<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hosted Software Deployment behind Firewall- Download is limited to 2Mbps in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110107#M15102</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have an on-premise Endpoint Software Management/Deployment system (ESM) in HQ, our external or roaming users once trying to download software from the ESM, we noticed that the download rate in the clients are only limited to 2Mbps.&lt;/P&gt;&lt;P&gt;We have 300Mbps internet bandwidth in HQ and we have dedicated line for this. We expect the download to be not as 2mbps only. Can please help what to check?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Gateway: 12000&lt;/P&gt;&lt;P&gt;Version R80.30&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-left" image-alt="Screen Shot 2021-02-08 at 12.43.08 PM.png" style="width: 390px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/10487i1C3EC5DFC8BDBBE3/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2021-02-08 at 12.43.08 PM.png" alt="Screen Shot 2021-02-08 at 12.43.08 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 08 Feb 2021 04:43:43 GMT</pubDate>
    <dc:creator>Theo</dc:creator>
    <dc:date>2021-02-08T04:43:43Z</dc:date>
    <item>
      <title>Hosted Software Deployment behind Firewall- Download is limited to 2Mbps</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110107#M15102</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have an on-premise Endpoint Software Management/Deployment system (ESM) in HQ, our external or roaming users once trying to download software from the ESM, we noticed that the download rate in the clients are only limited to 2Mbps.&lt;/P&gt;&lt;P&gt;We have 300Mbps internet bandwidth in HQ and we have dedicated line for this. We expect the download to be not as 2mbps only. Can please help what to check?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Gateway: 12000&lt;/P&gt;&lt;P&gt;Version R80.30&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-left" image-alt="Screen Shot 2021-02-08 at 12.43.08 PM.png" style="width: 390px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/10487i1C3EC5DFC8BDBBE3/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screen Shot 2021-02-08 at 12.43.08 PM.png" alt="Screen Shot 2021-02-08 at 12.43.08 PM.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Feb 2021 04:43:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110107#M15102</guid>
      <dc:creator>Theo</dc:creator>
      <dc:date>2021-02-08T04:43:43Z</dc:date>
    </item>
    <item>
      <title>Re: Hosted Software Deployment behind Firewall- Download is limited to 2Mbps</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110109#M15104</link>
      <description>&lt;P&gt;Assuming that your network interfaces are running clean (netstat -ni), it is almost certainly a configuration issue with the 3 Threat Prevention blades you have enabled.&amp;nbsp; If you temporarily disable all three of the TP blades and reinstall policy, does performance improve?&lt;/P&gt;</description>
      <pubDate>Mon, 08 Feb 2021 04:51:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110109#M15104</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2021-02-08T04:51:39Z</dc:date>
    </item>
    <item>
      <title>Re: Hosted Software Deployment behind Firewall- Download is limited to 2Mbps</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110119#M15107</link>
      <description>&lt;P&gt;Hi Timothy,&lt;/P&gt;&lt;P&gt;Thanks for the reply, but I can't disable any of the TP blades since this is in production. Was there any exception we can set for download rate for the on-prem ESM if the client is on external network?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Mon, 08 Feb 2021 07:18:26 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110119#M15107</guid>
      <dc:creator>Theo</dc:creator>
      <dc:date>2021-02-08T07:18:26Z</dc:date>
    </item>
    <item>
      <title>Re: Hosted Software Deployment behind Firewall- Download is limited to 2Mbps</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110180#M15130</link>
      <description>&lt;P&gt;In that case, create what I call a null TP profile with all TP feature boxes unchecked as shown below.&amp;nbsp; Place a rule at the top of your TP policy matching the ESM traffic you wish to exclude, and put the null profile in the Action field; this will completely exclude that traffic from TP inspection.&amp;nbsp; If you have more than one TP layer (not common), the rule with the null TP profile needs to be placed at the top of all of them.&amp;nbsp; Note that this null profile technique is very different from a TP exception, which will not save any overhead.&amp;nbsp; If this substantially improves ESM speed, you need to tune your TP configuration.&lt;/P&gt;
&lt;P&gt;If that doesn't improve things, check your APCL/URLF rules/layer and make sure that you are not using a Destination of "Any" in those rules (use "Internet" instead) to avoid pulling this ESM traffic into the Medium path for unnecessary inspection.&amp;nbsp; Also make sure that you do not have any Limit actions set in your APCL/URLF rules or the QoS blade enabled with limits configured which might be slowing down the ESM traffic.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="null.jpg" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/10492i557B51108D205C1E/image-size/large?v=v2&amp;amp;px=999" role="button" title="null.jpg" alt="null.jpg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 08 Feb 2021 12:32:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Hosted-Software-Deployment-behind-Firewall-Download-is-limited/m-p/110180#M15130</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2021-02-08T12:32:01Z</dc:date>
    </item>
  </channel>
</rss>

