> Source: [sk183181](https://support.checkpoint.com/results/sk/sk183181)

# sk183181 - SecureXL in the User Mode (UPPAK) may have compatibility issues with R81.20 Jumbo Hotfix Take 96 and Take 98

| Property | Value |
|----------|-------|
| Solution ID | sk183181 |
| Date Created | 2025-02-25 |
| Last Modified | 2025-06-23 |
| Technical Level | General |
| Products | Security Gateway |
| Versions | R81.20 |
| OS | Gaia |

## Symptoms

- Security Gateway with the R81.20 Jumbo Hotfix Accumulator Takes 96 and Take 98 may crash frequently when SecureXL works in the User Mode (UPPAK).

## Cause

Race condition may occur in the ADP acceleration driver when updating network routes for SecureXL in the User Mode (UPPAK) - see [sk153832](https://support.checkpoint.com/results/sk/sk153832) section "(5) SecureXL Modes - KPPAK and UPPAK".

* In Take 96, the process "`usim_x86`" crashes with a core dump file in the `/var/log/dump/usermode/` directory.
* In Take 98, the Security Gateway crashes with a VMcore dump file in the `/var/log/crash/<DATE>/vmcore/` directory.

**Affected versions:**

* R81.20 Jumbo Hotfix Accumulator Take 96
* R81.20 Jumbo Hotfix Accumulator Take 98

**How to check if your Security Gateway may be affected?**

1. Connect to the command line on the Security Gateway.
2. Check the current R81.20 Jumbo Hotfix Accumulator Take:  
   `cpinfo -y all`
3. Check the current SecureXL mode:
   1. Run:  
      `fwaccel stat`
   2. Examine the column "`Name`":
      * "`KPPAK`" means Kernel Mode - this SK article does **not** apply.
      * "`UPPAK`" means User Mode - this SK article **applies**.

## Solution

This problem was fixed. The fix is included in:

* [Jumbo Hotfix Accumulator for R82](https://sc1.checkpoint.com/documents/Jumbo_HFA/R82/Default.htm) starting from Take 14
* [Jumbo Hotfix Accumulator for R81.20](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm) starting from Take 99
* [Jumbo Hotfix Accumulator for R81.10](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/Default.htm) starting from Take 177

If you choose not to upgrade, Check Point can supply a **Hotfix** . [Contact Check Point Support](https://www.checkpoint.com/support-services/.contact-support/) to get a Hotfix for this issue.  
A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.  
For faster resolution and verification, please collect [CPinfo files](http://supportcontent.checkpoint.com/solutions?id=sk92739) from the Security Management Server and Security Gateways involved in the case.

**Hotfix installation instructions:**   
Refer to [sk168597 - How to install a Hotfix](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk168597).

**In case the Jumbo Hotfix Accumulator does not resolve the issue:**   
[Contact Check Point Support](https://www.checkpoint.com/support-services/.contact-support/) to get an additional Hotfix.  

*** ** * ** ***

<br />

This **workaround** is also available:   

Configure the SecureXL to work in the Kernel Space (KPPAK) mode.  
**Important Note** : Switching SecureXL to the Kernel Space (KPPAK) mode is **not** a recommended long-term solution. While it can serve as a temporary workaround, Check Point's official recommendation is to run SecureXL in the User Space (UPPAK) mode. If UPPAK is unstable, some customers have been advised to temporarily switch to KPPAK, but only if they are **not**using Lightspeed. Once UPPAK stability is ensured, customers should revert to UPPAK for optimal performance and compatibility.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
