Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
marsmatt
New Contributor

Scanuitd using 40% memory; Total system now 90% memory usage

Fortigate 800c

Firmware 5.2.4 

 

Hey Guys, 

 

Looking for some help finding out what's eating up all my ram. Currently at 92-93% total usage. 

 

diagnose sys top-summary shows me that scanunitd is using 40% of the memory and ipsmonitor is using 22%. From what I can see we aren't running the IPS security profile on a large number of our policies, but I'm having trouble finding out what scanunitd actually is.

 

Thanks!

2 REPLIES 2
kallbrandt
Contributor II

Some of the releases have problems with memory leaks - We had exactly that behaviour with a HA-set of 800c around 5.2.2-5.2.5.

 

Upgrade your firmware.

Richie

NSE7

Richie NSE7
ede_pfau

Same idea, upgrade to the latest v5.2.8.

Additionally, review your IPS sensor - I've seen admins activating all categories (4.700+ signatures) and wondering why the memory footprint was around 90%...You only need a subset which depends on the OSes used, client or server, such things. I always deploy different IPS profiles in separate policies, to handle servers and clients.


Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
Labels
Top Kudoed Authors