Resolve intermittent or no connectivity with SDC

This task resolves intermittent or no connectivity issues with Secure Device Connector (SDC) that occur when disk space usage exceeds 80 percent.

The Secure Device Connector (SDC) has been installed on CentOS 7 virtual machines up to now. However, as CentOS has reached its end-of-life and is no longer supported by Firewall in Security Cloud Control, we recommend migrating all SDCs from CentOS 7 to an Ubuntu virtual machine.

For more information, see Migrate an On-Premises Secure Device Connector and Secure Event Connector from a CentOS 7 Virtual Machine to an Ubuntu Virtual Machine.

This procedure applies only to an on-premise SDC and if you are still using CentOS.

Symptom: Intermittent or no connectivity with SDC.

Diagnosis: This problem may occur if the disk space is almost full (above 80%).

Before you begin

Follow these steps to check the disk space usage before performing this task:

  1. Open the console for your Secure Device Connector (SDC) VM.

  2. Log in with the username cdo.

  3. Enter the password created during the initial login.

  4. First, check the amount of free disk space by typing df -h to confirm that there is no free disk space available.

    You can confirm that the disk space was consumed by the Docker. The normal disk usage is expected to be under 2 Gigabytes.

  5. To see the disk usage of the Docker folder, execute sudo du -h /var/lib/docker | sort -h.

    You can see the disk space usage of the Docker folder.

Follow these steps to configure Docker log rotation if the disk space usage of the Docker folder is almost full:

Procedure


Step 1

Execute sudo vi /etc/docker/daemon.json.

Step 2

Insert the following lines to the file.

Example:

{

"log-driver": "json-file",

"log-opts": {"max-size": "100m", "max-file": "5" }

}

  • Max-size: To force a log rotation once the current file reaches the maximum size.

  • Max-file: To delete excess rotated log files when the maximum limit it reached.

Step 3

Press ESC and then type :wq! to write the changes and close the file.

Note

You can execute sudo cat /etc/docker/daemon.json to verify the changes made to the file.

Step 4

Execute sudo systemctl restart docker to restart the docker file.

It will take a few minutes for the changes to take effect. You can execute sudo du -h /var/lib/docker | sort -h to see the updated disk usage of the docker folder.

Step 5

Execute df -h to verify that the free disk size has increased.

Step 6

Before your SDC status can change from Unreachable to Active, go to the Secure Connectors tab which you can navigate to from Administration > Integrations > Firewall Management Center and click Request Reconnect from the Actions menu.


The SDC status changes from Unreachable to Active, and connectivity issues are resolved.