<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Firewall Log Archive and Import in R80.10/ R77.30 in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-Log-Archive-and-Import-in-R80-10-R77-30/m-p/31527#M97667</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What you describe is more or less the correct process.&lt;/P&gt;&lt;P&gt;However, if you want the log files to be indexed in SmartEvent, then you need to view the&amp;nbsp;Importing Log Files from SmartEvent Servers section of:&amp;nbsp;&lt;A class="link-titled" href="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_LoggingAndMonitoring_AdminGuide/html_frameset.htm" title="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_LoggingAndMonitoring_AdminGuide/html_frameset.htm"&gt;Logging and Monitoring R80.10 Administration Guide&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 22 Feb 2018 23:38:41 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2018-02-22T23:38:41Z</dc:date>
    <item>
      <title>Firewall Log Archive and Import in R80.10/ R77.30</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-Log-Archive-and-Import-in-R80-10-R77-30/m-p/31526#M97666</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Is it possible to archive the log in Management Server? (Just as the idea as archive our email from mail server)&lt;/P&gt;&lt;P&gt;Can the log file be exported from the Management Server from time to time (manually), store the log file in other storage (as the size of storage in log server/management server is limited)r&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And import the log file and read on SmartConsole when it is needed?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have tried my own method as ftp the log files&amp;nbsp;in $fwdir/log/&amp;nbsp; &amp;nbsp;directory.&lt;BR /&gt;Seems after export and import the log files the SmartConsole can read the logs again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But I cannot find this way in official KB.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there any official KB or way for this purpose?&lt;/P&gt;&lt;P&gt;Thank you!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Feb 2018 08:55:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-Log-Archive-and-Import-in-R80-10-R77-30/m-p/31526#M97666</guid>
      <dc:creator>Longson_Ho1</dc:creator>
      <dc:date>2018-02-22T08:55:59Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall Log Archive and Import in R80.10/ R77.30</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-Log-Archive-and-Import-in-R80-10-R77-30/m-p/31527#M97667</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What you describe is more or less the correct process.&lt;/P&gt;&lt;P&gt;However, if you want the log files to be indexed in SmartEvent, then you need to view the&amp;nbsp;Importing Log Files from SmartEvent Servers section of:&amp;nbsp;&lt;A class="link-titled" href="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_LoggingAndMonitoring_AdminGuide/html_frameset.htm" title="https://sc1.checkpoint.com/documents/R80.10/WebAdminGuides/EN/CP_R80.10_LoggingAndMonitoring_AdminGuide/html_frameset.htm"&gt;Logging and Monitoring R80.10 Administration Guide&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 22 Feb 2018 23:38:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-Log-Archive-and-Import-in-R80-10-R77-30/m-p/31527#M97667</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2018-02-22T23:38:41Z</dc:date>
    </item>
    <item>
      <title>Re: Firewall Log Archive and Import in R80.10/ R77.30</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-Log-Archive-and-Import-in-R80-10-R77-30/m-p/31528#M97668</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;CP logs are not very simple as they consist of different - mostly unreadable -&amp;nbsp; files, but if you know how, you can backup these logs and transfer to a e.g. different SMS for view, see &lt;EM&gt;&lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk92920&amp;amp;partition=Advanced&amp;amp;product=Security"&gt;sk92920 How to open FireWall log (fw.log) from a different Security Management Server in SmartView Tracker&lt;/A&gt;.&lt;/EM&gt;&lt;EM&gt; &lt;/EM&gt;If you just want to read the cotent of the log files or export them into a readable version, please consult &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk39573&amp;amp;partition=General&amp;amp;product=Security"&gt;&lt;EM&gt;sk39573 How to read a Check Point log file in its native format&lt;/EM&gt;&lt;/A&gt;. If the SMS has not much room for logs, you can also use a syslog server as a secondary log server and copy the FW logs to it in regular intervalls, see &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk115392&amp;amp;partition=Advanced&amp;amp;product=Security"&gt;&lt;EM&gt;sk115392 How to export Check Point logs to a Syslog server using CPLogToSyslog &lt;/EM&gt;&lt;/A&gt;for details!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 23 Feb 2018 12:50:57 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Firewall-Log-Archive-and-Import-in-R80-10-R77-30/m-p/31528#M97668</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2018-02-23T12:50:57Z</dc:date>
    </item>
  </channel>
</rss>

