<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Log Exporter filter in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87201#M79976</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;here is my targetConfiguration.xmll file&lt;/P&gt;&lt;P&gt;The logs are indeed coming through however, i am also receiving connection logs. i.e accepted traffic connections.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;lt;?xml version="1.0" encoding="utf-8"?&amp;gt;&lt;BR /&gt;&amp;lt;export id="targetObjectUID"&amp;gt;&amp;lt;!--object uuid!--&amp;gt;&lt;BR /&gt;&amp;lt;version&amp;gt;5&amp;lt;/version&amp;gt; &amp;lt;!-- Version of this file--&amp;gt;&lt;BR /&gt;&amp;lt;is_enabled&amp;gt;true&amp;lt;/is_enabled&amp;gt;&amp;lt;!--Is the process allowed to run, and start on cpstart--&amp;gt;&lt;BR /&gt;&amp;lt;!-- Destination section defines the properties of the export target --&amp;gt;&lt;BR /&gt;&amp;lt;destination type="syslog"&amp;gt; &amp;lt;!-- Target output type --&amp;gt;&lt;BR /&gt;&amp;lt;ip&amp;gt;x.x.x.x&amp;lt;/ip&amp;gt;&amp;lt;!--the ip of the syslog server--&amp;gt;&lt;BR /&gt;&amp;lt;port&amp;gt;1514&amp;lt;/port&amp;gt;&amp;lt;!--the port on which the syslog is listening to--&amp;gt;&lt;BR /&gt;&amp;lt;protocol&amp;gt;udp&amp;lt;/protocol&amp;gt;&amp;lt;!--udp/tcp--&amp;gt;&lt;BR /&gt;&amp;lt;!--the configuration of tls--&amp;gt;&lt;BR /&gt;&amp;lt;transport&amp;gt;&lt;BR /&gt;&amp;lt;security&amp;gt;&amp;lt;/security&amp;gt;&amp;lt;!--clear/tls--&amp;gt;&lt;BR /&gt;&amp;lt;!-- the following section is relevant only if &amp;lt;security&amp;gt; is tls --&amp;gt;&lt;BR /&gt;&amp;lt;pem_ca_file&amp;gt;&amp;lt;/pem_ca_file&amp;gt;&lt;BR /&gt;&amp;lt;p12_certificate_file&amp;gt;&amp;lt;/p12_certificate_file&amp;gt;&lt;BR /&gt;&amp;lt;client_certificate_challenge_phrase&amp;gt;&amp;lt;/client_certificate_challenge_phrase&amp;gt;&lt;BR /&gt;&amp;lt;/transport&amp;gt;&lt;BR /&gt;&amp;lt;/destination&amp;gt;&lt;BR /&gt;&amp;lt;!-- Filter Configuration --&amp;gt;&lt;BR /&gt;&amp;lt;dynamicFilter&amp;gt;conf/FilterConfiguration.xml&amp;lt;/dynamicFilter&amp;gt;&lt;BR /&gt;&amp;lt;!-- Source section defines the properties of the input stream that will be exported --&amp;gt;&lt;BR /&gt;&amp;lt;source&amp;gt;&lt;BR /&gt;&amp;lt;log_files&amp;gt;1&amp;lt;/log_files&amp;gt;&amp;lt;!-- on-line[default] | read logs from [number] days back (recommended) | specific file name --&amp;gt;&lt;BR /&gt;&amp;lt;log_types&amp;gt;&amp;lt;/log_types&amp;gt;&amp;lt;!--all[default]|log|audit/--&amp;gt;&lt;BR /&gt;&amp;lt;folder&amp;gt;&amp;lt;/folder&amp;gt;&amp;lt;!--$FWDIR/log[default]|specific path--&amp;gt;&lt;BR /&gt;&amp;lt;read_mode&amp;gt;raw&amp;lt;/read_mode&amp;gt;&amp;lt;!--raw[default]|semi-unified/--&amp;gt;&lt;BR /&gt;&amp;lt;/source&amp;gt;&lt;BR /&gt;&amp;lt;export_log_link&amp;gt;true&amp;lt;/export_log_link&amp;gt; &amp;lt;!-- True | False /--&amp;gt;&lt;BR /&gt;&amp;lt;export_attachment_link&amp;gt;false&amp;lt;/export_attachment_link&amp;gt; &amp;lt;!-- True | False /--&amp;gt;&lt;BR /&gt;&amp;lt;export_link_ip&amp;gt;&amp;lt;/export_link_ip&amp;gt; &amp;lt;!-- empty [defaut] | external IP /--&amp;gt;&lt;BR /&gt;&amp;lt;!-- Format section determines the form (headers and mappings) of the exported logs --&amp;gt;&lt;BR /&gt;&amp;lt;format type="cef"&amp;gt; &amp;lt;!--syslog | cef | leef | generic | splunk | this parameter may differ from the type of destination, for example, destination type = files/format type = CEF --&amp;gt;&lt;BR /&gt;&amp;lt;resolver&amp;gt;&lt;BR /&gt;&amp;lt;mappingConfiguration&amp;gt;&amp;lt;/mappingConfiguration&amp;gt;&amp;lt;!--if empty the fields are sent as is without renaming--&amp;gt;&lt;BR /&gt;&amp;lt;exportAllFields&amp;gt;true&amp;lt;/exportAllFields&amp;gt; &amp;lt;!