<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AWS - Exporting Firewall Logs  in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26204#M3414</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm thinking it will require some configuration and it might be the actual premise of the question. ATRG SK111060 touches on it and thought someone might have some experience setting that up?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 12 Sep 2018 01:32:23 GMT</pubDate>
    <dc:creator>Ed_Gonzalez</dc:creator>
    <dc:date>2018-09-12T01:32:23Z</dc:date>
    <item>
      <title>AWS - Exporting Firewall Logs</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26201#M3411</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;With an on premise management console overseeing the AWS firewalls there is a concern on keeping track of the audit logs. Any recommendations to keep track of them; exporting them locally? Any SK?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Sep 2018 23:12:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26201#M3411</guid>
      <dc:creator>Ed_Gonzalez</dc:creator>
      <dc:date>2018-09-11T23:12:12Z</dc:date>
    </item>
    <item>
      <title>Re: AWS - Exporting Firewall Logs</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26202#M3412</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please clarify your question.&lt;/P&gt;&lt;P&gt;According to your post, you are already managing the CloudGuard IaaS gateways with conventional, on-premises management server. So you are logging everything to it.&lt;/P&gt;&lt;P&gt;If this is the case, then it does not matter that your VSAs are in AWS, the logs are still local and are subject to the same backup and recovery procedures as before.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Sep 2018 23:17:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26202#M3412</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-09-11T23:17:24Z</dc:date>
    </item>
    <item>
      <title>Re: AWS - Exporting Firewall Logs</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26203#M3413</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That was exactly my&amp;nbsp;assumption but had to ask to confirm things. Thanks!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 12 Sep 2018 01:01:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26203#M3413</guid>
      <dc:creator>Ed_Gonzalez</dc:creator>
      <dc:date>2018-09-12T01:01:42Z</dc:date>
    </item>
    <item>
      <title>Re: AWS - Exporting Firewall Logs</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26204#M3414</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I'm thinking it will require some configuration and it might be the actual premise of the question. ATRG SK111060 touches on it and thought someone might have some experience setting that up?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 12 Sep 2018 01:32:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26204#M3414</guid>
      <dc:creator>Ed_Gonzalez</dc:creator>
      <dc:date>2018-09-12T01:32:23Z</dc:date>
    </item>
    <item>
      <title>Re: AWS - Exporting Firewall Logs</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26205#M3415</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry, that's for NSX which is totally different but will play a similar challenge since they also bought NSX. With said, is it that easy for AWS to store the logs on local smartconsole? No configurations etc?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 12 Sep 2018 02:07:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26205#M3415</guid>
      <dc:creator>Ed_Gonzalez</dc:creator>
      <dc:date>2018-09-12T02:07:47Z</dc:date>
    </item>
    <item>
      <title>Re: AWS - Exporting Firewall Logs</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26206#M3416</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The management interface of the vSEC, or CloudGuard is exposed to the Internet by design and is getting assigned the static public IP as a normal part of the installation process.&lt;/P&gt;&lt;P&gt;In a sense, it is no different from any remotely managed gateway, such as those located in a bank branches.&lt;/P&gt;&lt;P&gt;When Management Server connecting to it initially, SIC takes care of establishing secure communication channel for management and log shipping.&lt;/P&gt;&lt;P&gt;Management server itself though, should be statically NATed on your local gateway to a public IP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since it'll be the only management server connected to the gateway, it will automatically be defined as a target for logging.&lt;/P&gt;&lt;P&gt;If you have separate log servers, SmartEvent appliances, etc., situation may be slightly more complex.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers,&lt;/P&gt;&lt;P&gt;Vladimir&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 12 Sep 2018 03:40:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/AWS-Exporting-Firewall-Logs/m-p/26206#M3416</guid>
      <dc:creator>Vladimir</dc:creator>
      <dc:date>2018-09-12T03:40:02Z</dc:date>
    </item>
  </channel>
</rss>

