| CPUG | |
| The Check Point User Group | |
| A Resource For The Check Point Community. Fast. Useful. Independent. | |
|
| |||||||
![]() |
| | LinkBack | Thread Tools | Display Modes |
| |||
| Hello, I have a Site to Site VPN created via two NGX firewall. Is there anyway to speed up performance between the two sites. Both are connected to a T1 to the internet. Both firewall are running Windows 2003 server. Regards, -y |
| |||
| Quote:
1. Turn on site-to-site IP compression (free, and easy to do). You can configure this in your VPN settings. 2. Consider traffic shaping (expensive, and hard to do). |
| |||
| Quote:
|
| |||
| I think SPLAT ...And some facts from CP site http://www.checkpoint.com/products/c...s_product.html SecurePlatform Basic 200-500 Mbps SecurePlatform Mid-Range 1-3 Gbps SecurePlatform High Performance >3 Gbps Windows Basic 200-500 Mbps Windows Mid Range 200-500 Mbps Windows High Performance 500-1000 Mbps |
| |||
| Quote:
The problem is the congestion point. It is on the ISP side. Two types of traffic came to IPS router toward you firewall: encrypted VPN traffic and normal internet replays. ISP router need to understand and prioritize which traffic goes first. Is the link from you FW to the ISP congested prioritization on the firewall do not give any benefits. |
![]() |
| Thread Tools | |
| Display Modes | |
| |