--in case exportAllFields=true - exported element in fieldsMapping.xml is ignored and fields not from fieldsMapping.xml are exported as notMappedField field--&amp;gt;&lt;BR /&gt;&amp;lt;/resolver&amp;gt;&lt;BR /&gt;&amp;lt;!-- Format header configuration (actual to CEF see ./conf directory) --&amp;gt;&lt;BR /&gt;&amp;lt;formatHeaderFile&amp;gt;&amp;lt;/formatHeaderFile&amp;gt;&lt;BR /&gt;&amp;lt;/format&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;lt;!-- The following section is for future use of log filtering, please do not modify these values -&lt;BR /&gt;-&amp;gt;&lt;BR /&gt;&amp;lt;filter filter_out_by_connection="true"&amp;gt;&lt;BR /&gt;&amp;lt;field name="product"&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;VPN-1 &amp;amp;amp; FireWall-1&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;HTTPS Inspection&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;VPN-1&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;Security Gateway/Management&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;Firewall&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;FG&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;/field&amp;gt;&lt;BR /&gt;&amp;lt;field name="fw_subproduct"&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;VPN-1 &amp;amp;amp; FireWall-1&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;HTTPS Inspection&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;VPN-1&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;Security Gateway/Management&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;Firewall&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;FG&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;/field&amp;gt;&lt;BR /&gt;&amp;lt;/filter&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;lt;/export&amp;gt;&lt;/P&gt;</description>
    <pubDate>Wed, 03 Jun 2020 16:38:28 GMT</pubDate>
    <dc:creator>snghoshi</dc:creator>
    <dc:date>2020-06-03T16:38:28Z</dc:date>
    <item>
      <title>Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/86638#M79972</link>
      <description>&lt;P&gt;Hi, I'm experiencing issues with filtering the logs to export to my external Syslog server from the R80.40.&lt;/P&gt;&lt;P&gt;It seems like any filtering command/option that I enter then all export stops. I am trying to not export traffic events(allowed or denied traffic).&lt;/P&gt;&lt;P&gt;Can someone please share sample config or syntax that I can use?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 28 May 2020 18:12:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/86638#M79972</guid>
      <dc:creator>snghoshi</dc:creator>
      <dc:date>2020-05-28T18:12:06Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/86831#M79973</link>
      <description>I think there is a few examples (or a link to an SK with them) here: &lt;A href="https://community.checkpoint.com/t5/Logging-and-Reporting/Log-Exporter-Filtering/m-p/10359" target="_blank"&gt;https://community.checkpoint.com/t5/Logging-and-Reporting/Log-Exporter-Filtering/m-p/10359&lt;/A&gt;</description>
      <pubDate>Sun, 31 May 2020 05:09:27 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/86831#M79973</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-05-31T05:09:27Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87037#M79974</link>
      <description>&lt;P&gt;Can you please share the commend/filter configuration you used?&lt;/P&gt;
&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jun 2020 08:54:03 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87037#M79974</guid>
      <dc:creator>Dan_Zada</dc:creator>
