> Source: [sk178844](https://support.checkpoint.com/results/sk/sk178844)

# sk178844 - High CPU utilization on Virtual System Extension (VSX) when a packet is transmitted through more than one Virtual System (VS)

| Property | Value |
|----------|-------|
| Solution ID | sk178844 |
| Date Created | 2022-04-25 |
| Last Modified | 2022-12-14 |
| Technical Level | General |
| Products | Security Gateway, Scalable Platforms |
| Versions | R81.10 (EOS), R81 (EOS), R81.10 (EOS) |
| OS | Gaia |

## Symptoms

- * There is high utilization of CPU cores that run CoreXL Secure Network Distributor (SND) instances when a packet is transmitted through more than one VS.

* Traffic capture does not show the packet in the VSX Gateway (VS0), but the specific VS shows that there is no decrease in Time to Live (TTL).

## Cause

In R80.20, the infrastructure of SecureXL changed to allow more acceleration. In addition, the new infrastructure introduced changes to VSX.   

One of the changes was in the condition for TTL decrease. The condition checks if the outgoing interface is a bridge interface or not, but because the traffic moves between VSs, the interface is always considered a bridge interface.

<br />

## Solution

This problem was fixed. The fix is included in:  

* [Check Point R81.20 (Titan)](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk170416)
* [Jumbo Hotfix Accumulator for R81.10](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/Default.htm) starting from Take 61
* [Jumbo Hotfix Accumulator for R81](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81/Default.htm) starting from Take 69
* [Jumbo Hotfix Accumulator for R80.40](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk165456) starting from Take 161
* [Jumbo Hotfix Accumulator for R80.30](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk153152) from Take 254
* [Jumbo Hotfix Accumulator for R80.20](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk137592) from Take 220

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
