> Source: [sk97443](https://support.checkpoint.com/results/sk/sk97443)

# sk97443 - Check Point Monitoring, Debug, and Support Tools

| Property | Value |
|----------|-------|
| Solution ID | sk97443 |
| Date Created | 2013-11-26 |
| Last Modified | 2026-07-05 |
| Technical Level | General |

## Solution

This article lists a variety of monitoring, debug and Support Tools.

This article will be updated each time a new tool is introduced.

**Table of Contents**

* Self-Updatable components
* Configuration snapshot
* Performance and monitoring
* Appliances diagnostics and sizing
* Software Installation Aids
* Additional Tools / Features / Services

### Self-Updatable components {#Self-Updatable components}

Many components are built-in in Check Point software. Some of them can self-update if the user allows the Automatic Updates Download as described in [sk94508](https://support.checkpoint.com/results/sk/sk94508).

|-----------------|-------------------------------------------------------------------------|----------------------------------------------------------------|
| Tool Name       | Description                                                             | Link                                                           |
| **AutoUpdater** | AutoUpdater is a Check Point process responsible for automatic updates. | [sk165653](https://support.checkpoint.com/results/sk/sk165653) |

### Configuration snapshot {#Configuration snapshot}

Tools for collecting and viewing comprehensive machine configuration.

|---------------------|--------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|----------------------------------------------------------------------|
| Tool Name           | Description                                                                                                                                                                                                                                                                                                                                                                                                        | Link                                                                 |
| **CPInfo**          | CPInfo is a tool that collects diagnostic data from a customer's machine at execution time and uploads it to Check Point servers. This is the main Support tool for data collections and analysis. The tool also allows you to securely upload the output and any additional files to the Check Point FTP server. \* Self-updatable, if allowed. See [sk94508](https://support.checkpoint.com/results/sk/sk94508). | [sk92739](http://supportcontent.checkpoint.com/solutions?id=sk92739) |
| **DiagnosticsView** | A Windows desktop tool that replaced the InfoView application. DiagnosticsView offers a graphical representation of the CPInfo data. \* Self-updatable, if allowed. See [sk94508](https://support.checkpoint.com/results/sk/sk94508).                                                                                                                                                                              | [sk125092](https://support.checkpoint.com/results/sk/sk125092)       |

### Performance and monitoring {#Performance and monitoring}

Tools for monitoring and reporting of performance and resource utilization.

Enter the string to filter this table:

