While preparing to add a second external interface and a T1 to have a dedicated T1 for a site-to-site VPN with an Edge device and remote VPN users I ran across "Wire Mode". I currently am not using Wire Mode for this Site-to-Site VPN with a branch office, it appears if I enable this I could see better performance, any reason I wouldn't want to enable Wire Mode for this VPN? This Branch office is a building we have in Mexico, the Edge firewall at that location controls their access to the internet and the VPN to the NGX Splat firewall at this location, I would think this would be considered trusted.
It appears to enable Wire Mode, I just need to enable it on the VPN Community and the NGX firewall object. I don't see any Wire Mode settings on the Edge object. John Scanned by Check Point Total Security Gateway. ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL PROTECTED] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [EMAIL PROTECTED] =================================================
