- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello Everyone,
We are currently in advanced stages of developing a Log Exporter update that will add CIM support.
This will give us better Splunk integration for CIM oriented apps and dashboards (e.g. Splunk Enterprise Security).
We are currently looking for customers who wish to test this new feature (in either their lab or production) and share their feedback with us.
I would also really appreciate if in your email you could also add the following details:
The new update will also enable the Log Exporter to work in a semi-unified mode.
For those who are unfamiliar with this setting, it means that updates are unified with their original log before they are exported. This makes the information in the update log complete and makes the update log itself more readable (in raw mode you had to manually search for the original log to make sense of the update).
Best Regards,
Yonatan
Hi Yonatan,
I am deploying R80.10 Checkpoint FW(3 Tie architecture) in AWS. I am using Terraform for resource provisioning and Ansible for config automation. I am looking for the solution to add Ansible config to send log from Checkpoint FW to Splunk server, details are below,
Please suggest on this, if possible please share the example of script should look like.
Thank you,
Amit Chaubey
Hi Yonatan,
I am deploying R80.10 Checkpoint FW(3 Tie architecture) in AWS. I am using Terraform for resource provisioning and Ansible for config automation. I am looking for the solution to add Ansible config to send log from Checkpoint FW to Splunk server, details are below,
Please suggest on this, if possible please share the example of script should look like.
Thank you,
Amit Chaubey
Hi Amit,
Sorry for the late response.
We've basically closed off the EA at this point, but after some internal debate and since we haven't tested this new feature on AWS we decided that this is an interesting use case and will gladly add you to the EA cycle as well.
Just a small clarification based on your post - the logs will be sent from the gateway to the management/log server and will be forwarded from there to the Splunk server. They are not sent directly from the gateway to Splunk.
If you still wish to participate please contact me offline at (edited as the feature is already GA)
Regards,
Yonatan
In case anyone has missed it, this is GA now. For more information see this discussion: *New* Splunk App for Check Point Logs.
Hello, Mr. Yonatan.
Are you still interested in working with customers trying to implement the Check Point App for Splunk in a distributed Splunk Enterprise deployment?
Gaia R80.20
Distributed Splunk 7.2.4
First use of Log Exporter, somewhat new to Checkpoint, Splunk noob. The only available Checkpoint documentation that I've been able to find for integrating Log Exporter with Splunk appears to be for a standalone Splunk environment.
Thanks---David
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 16 | |
| 15 | |
| 7 | |
| 5 | |
| 5 | |
| 5 | |
| 4 | |
| 4 | |
| 4 | |
| 4 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY