> Source: [sk182108](https://support.checkpoint.com/results/sk/sk182108)

# sk182108 - Logs in the /var/log/messages file show the NTPD process deleting interfaces

| Property | Value |
|----------|-------|
| Solution ID | sk182108 |
| Date Created | 2024-04-23 |
| Last Modified | 2024-04-30 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Symptoms

- Logs in the /var/log/messages shows that the *NTPD* process deletes interfaces on the Security Gateway after a reboot or server crash, for example:  
`
ntpd[36074]: Deleting interface #47 bond0.500, 2001:730:2c01:2::6#123, interface stats: received=0, sent=0, dropped=0, active_time=2711 secs`

## Cause

After Security Gateway reboot, the NTPD service sets all interfaces in 'Listen' mode until it finds the NTP server and uses the applicable interfaces to reach it. After the NTPD service finds the server, it removes the other interfaces and logs the corresponding delete messages in the /var/log/messages file, showing that no NTP traffic arrives from these interfaces.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
