> Source: [sk183438](https://support.checkpoint.com/results/sk/sk183438)

# sk183438 - Stability issue in Check Point appliances 9300 and 9400

| Property | Value |
|----------|-------|
| Solution ID | sk183438 |
| Date Created | 2025-05-08 |
| Last Modified | 2025-08-04 |
| Technical Level | General |
| Products | Security Gateway, Scalable Platforms |
| Versions | R82, R81.20, R82, R81.20 |
| OS | Gaia |
| Platform | 9000 |

## Symptoms

- * Security Gateway / Cluster Member / Security Group Member may crash on one of these appliance models:

  * Quantum Force 9300
  * Quantum Force 9400
* The issue is more likely to occur when the Firewall runs in the Kernel Space (KSFW) mode, which is not the default mode in these appliance models.  

  However, the issue may still occur when the Firewall runs in the User Space (USFW) mode.

## Cause

We have identified an issue affecting the Quantum Force 9300 and 9400 models due to the unique Intel E-cores / P-cores architecture used in these models. This issue may cause system crashes, particularly in specific configurations.

## Solution

**You must follow all these steps:**

1. Immediate step to reduce the risk:

   If the Firewall runs in the Kernel Space (KSFW), then configure it to run in the User Space (USFW). For information about Firewall modes, see [sk167052](https://support.checkpoint.com/results/sk/sk167052).

   This change will significantly decrease the risk of encountering the issue.  
   Show / Hide this section  
   **Important Note** - If there is a specific reason to run the Firewall in the Kernel Space (KSFW) mode, [contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) for assistance. The recommended and the default configuration is to the Firewall in the User Space (USFW) mode.
   1. Connect to the command line on the problematic Security Gateway / Cluster Member.

   2. Log in.

   3. If the default shell is Gaia Clish, then go to the Expert mode:

      `expert`
   4. Get the current Firewall mode:

      `fwmode -s`

      |---------------------------|------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
      | Command Output            | Next Step                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
      | `Firewall is User mode`   | Continue to Step 2 to install the Hotfix.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                |
      | `Firewall is Kernel mode` | Configure the Firewall to run in the User Space (USFW) mode (see [sk167052](https://support.checkpoint.com/results/sk/sk167052)): **Important Note** - Schedule a full maintenance window because this procedure requires a reboot. 1. Run: `cpconfig` 2. Enter the number of the option **Check Point CoreXL**. 3. Enter the number of the option **Change firewall mode**. 4. Follow the instructions on the screen. 5. Exit from the `cpconfig` menu. 6. Reboot as described below: * On a single Security Gateway, run: `reboot` * In a ClusterXL configured in the High Availability mode: 1. Get the current cluster state: `cphaprob state` 2. Reboot all cluster members in the cluster state "Standby" - one cluster member at a time: `reboot` 3. Reboot the remaining cluster member: `reboot` * In a ClusterXL configured in the Load Sharing Unicast mode: 1. Get the current cluster state: `cphaprob state` 2. Reboot all cluster members in the cluster state "Non-Pivot": `reboot` 3. Reboot the remaining cluster member: `reboot` * In a ClusterXL configured in the Load Sharing Multicast mode: Reboot all cluster members - one cluster member at a time. `reboot` |

2. This problem was fixed. The fix is included in:

   * [Jumbo Hotfix Accumulator for R82](https://sc1.checkpoint.com/documents/Jumbo_HFA/R82/Default.htm) starting from Take 36
   * [Jumbo Hotfix Accumulator for R81.20](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.20/Default.htm) starting from Take 111

   If you choose not to upgrade, Check Point can supply a **Hotfix** . [Contact Check Point Support](https://www.checkpoint.com/support-services/contact-support/) to get a Hotfix for this issue.  
   A Support Engineer will make sure the Hotfix is compatible with your environment before providing the Hotfix.  
   For faster resolution and verification, please collect [CPinfo files](http://supportcontent.checkpoint.com/solutions?id=sk92739) from the Security Management Server and Security Gateways involved in the case.

   **Hotfix installation instructions:**   
   Refer to [sk168597 - How to install a Hotfix](https://support.checkpoint.com/results/sk/sk168597).

   **Important Note** - Schedule a full maintenance window because this procedure requires a reboot.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
