
| Technical Level | General |
| Products | Security Gateway, Spark Firewall (Locally Managed) |
| Versions | R82.10, R82, R81.20, R82.00.X, R81.10.X |
| OS | Gaia |

## Symptoms

- * High CPU utilization of CPD process on the Security Gateway.

* Failover or reboot resets the CPU utilization of CPD process, but it increases over time.

* Loss of SIC connectivity and policy installation failure when CPU utilization by CPD process is high.

* The *$CPDIR/log/cpd.elg* file on the Security Gateways shows:

  `
  "CPStatGet: function excessive time. oid is:"`  
  `
  [CPD PID]@Host[DATE TIME] Warning:cp_timed_blocker_handler: A handler [0xf128ae90] blocked for 4 seconds.`  
  `
  [CPD PID]@Host[DATE TIME] Warning:cp_timed_blocker_handler: Handler info: Library [/opt/CPsuite-R80.30/fw1/lib/libfwstatagent.so], Function offset [0x7e90].`  
  `
  CPStatGet: function excessive time. oid is: 1.3.6.1.4.1.2620.1.1.25.1`  
  `
  [CPD PID]@Host[DATE TIME] Warning:cp_timed_blocker_handler: A handler [0xf6795980] blocked for 4 seconds.`  
  `
  [CPD PID]@Host[DATE TIME] Warning:cp_timed_blocker_handler: Handler info: Library [/opt/CPshrd-R80.30/lib/libcpstatext.so], Function offset [0x13980].`  
  `
  [CPD PID]@Host[DATE TIME] Warning:cp_timed_blocker_handler: A handler [0xf128ae90] blocked for 6 seconds.`  
  `
  [CPD PID]@Host[DATE TIME] Warning:cp_timed_blocker_handler: Handler info: Library [/opt/CPsuite-R80.30/fw1/lib/libfwstatagent.so], Function offset [0x7e90].`

## Cause

CPD may consume high CPU when gathering interface statistics for a Security Gateway with a large number of interfaces.

## Solution

This problem was fixed. The fix is included in:

* [Check Point R81](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk166715)
* [Jumbo Hotfix Accumulator for R80.40](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk165456) starting from Take 83
* [Jumbo Hotfix Accumulator for R80.30](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk153152) starting from Take 227
* [Jumbo Hotfix Accumulator for R80.20](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk137592) starting from Take 190
* [Jumbo Hotfix Accumulator for R80.10](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk116380) starting from Take 288
* [R80.20.25 for Quantum Spark Appliances](https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk171824)

Check Point recommends to always upgrade to the most recent version ([Security Gateway](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=downloads&product=435)).

The code design was adjusted to be more efficient and to perform the action in another way. Also a higher interval for CPD was introduced to compliment the change and to ensure a steady performance.

If you choose not to upgrade, Check Point can supply a **Hotfix** . [Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.  
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.  
For faster resolution and verification, please collect [CPinfo files](http://supportcontent.checkpoint.com/solutions?id=sk92739) from the Security Management Server and Security Gateways involved in the case.

**Hotfix installation instructions:**   
Refer to [sk168597 - How to install a Hotfix](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk168597).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
