<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic fwlog and log in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196636#M36713</link>
    <description>&lt;P&gt;When i activate smart event now on the log and monitor there are fw.log and log, what difference between both logs?&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 31 Oct 2023 02:39:41 GMT</pubDate>
    <dc:creator>handiansudianto</dc:creator>
    <dc:date>2023-10-31T02:39:41Z</dc:date>
    <item>
      <title>fwlog and log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196636#M36713</link>
      <description>&lt;P&gt;When i activate smart event now on the log and monitor there are fw.log and log, what difference between both logs?&lt;/P&gt;&lt;DIV class=""&gt;&amp;nbsp;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 31 Oct 2023 02:39:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196636#M36713</guid>
      <dc:creator>handiansudianto</dc:creator>
      <dc:date>2023-10-31T02:39:41Z</dc:date>
    </item>
    <item>
      <title>Re: fwlog and log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196638#M36714</link>
      <description>&lt;P&gt;fw.log is the current log file. The way it has been with CP for the longest time is that by default, fw.log switches every night at midnight or when it reaches 2 GB size, whichever one comes first. Files that end with log are the ones already switched over and they would most likely have the corresponding date in their names.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Tue, 31 Oct 2023 02:57:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196638#M36714</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-10-31T02:57:24Z</dc:date>
    </item>
    <item>
      <title>Re: fwlog and log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196640#M36715</link>
      <description>&lt;P&gt;both logs shown similar logs, but on the log there are many action 'Detect'&lt;/P&gt;</description>
      <pubDate>Tue, 31 Oct 2023 03:05:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196640#M36715</guid>
      <dc:creator>handiansudianto</dc:creator>
      <dc:date>2023-10-31T03:05:05Z</dc:date>
    </item>
    <item>
      <title>Re: fwlog and log</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196760#M36722</link>
      <description>&lt;P&gt;In your first picture, you can see that it's only pulling from fw.log (the current file).&lt;BR /&gt;In the second, it is showing logs from the last 24 hours (again, as your query states).&lt;/P&gt;
&lt;P&gt;You would have to click on the log entry and see the full card to understand why traffic is being Detected.&lt;BR /&gt;However, it is most likely your Threat Prevention configuration.&lt;/P&gt;</description>
      <pubDate>Tue, 31 Oct 2023 22:48:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/fwlog-and-log/m-p/196760#M36722</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-10-31T22:48:07Z</dc:date>
    </item>
  </channel>
</rss>