|---------------------------------------------------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|------------------------------------------------------------------------|
| Tool Name                                               | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                         | Link                                                                   |
| **Skyline**                                             | Skyline quickly and efficiently monitors your Check Point servers with industry-standard software and protocols (OpenTelemetry, Prometheus, and Grafana). Skyline provides an OpenTelemetry CPView Agent service. The OpenTelemetry CPView Agent runs on a Check Point server to collect and export health metrics from the Check Point CPView tool to an external location.                                                                                                                                                                                                                        | [sk178566](https://support.checkpoint.com/results/sk/sk178566)         |
| **Performance Sizing Utility (cpsizeme)**               | The '*cpsizeme* ' is a lightweight shell script that produces a detailed performance report of a Check Point Security Gateway. This script measures the ongoing resource utilization on a Security Gateway during the given time. During this time, the script gathers information about CPU, memory consumption, throughput, and a few other important performance parameters. \* Self-updatable, if allowed. See [sk94508](https://support.checkpoint.com/results/sk/sk94508).                                                                                                                    | [sk88160](http://supportcontent.checkpoint.com/solutions?id=sk88160)   |
| **Manage Partition Size with LVM Manager**              | Modify partition volumes on Gaia OS in an easy and simplified way.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                  | [sk95566](http://supportcontent.checkpoint.com/solutions?id=sk95566)   |
| **FW Monitor**                                          | A Check Point Traffic Capture Tool on Security Gateways. This tool captures network packets at multiple points along the FireWall inspection chains.                                                                                                                                                                                                                                                                                                                                                                                                                                                | [sk30583](http://supportcontent.checkpoint.com/solutions?id=sk30583)   |
| **CPPCAP**                                              | A Check Point Traffic Capture Tool that provides the most relevant outputs and is similar to TCPdump.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                               | [sk141412](https://support.checkpoint.com/results/sk/sk141412)         |
| **CPMonitor**                                           | CPMonitor Utility is targeted to analyze traffic captured by tcpdump / snoop / Check Point FW Monitor. It parses the input traffic capture file and extracts valuable information from it, including: * Overall traffic statistics (pps, cps, concurrent, throughput) * Top connections, top servers, and top services * Detailed connections, servers, and services (with packet size distribution) * Per-second analysis                                                                                                                                                                          | [sk103212](http://supportcontent.checkpoint.com/solutions?id=sk103212) |
| **CPView**                                              | CPView Utility is a text-based built-in utility (on Gaia OS and SecurePlatform OS) that can be run ('*cpview*' command) on Security Gateway / Security Management Server / Multi-Domain Security Management Server. CPView Utility shows statistical data that contains both general system information (CPU, Memory, Disk space) and information for different Software Blades (only on Security Gateway). The data is continuously updated in easy-to-access views. On the Security Gateway, this statistical data can be used to monitor the machine's performance.                              | [sk101878](http://supportcontent.checkpoint.com/solutions?id=sk101878) |
| **ConnStat**                                            | Analysis of Connections Table (that was collected on Security Gateway) to optimize the rulebase - e.g., for SecureXL to accelerate more packets. Note: This tool exists only for the Windows OS.                                                                                                                                                                                                                                                                                                                                                                                                    | [sk85780](http://supportcontent.checkpoint.com/solutions?id=sk85780)   |
| **CPU Spike Detective**                                 | The CPU Spike Detective is a tool that monitors the system CPU usage and checks for spikes. This tool does not impact the device performance.                                                                                                                                                                                                                                                                                                                                                                                                                                                       | [sk166454](https://support.checkpoint.com/results/sk/sk166454)         |
| **Top Connections Tool**                                | The Top Connections Tool consolidates all top connections from all CoreXL Firewall instances into a single view. With the Top Connections Tool, you filter the information by applicable CPU Core / CoreXL Firewall Instance / CPU Load, or export the information to an output file.                                                                                                                                                                                                                                                                                                               | [sk172229](https://support.checkpoint.com/results/sk/sk172229)         |
| **Detect and Handle Heavy Connections**                 | A possible cause for a single highly utilized core is a "heavy connection". Check Point's Software architecture dictates that each connection (identified by source, destination, source port, destination port, and IP protocol) is assigned to a single Firewall core (or CoreXL instance). If a particular connection contains a large chunk of data transfer (high data packet rate) or is open for a substantial period of time, the single CoreXL instance can become highly utilized, resulting in drops, re-transmissions, and / or latency. This type of connection is defined as "heavy". | [sk164215](https://support.checkpoint.com/results/sk/sk164215)         |
| **IKEView**                                             | The IKEView utility is a Check Point tool created to assist in the analysis of the *ike.elg* (IKEv1) and *ikev2.xml* files.                                                                                                                                                                                                                                                                                                                                                                                                                                                                         | [sk30994](https://support.checkpoint.com/results/sk/sk30994)           |
| **HealthCheck Point (HCP)**                             | A self-updatable suite of tools for: * **Tests**: Assesses the health of your system * **WTS (What's The Story)**: Provides a timeline of critical and informative events that occurred on the system * **Topology**: Visualize the Firewall topology                                                                                                                                                                                                                                                                                                                                               | [sk171436](https://support.checkpoint.com/results/sk/sk171436)         |
| **The Easy Debug Tool**                                 | Provides a simple menu for running predefined debug plan scripts on a Security Gateway. The debugging script can include Kernel Space / User Space debug commands and can use other tools such as 'tcpdump'.                                                                                                                                                                                                                                                                                                                                                                                        | [sk173024](https://support.checkpoint.com/results/sk/sk173024)         |
| **IPS Protections - Profile Comparison**                | The *IPS_Compare* script compares the performance of two IPS Protection profiles. The script takes IPS Protection CSV files from the SmartConsole application and creates a CSV file. You can use the *IPS_Compare* script to: * Compare two Check Point default IPS Protection profiles (Basic, Optimized, Strict) * Compare a user-defined IPS Protection profile and a Check Point default IPS protection profile * Compare an IPS Protection profile with a cloned profile that includes changes * See the changes that an administrator made to the IPS protection profile                     | [sk178646](https://support.checkpoint.com/results/sk/sk178646)         |
| **tp_collector**                                        | A light debug tool that runs in the background. The tool automatically collects information about the main points in Threat Prevention for each traffic flow.                                                                                                                                                                                                                                                                                                                                                                                                                                       | [sk179826](https://support.checkpoint.com/results/sk/sk179826)         |
| **Lock Contention Statistics tool**                     | This tool provides advanced information for internal locks in the User Space Firewall Mode (USFW) and the VSX mode. On a Security Gateway, run in Expert mode: `fw lcs -h`                                                                                                                                                                                                                                                                                                                                                                                                                          | -                                                                      |
| **Manually delete an entry from the Connections Table** | Manually delete an entry from the Connections Table.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                | [sk103876](https://support.checkpoint.com/results/sk/sk103876)         |

{#PerformanceTable}

### Appliances diagnostics and sizing {#Appliances diagnostics and sizing}

Tools for choosing and testing your Check Point Appliances hardware.