      <dc:date>2020-06-02T08:54:03Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87041#M79975</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;From your question I can only guess that:&lt;/P&gt;
&lt;P&gt;1. Maybe your filtering file is incorrect.&lt;/P&gt;
&lt;P&gt;2. Maybe you use a wrong field names to filter on and therefore not traffic is seen on your syslog server.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Can you please share your filterConfiguration.xml and targetConfiguration.xml files?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Shay&lt;/P&gt;</description>
      <pubDate>Tue, 02 Jun 2020 09:23:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87041#M79975</guid>
      <dc:creator>Shay_Hibah</dc:creator>
      <dc:date>2020-06-02T09:23:10Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87201#M79976</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;here is my targetConfiguration.xmll file&lt;/P&gt;&lt;P&gt;The logs are indeed coming through however, i am also receiving connection logs. i.e accepted traffic connections.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;lt;?xml version="1.0" encoding="utf-8"?&amp;gt;&lt;BR /&gt;&amp;lt;export id="targetObjectUID"&amp;gt;&amp;lt;!--object uuid!--&amp;gt;&lt;BR /&gt;&amp;lt;version&amp;gt;5&amp;lt;/version&amp;gt; &amp;lt;!-- Version of this file--&amp;gt;&lt;BR /&gt;&amp;lt;is_enabled&amp;gt;true&amp;lt;/is_enabled&amp;gt;&amp;lt;!--Is the process allowed to run, and start on cpstart--&amp;gt;&lt;BR /&gt;&amp;lt;!-- Destination section defines the properties of the export target --&amp;gt;&lt;BR /&gt;&amp;lt;destination type="syslog"&amp;gt; &amp;lt;!-- Target output type --&amp;gt;&lt;BR /&gt;&amp;lt;ip&amp;gt;x.x.x.x&amp;lt;/ip&amp;gt;&amp;lt;!--the ip of the syslog server--&amp;gt;&lt;BR /&gt;&amp;lt;port&amp;gt;1514&amp;lt;/port&amp;gt;&amp;lt;!--the port on which the syslog is listening to--&amp;gt;&lt;BR /&gt;&amp;lt;protocol&amp;gt;udp&amp;lt;/protocol&amp;gt;&amp;lt;!--udp/tcp--&amp;gt;&lt;BR /&gt;&amp;lt;!--the configuration of tls--&amp;gt;&lt;BR /&gt;&amp;lt;transport&amp;gt;&lt;BR /&gt;&amp;lt;security&amp;gt;&amp;lt;/security&amp;gt;&amp;lt;!--clear/tls--&amp;gt;&lt;BR /&gt;&amp;lt;!-- the following section is relevant only if &amp;lt;security&amp;gt; is tls --&amp;gt;&lt;BR /&gt;&amp;lt;pem_ca_file&amp;gt;&amp;lt;/pem_ca_file&amp;gt;&lt;BR /&gt;&amp;lt;p12_certificate_file&amp;gt;&amp;lt;/p12_certificate_file&amp;gt;&lt;BR /&gt;&amp;lt;client_certificate_challenge_phrase&amp;gt;&amp;lt;/client_certificate_challenge_phrase&amp;gt;&lt;BR /&gt;&amp;lt;/transport&amp;gt;&lt;BR /&gt;&amp;lt;/destination&amp;gt;&lt;BR /&gt;&amp;lt;!-- Filter Configuration --&amp;gt;&lt;BR /&gt;&amp;lt;dynamicFilter&amp;gt;conf/FilterConfiguration.xml&amp;lt;/dynamicFilter&amp;gt;&lt;BR /&gt;&amp;lt;!-- Source section defines the properties of the input stream that will be exported --&amp;gt;&lt;BR /&gt;&amp;lt;source&amp;gt;&lt;BR /&gt;&amp;lt;log_files&amp;gt;1&amp;lt;/log_files&amp;gt;&amp;lt;!-- on-line[default] | read logs from [number] days back (recommended) | specific file name --&amp;gt;&lt;BR /&gt;&amp;lt;log_types&amp;gt;&amp;lt;/log_types&amp;gt;&amp;lt;!--all[default]|log|audit/--&amp;gt;&lt;BR /&gt;&amp;lt;folder&amp;gt;&amp;lt;/folder&amp;gt;&amp;lt;!--$FWDIR/log[default]|specific path--&amp;gt;&lt;BR /&gt;&amp;lt;read_mode&amp;gt;raw&amp;lt;/read_mode&amp;gt;&amp;lt;!--raw[default]|semi-unified/--&amp;gt;&lt;BR /&gt;&amp;lt;/source&amp;gt;&lt;BR /&gt;&amp;lt;export_log_link&amp;gt;true&amp;lt;/export_log_link&amp;gt; &amp;lt;!-- True | False /--&amp;gt;&lt;BR /&gt;&amp;lt;export_attachment_link&amp;gt;false&amp;lt;/export_attachment_link&amp;gt; &amp;lt;!-- True | False /--&amp;gt;&lt;BR /&gt;&amp;lt;export_link_ip&amp;gt;&amp;lt;/export_link_ip&amp;gt; &amp;lt;!