<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Sending checkpoint logs over the VPN to the log server in Cloud Firewall</title>
    <link>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213812#M4744</link>
    <description>&lt;P&gt;You can ask TAC for an official answer to this, but I believe what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;said is true. Now, keep in mind one thing, you canNOT ssh to cloud mgmt instance yourself, thats not allowed. You can open API instance, but its limited as far as things you can do. Also, you can restart it yourself ie cpstop;cpstart, but only TAC can do an actual reboot.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Thu, 09 May 2024 22:29:28 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2024-05-09T22:29:28Z</dc:date>
    <item>
      <title>Sending checkpoint logs over the VPN to the log server</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213789#M4742</link>
      <description>&lt;P&gt;Hi,&lt;BR /&gt;&lt;BR /&gt;We have a following setup:&lt;BR /&gt;&lt;BR /&gt;Two Checkpoint clusters - one in Azure, one on premises. They are connected via the VPN.&amp;nbsp;&lt;/P&gt;&lt;P&gt;We have built a log server in Azure, and would like to send the logs from the on premises boxes to this log server.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;However, the logs are not arriving on the log server, they aren't even arriving on the Checkpoints in Azure - they seem to be blocked by the implicit rule.&amp;nbsp;&lt;/P&gt;&lt;P&gt;We don't have a management server, we use Smart Cloud.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;We edited the masters file to point the on premises logs to the internal IP of the log server, rather than the Smart Cloud IP, however the logs still seem to be send out to the log server's Smart Cloud IP (according to the logs in Smart Console).&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Is there any way to make it work? I found a way to override the implicit rule, but this is only applicable to the SMS server, which we don't have.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;Regards,&lt;BR /&gt;Sandgirl&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 15:29:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213789#M4742</guid>
      <dc:creator>Sandgirl</dc:creator>
      <dc:date>2024-05-09T15:29:38Z</dc:date>
    </item>
    <item>
      <title>Re: Sending checkpoint logs over the VPN to the log server</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213795#M4743</link>
      <description>&lt;P&gt;Smart-1 Cloud-managed gateways can only send logs to Infinity Portal.&lt;BR /&gt;This is by design.&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 15:53:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213795#M4743</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-05-09T15:53:10Z</dc:date>
    </item>
    <item>
      <title>Re: Sending checkpoint logs over the VPN to the log server</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213812#M4744</link>
      <description>&lt;P&gt;You can ask TAC for an official answer to this, but I believe what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;said is true. Now, keep in mind one thing, you canNOT ssh to cloud mgmt instance yourself, thats not allowed. You can open API instance, but its limited as far as things you can do. Also, you can restart it yourself ie cpstop;cpstart, but only TAC can do an actual reboot.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 09 May 2024 22:29:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213812#M4744</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-09T22:29:28Z</dc:date>
    </item>
    <item>
      <title>Re: Sending checkpoint logs over the VPN to the log server</title>
      <link>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213907#M4749</link>
      <description>&lt;P&gt;Hey Sandgirl,&lt;/P&gt;
&lt;P&gt;Just out of curiosity, I remembered this post when I spoke with escalation guy about a different case and he confirmed what&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/7"&gt;@PhoneBoy&lt;/a&gt;&amp;nbsp;said is indeed the case, so it is by design.&lt;/P&gt;
&lt;P&gt;Have a nice weekend.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Sat, 11 May 2024 12:56:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Cloud-Firewall/Sending-checkpoint-logs-over-the-VPN-to-the-log-server/m-p/213907#M4749</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-05-11T12:56:47Z</dc:date>
    </item>
  </channel>
</rss>