|-----------------------------------------------------|------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|----------------------------------------------------------------------|
| Tool Name                                           | Description                                                                                                                                                                                                                              | Link                                                                 |
| **Hardware Diagnostics Tool for R77.20 and R77.30** | Diagnose your Check Point Appliance for hardware issues. Note - This tool is integrated into Gaia OS R80.10 and higher. While connected to the console port, during boot press any key to open the Boot menu \> select "HW Diagnostics". | [sk97251](http://supportcontent.checkpoint.com/solutions?id=sk97251) |
| **Appliance Sizing Tool**                           | Helps select the right appliance for your needs to meet your Security requirements (UserCenter - 'Quoting' menu - 'Appliance Sizing Tool').                                                                                              | [Link](https://usercenter.checkpoint.com/usercenter/portal/)         |

### Software Installation Aids {#Software Installation Aids}

Tools for finding, installing and configuring the correct installation packages.

|-----------------------------------|----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|------------------------------------------------------------------------|
| Tool Name                         | Description                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                      | Link                                                                   |
| **CPUSE (Gaia Software Updates)** | Gaia Software Updates is an advanced and intuitive system for software deployment on Gaia-based systems. This is a new installation method, which allows downloading and installing software updates via the Gaia Portal or Gaia Clish. Gaia Software Updates support deployments of HotFixes, Upgrade packages, and Fresh Install images. \* Self-updatable if allowed. See [sk94508](https://support.checkpoint.com/results/sk/sk94508).                                                                                                                                                                                                                                       | [sk92449](http://supportcontent.checkpoint.com/solutions?id=sk92449)   |
| **Central Deployment Tool (CDT)** | The Central Deployment Tool (CDT) is a utility that runs on a Security Management Server / Multi-Domain Security Management Server (running Gaia OS). It allows the administrator to automatically install CPUSE Offline packages (Hotfixes, Jumbo Hotfix Accumulators (Bundles), Upgrade to a Minor Version, Upgrade to a Major Version) on multiple managed Security Gateways and Cluster Members simultaneously. The CDT uses [CPUSE (Gaia Software Updates) Agents](http://supportcontent.checkpoint.com/solutions?id=sk92449) on the remote managed Security Gateways and Cluster Members to perform package installation. The CDT monitors and manages the entire process. | [sk111158](http://supportcontent.checkpoint.com/solutions?id=sk111158) |
| **ISOmorphic**                    | Utility for making a bootable ISO to be used for a fresh installation of Check Point software.                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                   | [sk65205](http://supportcontent.checkpoint.com/solutions?id=sk65205)   |

### Additional Tools / Features / Services {#Additional Tools / Features / Services}

|---------------------------------------------|-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|----------------------------------------------------------------|
| Tool Name                                   | Description                                                                                                                                                                                                                                                                         | Link                                                           |
| **Sync with UserCenter**                    | Lets users synchronize certain information regarding their environment to UserCenter account. The additional information that is presented in the UserCenter account enables: * Better inventory management * A pro-active support * Better and faster tickets resolution           | [sk94064](https://support.checkpoint.com/results/sk/sk94064)   |
| **License Status Collector tool**           | The License Status Collector tool examines the applicable database on the Management Server for license issues. If a problem is discovered, the tool fixes it or shows an applicable message with the required steps.                                                               | [sk180447](https://support.checkpoint.com/results/sk/sk180447) |
| **CheckMe - Instant Security Check**        | This service allows simulating various attacks that can affect your computer and information on your network. The summary report shows the possible vulnerabilities of your computer to Phishing / Malicious sites, Malware / Ransomware, and Data Leakage / Exfiltration.          | [sk115236](https://support.checkpoint.com/results/sk/sk115236) |
| **PerfCollect tool**                        | For troubleshooting performance impact on machine with Endpoint Security Client installed. Occasionally, a user may experience performance impact on a computer with an Endpoint Security Client installed. The PerfCollect tool assists in troubleshooting the performance impact. | [sk161454](https://support.checkpoint.com/results/sk/sk161454) |
| **SIC Test**                                | The *sic_tests.sh* script on the Management Server R81.10 and above runs a small debug and shows the SIC status                                                                                                                                                                     | [sk172447](https://support.checkpoint.com/results/sk/sk172447) |
| **Policy Installation Debug Script**        | The *$MDS_FWDIR/scripts/policy_debug.sh* script collects the relevant debug during a Policy Installation.                                                                                                                                                                           | [sk159452](https://support.checkpoint.com/results/sk/sk159452) |
| **Management High Availability Sync Debug** | The *ha_collector.sh* script collects the relevant debug about synchronization on the Management Servers in the Management High Availability configuration.                                                                                                                         | [sk80060](https://support.checkpoint.com/results/sk/sk80060)   |

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