-- empty [defaut] | external IP /--&amp;gt;&lt;BR /&gt;&amp;lt;!-- Format section determines the form (headers and mappings) of the exported logs --&amp;gt;&lt;BR /&gt;&amp;lt;format type="cef"&amp;gt; &amp;lt;!--syslog | cef | leef | generic | splunk | this parameter may differ from the type of destination, for example, destination type = files/format type = CEF --&amp;gt;&lt;BR /&gt;&amp;lt;resolver&amp;gt;&lt;BR /&gt;&amp;lt;mappingConfiguration&amp;gt;&amp;lt;/mappingConfiguration&amp;gt;&amp;lt;!--if empty the fields are sent as is without renaming--&amp;gt;&lt;BR /&gt;&amp;lt;exportAllFields&amp;gt;true&amp;lt;/exportAllFields&amp;gt; &amp;lt;!--in case exportAllFields=true - exported element in fieldsMapping.xml is ignored and fields not from fieldsMapping.xml are exported as notMappedField field--&amp;gt;&lt;BR /&gt;&amp;lt;/resolver&amp;gt;&lt;BR /&gt;&amp;lt;!-- Format header configuration (actual to CEF see ./conf directory) --&amp;gt;&lt;BR /&gt;&amp;lt;formatHeaderFile&amp;gt;&amp;lt;/formatHeaderFile&amp;gt;&lt;BR /&gt;&amp;lt;/format&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;lt;!-- The following section is for future use of log filtering, please do not modify these values -&lt;BR /&gt;-&amp;gt;&lt;BR /&gt;&amp;lt;filter filter_out_by_connection="true"&amp;gt;&lt;BR /&gt;&amp;lt;field name="product"&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;VPN-1 &amp;amp;amp; FireWall-1&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;HTTPS Inspection&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;VPN-1&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;Security Gateway/Management&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;Firewall&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;FG&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;/field&amp;gt;&lt;BR /&gt;&amp;lt;field name="fw_subproduct"&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;VPN-1 &amp;amp;amp; FireWall-1&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;HTTPS Inspection&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;VPN-1&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;Security Gateway/Management&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;Firewall&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;value&amp;gt;FG&amp;lt;/value&amp;gt;&lt;BR /&gt;&amp;lt;/field&amp;gt;&lt;BR /&gt;&amp;lt;/filter&amp;gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;&amp;lt;/export&amp;gt;&lt;/P&gt;</description>
      <pubDate>Wed, 03 Jun 2020 16:38:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87201#M79976</guid>
      <dc:creator>snghoshi</dc:creator>
      <dc:date>2020-06-03T16:38:28Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87214#M79977</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;Your target configuration looks OK.&lt;BR /&gt;Can you please share your FilterConfiguration.xml file?&lt;BR /&gt;I also want to make sure you have configured it correctly.&lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;Shay</description>
      <pubDate>Wed, 03 Jun 2020 19:46:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87214#M79977</guid>
      <dc:creator>Shay_Hibah</dc:creator>
      <dc:date>2020-06-03T19:46:51Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87246#M79978</link>
      <description>&lt;P&gt;here is my FilterConfiguration.xml&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;lt;filters&amp;gt;&lt;BR /&gt;&amp;lt;filterGroup operator="and"&amp;gt;&lt;BR /&gt;&amp;lt;field name="action" operator="and"&amp;gt;&lt;BR /&gt;&amp;lt;/field&amp;gt;&lt;BR /&gt;&amp;lt;field name="origin" operator="and"&amp;gt;&lt;BR /&gt;&amp;lt;/field&amp;gt;&lt;BR /&gt;&amp;lt;field name="product" operator="and"&amp;gt;&lt;BR /&gt;&amp;lt;/field&amp;gt;&lt;BR /&gt;&amp;lt;/filterGroup&amp;gt;&lt;BR /&gt;&amp;lt;/filters&amp;gt;&lt;BR /&gt;~&lt;/P&gt;</description>
