Logs should give a tip, search for:
source: local ip, dst: remote IP (so from encryption domain IP to other side)
source: remote ip, dst: local IP (from local internal IP to remote encryption domain IP)
source: remote peer ip (of the other firewall)
destination: remote peer ip (of the other firewall)
Is there NAT or NAT-T in between? What vendor is on other side?
Give this one also a try:
https://support.checkpoint.com/results/sk/sk157473
-------
If you like this post please give a thumbs up(kudo)! 🙂