License Node Limited Exceeded
From Tech-Wiki
More actions
Historical Check Point FireWall-1 NG limited-node licence troubleshooting.
Legacy / version-specific guidance
This article is tied to old NG/NG FP3 host-count licensing and internal files. It is not current R8x licensing guidance.
Validation status
Reviewed during the Tech-Wiki Wave 3 migration on 27 September 2026. The historical procedure is retained for engineers supporting older estates, but is not presented as the default approach for a new deployment.
Do not use the old deletion/flush procedure on current gateways
The historical file/database operations below are retained only for legacy NG systems.
Historical procedure
Symptoms:
- Error: "too many internal hosts"
- Traffic is processed very slowly
- Operating system hangs
- The log is full of errors
There are many possible causes for this error:
- The number of nodes behind the firewall is greater than allowed by limited hosts license
- The external.if file doesn't contain the exact name of the firewall external interface
- Internal objects with Static NAT are misconfigured
- Routing tables are not properly configured
- Automatic Private IP Addressing (APIPA) on Windows is configured
Solution:
FireWall-1 NG: 1) From the command line, stop firewall services with "cpstop". 2) Remove the files $FWDIR/database/fwd.h and $CPDIR/database/fwd.hosts. 3) Type "cpstart" to start firewall services. 4) Type the command "fw tab -t host_table -x" to clear entries in the host_table table.