Support Center > Search Results > SecureKnowledge Details
Access Control Policy installation takes a long time Technical Level
Symptoms
  • Access Control Policy installation takes a long time when there is a high amount of objects and the IPSEC VPN blade is enabled.

  • Policy installation may fail due to time out or internal error if the installation time exceeds the configured timeout for policy installation.

  • From MGMT FWM debugs we can see that most of the time is consumed by VPN function load_vpn_routing_tables()

    For example:

    [FW_LOADER ...]@Hostname[DATE TIME] load_vpn_routing_tables: Starting the generation of the vpn_routing tables
    [FW_LOADER ...]@Hostname[DATE TIME] load_vpn_routing_tables: Finished creating the vpn_routing table
Cause
The long time consumed by VPN function load_vpn_routing_tables() during policy compilation
Solution
Note: To view this solution you need to Sign In .