UPDATE (for future people who might run into this issue): After following @the_rock link regarding the encryption (https://support.checkpoint.com/results/sk/sk73980) I changed my VPN Tunnel Encryption to the fastest based on the link just provdied (AES-128, MD5, Group 2 (1024 bit) respectively. This yielded an increase from 150Mbps/175Mbps to 250Mbps download/upload. I was hoping for better, but an improvement, it's better than nothing. 🙂
A couple of days later I decided to open a TAC as per suggested by @the_rock in this post. We spent several hours doing a tcpdump/package capture to see if there's anything amiss, but nothing came out of that, everything was working as expected. The TAC tech folks said this was pretty good speeds for those SMB firewalls. So left it alone. That same evening, decided to update all the firewalls to the latest verison from R81.10.10 to R81.10.17.
After doing this, to my surprice, I had gain yet another boost. Now i'm getting consistently 400+ Mbps download/upload!
What gives? I'm not sure if it was the reboot of the firewall after the Encryption changes or the update to R81.10.17 (or a combination of both). the fact is, now i'm getting acceptable speeds in by site-to-sites. that's about 50% fo the link speed which i'm happy about.
Thank you all who provided guidance and assisted me in this one, what a great community of folks we have here! 🙂
(screenshot of the resutls below)
