> Source: [sk183484](https://support.checkpoint.com/results/sk/sk183484)

# sk183484 - "Heavy Connection got lower priority and now its load X% from CPU" message in SmartConsole log entries

| Property | Value |
|----------|-------|
| Solution ID | sk183484 |
| Date Created | 2025-05-21 |
| Last Modified | 2025-05-29 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82, R81.20, R81.10 (EOS) |
| OS | Gaia |

## Symptoms

- * Log entries in SmartConsole display this message in the Firewall Message field:  

  `Heavy Connection got lower priority and now its load X% from CPU`.

* This message may appear in connection logs for allowed traffic, even when no traffic drops, blocks, or performance issues are observed.

* The message may appear intermittently for connections that previously consumed high CPU.

## Cause

This log message is generated by the Firewall module as part of Check Point's internal performance optimization mechanism.  

When a connection consumes high CPU resources on the Security Gateway, it is temporarily classified as a "heavy connection" and assigned a lower priority in the inspection queues. This preserves overall system performance, and does not indicate any issue with policy enforcement, traffic drops, or service impact.   
After the connection's CPU usage drops below a predefined threshold (default: 5%), the firewall logs this message to indicate the change in load and priority:  
`Heavy Connection got lower priority and now its load X% from CPU`

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
