cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1538
Views
0
Helpful
2
Replies

High CPU Firepower 4120

ANFA
Level 1
Level 1

I've got a firepower going. The policy has pure access rules.
Now I have a very high CPU load with active traffic.
See pictures

What I do not understand is why SNORT has so much CPU.
I have pure Access Rulles and no inspection rules

 

When I look at the Connection Events and click on Snort ID Filter I see all the traffic
Why does he show up at Snort Modul?

 

 

2 Replies 2

B. BELHADJ
Level 4
Level 4

Could you check if there is any active packet capture or debugging?

Best regards.

There are no active packet capture or debugging

Review Cisco Networking products for a $25 gift card