<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Checkpoint parameter monitoring - Log - File Path in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-parameter-monitoring-Log-File-Path/m-p/234969#M45563</link>
    <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;Product: OpenServer 16vcores - R81.20 take 89 - Distributed&lt;/P&gt;&lt;P&gt;The purpose of this question is to monitor the performance of the Checkpoint Cluster&amp;nbsp;in case the parameters in this cluster pair suddenly become overloaded,&amp;nbsp;so we can take precautions when the system shows signs of abnormality.&lt;/P&gt;&lt;P&gt;I wanted to ask does the log in checkpoint can have CPU Usage, RAM, Disk, Bandwidth interfaces, System Uptime? So we can use the SIEM monitor that log =&amp;gt; alert.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I already using those paths to collect the file if it is created for case high CPU:&lt;/P&gt;&lt;DIV&gt;/var/log/spike_detective/&lt;/DIV&gt;&lt;DIV&gt;/var/log/crash,&lt;/DIV&gt;&lt;DIV&gt;/var/log/dump/usermode&lt;/DIV&gt;&lt;DIV&gt;/var/log/message*&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Is there any other file path I can collect for this monitor?&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;If anyone facing this problem before or have any document about this, please share for me.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Thank you so much.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Best Regards,&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Kha&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;</description>
    <pubDate>Fri, 06 Dec 2024 22:22:24 GMT</pubDate>
    <dc:creator>Mk_83</dc:creator>
    <dc:date>2024-12-06T22:22:24Z</dc:date>
    <item>
      <title>Checkpoint parameter monitoring - Log - File Path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-parameter-monitoring-Log-File-Path/m-p/234969#M45563</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;Product: OpenServer 16vcores - R81.20 take 89 - Distributed&lt;/P&gt;&lt;P&gt;The purpose of this question is to monitor the performance of the Checkpoint Cluster&amp;nbsp;in case the parameters in this cluster pair suddenly become overloaded,&amp;nbsp;so we can take precautions when the system shows signs of abnormality.&lt;/P&gt;&lt;P&gt;I wanted to ask does the log in checkpoint can have CPU Usage, RAM, Disk, Bandwidth interfaces, System Uptime? So we can use the SIEM monitor that log =&amp;gt; alert.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I already using those paths to collect the file if it is created for case high CPU:&lt;/P&gt;&lt;DIV&gt;/var/log/spike_detective/&lt;/DIV&gt;&lt;DIV&gt;/var/log/crash,&lt;/DIV&gt;&lt;DIV&gt;/var/log/dump/usermode&lt;/DIV&gt;&lt;DIV&gt;/var/log/message*&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Is there any other file path I can collect for this monitor?&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;If anyone facing this problem before or have any document about this, please share for me.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Thank you so much.&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Best Regards,&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;Kha&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;</description>
      <pubDate>Fri, 06 Dec 2024 22:22:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-parameter-monitoring-Log-File-Path/m-p/234969#M45563</guid>
      <dc:creator>Mk_83</dc:creator>
      <dc:date>2024-12-06T22:22:24Z</dc:date>
    </item>
    <item>
      <title>Re: Checkpoint parameter monitoring - Log - File Path</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-parameter-monitoring-Log-File-Path/m-p/234973#M45565</link>
      <description>&lt;P&gt;We don't necessarily write this in plainly readable log files.&lt;BR /&gt;We do track overall system health in cpview:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk101878" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk101878&lt;/A&gt;&lt;BR /&gt;You may also want to use Skyline to stream relevant data via OpenTelemetry:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk178566" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk178566&lt;/A&gt;&lt;BR /&gt;See also HCP:&amp;nbsp;&lt;A href="https://support.checkpoint.com/results/sk/sk171436" target="_blank"&gt;https://support.checkpoint.com/results/sk/sk171436&lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Dec 2024 23:43:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Checkpoint-parameter-monitoring-Log-File-Path/m-p/234973#M45565</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-12-06T23:43:23Z</dc:date>
    </item>
  </channel>
</rss>

