<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Netflow is empty in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132534#M19651</link>
    <description>&lt;P&gt;Hello Chris,&lt;/P&gt;&lt;P&gt;yes, Log and Accounting are enabled for all rules.&lt;/P&gt;&lt;P&gt;We have already compared this problem GW with other - the config is the same. It is not something special, you just enable it, specify the collector and activate for a rule.&lt;/P&gt;</description>
    <pubDate>Mon, 25 Oct 2021 08:27:56 GMT</pubDate>
    <dc:creator>Exonix</dc:creator>
    <dc:date>2021-10-25T08:27:56Z</dc:date>
    <item>
      <title>Netflow is empty</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132429#M19615</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;we have several firewalls (version 80.40) and we have configured them to send Netflow to some SIEM. We receive logs from almost all gateways except one. After investigation, we found that Netflow traffic does not contain any useful information.&lt;/P&gt;&lt;P&gt;How can we troubleshoot this?&lt;/P&gt;&lt;P&gt;Thank you in advance.&lt;/P&gt;</description>
      <pubDate>Fri, 22 Oct 2021 12:51:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132429#M19615</guid>
      <dc:creator>Exonix</dc:creator>
      <dc:date>2021-10-22T12:51:20Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow is empty</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132477#M19627</link>
      <description>&lt;P&gt;How are the rules/policy configured for the troublesome gateway?&lt;/P&gt;
&lt;P&gt;In the Track column for rules, you must select Log and Accounting.&lt;/P&gt;</description>
      <pubDate>Sat, 23 Oct 2021 15:39:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132477#M19627</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2021-10-23T15:39:47Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow is empty</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132478#M19628</link>
      <description>&lt;P&gt;Chris makes a good point. I would personally also compare to see if there are any differences among that specific gateways and the other ones that would potentially cause this issue.&lt;/P&gt;</description>
      <pubDate>Sat, 23 Oct 2021 18:39:54 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132478#M19628</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-10-23T18:39:54Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow is empty</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132534#M19651</link>
      <description>&lt;P&gt;Hello Chris,&lt;/P&gt;&lt;P&gt;yes, Log and Accounting are enabled for all rules.&lt;/P&gt;&lt;P&gt;We have already compared this problem GW with other - the config is the same. It is not something special, you just enable it, specify the collector and activate for a rule.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Oct 2021 08:27:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132534#M19651</guid>
      <dc:creator>Exonix</dc:creator>
      <dc:date>2021-10-25T08:27:56Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow is empty</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132537#M19653</link>
      <description>&lt;P&gt;Noted. For additional context could you please share the model of gateway and installed JHF version?&lt;/P&gt;</description>
      <pubDate>Mon, 25 Oct 2021 09:21:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132537#M19653</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2021-10-25T09:21:28Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow is empty</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132549#M19657</link>
      <description>&lt;P&gt;Not sure in that case, might be worth contacting TAC and troubleshooting further.&lt;/P&gt;</description>
      <pubDate>Mon, 25 Oct 2021 13:10:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/132549#M19657</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2021-10-25T13:10:08Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow is empty</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/133300#M19823</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello Chris, I hope you asked about this:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;Product Name: VMware Virtual Platform&lt;BR /&gt;Product Name: 440BX Desktop Reference Platform&lt;/P&gt;&lt;P&gt;HOTFIX_R80_40_JUMBO_HF_MAIN Take: 94&lt;BR /&gt;BUNDLE_R80_40_JUMBO_HF_MAIN Take: 94&lt;/P&gt;</description>
      <pubDate>Fri, 05 Nov 2021 11:55:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Netflow-is-empty/m-p/133300#M19823</guid>
      <dc:creator>Exonix</dc:creator>
      <dc:date>2021-11-05T11:55:41Z</dc:date>
    </item>
  </channel>
</rss>

