Try turning on TCP state logging which will show you how the LDAPS connections are ending (gracefully/FIN, non-gracefully/RST, or timed out by firewall):
sk101221: TCP state logging
Can be easily enabled from the SmartConsole for R80+, on R77.30 or earlier it has to be done from the gateway command line.
--
My book "Max Power: Check Point Firewall Performance Optimization"
now available via http://maxpowerfirewalls.com.
Attend my 60-minute "Be your Own TAC: Part Deux" Presentation
Exclusively at CPX 2025 Las Vegas Tuesday Feb 25th @ 1:00pm