So we have a firewall cluster running R80.40 and users are having slow login issues (users take 4-5 minutes to get logged into their windows accounts for some sites), tried to check for any drops on the logs in smartconsole and dont see anything there, did live packet captures on the firewall and we could see some reset packets but not sure what is sending those reset packets, did fw ctl zdebug and didnt see any drops, so is there a way to know if the firewall itself is sending reset packets apart from the above methods?
Also where can i check for such tcp (reset,etc) settings on the gateway itself?
Our management servers are on R80.20
Thank You.