> Source: [sk69480](https://support.checkpoint.com/results/sk/sk69480)

# sk69480 - 'NAT Hide failure - there are currently no available ports for hide operation' log appears repeatedly in SmartView Tracker

| Property | Value |
|----------|-------|
| Solution ID | sk69480 |
| Date Created | 2012-03-21 |
| Last Modified | 2020-02-13 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R82.10, R82, R81.20 |

## Symptoms

- * '`NAT Hide failure - there are currently no available ports for hide operation`' log for dropped Hide NATed connections appears repeatedly in SmartView Tracker.  

* Solution [sk36708 - NAT table reaches its maximum capacity, which causes traffic issues](http://supportcontent.checkpoint.com/solutions?id=sk36708) has been followed, but the issue remains.

## Cause

Security Gateway, by default has 200 'high' ports and 20 'low' ports for Hide NAT (these numbers (200 and 20) are two parameters that are used by internal logic for static port allocation calculation).

The whole range of ports is around 50 000, and Hide NAT is done per IP address.

Hide NAT port exhaustion might be caused by the following on Security Gateway:

1. High number of CoreXL FW instances.   

   When CoreXL is enabled on Security Gateway, in order to share the range of available ports between all CoreXL FW instances, in case of of static port allocation (not dynamic port allocation), this number of ports is divided by the number of CoreXL FW instances, thus each CoreXL FW instance has its own range.   

   For example, on a Security Gateway with 10 CoreXL FW instances, each CoreXL FW instance will get 20 'high' ports and 2 'low' ports for Hide NAT.   

2. 'HTTP/HTTPS Proxy' feature (introduced in R75.40 version).   

   'HTTP/HTTPS Proxy' feature uses Hide NAT when opening the connection from the Security Gateway to the Destination.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
