cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2976
Views
0
Helpful
1
Replies

TCP flow control on Checkpoint firewall ?

dave.keith
Level 1
Level 1

Hello,

I know, this is not really a Cisco related question, but with the outstanding expertise out there I though to try asking here ......

We are seeing a curious slow-down on our website downloads.  The server is in a DMZ with 100M or GE interfaces throughout.  Our Internet service is a 15M pipe, through a 100M interface/switch/outside segment.  Sometimes we see downloads slow to pretty much 0 throughput.  When this happens I see a huge number of re-ACKS (from the firewall to the server) and retransmissions (from the server to the firewall).  It's like a retransmission storm !  Anyone shed any light onto this situation ?  I have searched many different ways and have come up with nothing that describes our symptoms.  Any help is greatly appreciated.

Thanks,

Dave

1 Reply 1

mohanraj1
Level 1
Level 1

Hello,

Try to increase the TCP window buffer size in the firewall. This should help.

default value is 1024, increase to maximum 65535.

Regards,

Mohan

Review Cisco Networking for a $25 gift card