AIX

AIX

Connect with fellow AIX users and experts to gain knowledge, share insights, and solve problems.


#Power
 View Only

AIX IPSec filter rules eating CPU

  • 1.  AIX IPSec filter rules eating CPU

    Posted Thu April 19, 2012 12:42 PM

    Originally posted by: JaromirN


    Hi all,
    i have dirty problem on AIX 7.1. There are some (cca 6) IPsec rules (by genfilt) creating some basic firewall. The issue is - "deny" rules (2) are turning first CPU to 100% and second CPU cca 20% up (mostly due to Wait's up to 70%) but there is not significant network trafic at all. When i removed this "deny" rules - no any problem here.

    This "deny" rule is very elementar - reject everything from everywhere for specific local IP.

    Do you have some of you any idea what could be wrong here?

    Thx
    Jaromir
    #AIX-Forum