      <pubDate>Thu, 04 Jun 2020 06:33:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87246#M79978</guid>
      <dc:creator>snghoshi</dc:creator>
      <dc:date>2020-06-04T06:33:39Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87247#M79979</link>
      <description>Based on those 2 files it looks that you did not filter anything out and you should see all your logs in syslog server.&lt;BR /&gt;&lt;BR /&gt;1. is that the case? if so, what do you want to filter?&lt;BR /&gt;2. If not, lets take it offline you and I (shayhi@checkpoint.com).&lt;BR /&gt;&lt;BR /&gt;Shay</description>
      <pubDate>Thu, 04 Jun 2020 06:41:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/87247#M79979</guid>
      <dc:creator>Shay_Hibah</dc:creator>
      <dc:date>2020-06-04T06:41:42Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/97755#M79980</link>
      <description>&lt;P&gt;Per SK160754 it states that Filtering is not supported yet on R80.40.&lt;/P&gt;&lt;P&gt;Has this changed?&lt;/P&gt;&lt;P&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk160754" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk160754&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Log Exporter SK122323 also states:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Filtering: choose what to export based on field values.&lt;BR /&gt;(Note: Filtering ability is integrated to&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk153152" target="_blank" rel="noopener"&gt;Jumbo Hotfix Accumulator for R80.30&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;since Take_107, and to&amp;nbsp;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk137592" target="_blank" rel="noopener"&gt;Jumbo Hotfix Accumulator for R80.20&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;since Take_103.)&lt;/LI&gt;&lt;/UL&gt;</description>
      <pubDate>Mon, 28 Sep 2020 20:21:22 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/97755#M79980</guid>
      <dc:creator>Cody_Von_Seelen</dc:creator>
      <dc:date>2020-09-28T20:21:22Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/97764#M79981</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/23649"&gt;@Cody_Von_Seelen&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You are totally right, Log Exporter filtering is supported in R80.40 and the documentation should be updated.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for noticing.&lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 06:18:32 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/97764#M79981</guid>
      <dc:creator>Yaakov_Ohayon</dc:creator>
      <dc:date>2020-09-29T06:18:32Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/113824#M79982</link>
      <description>&lt;P&gt;But have the SK been updated yet - thats the question &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Mar 2021 14:58:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/113824#M79982</guid>
      <dc:creator>Svendsen</dc:creator>
      <dc:date>2021-03-17T14:58:41Z</dc:date>
    </item>
    <item>
      <title>Re: Log Exporter filter</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/113947#M79983</link>
      <description>&lt;P&gt;The SK will be updated in few days, we changed more sections there and added more details about new functionalities.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 18 Mar 2021 14:07:42 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Log-Exporter-filter/m-p/113947#M79983</guid>
      <dc:creator>Yaakov_Ohayon</dc:creator>
      <dc:date>2021-03-18T14:07:42Z</dc:date>
    </item>
  </channel>
</rss>

