<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: R80.30 API Access for Threat Prevention Stats in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/R80-30-API-Access-for-Threat-Prevention-Stats/m-p/108109#M20618</link>
    <description>&lt;P&gt;Hi PhoneBoy. Thanks very much for clarifying!&lt;/P&gt;</description>
    <pubDate>Mon, 18 Jan 2021 17:22:24 GMT</pubDate>
    <dc:creator>danog</dc:creator>
    <dc:date>2021-01-18T17:22:24Z</dc:date>
    <item>
      <title>R80.30 API Access for Threat Prevention Stats</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-30-API-Access-for-Threat-Prevention-Stats/m-p/108105#M20616</link>
      <description>&lt;P&gt;Hi. Each month I give my manager a report that includes a screenshot of the Threat Prevention statistics from the MGMT server (&lt;SPAN&gt;number of high risk attacks, prevented attacks, etc). Now the aim is to see if this data can be collected automatically via an API.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I see on the Threat Prevention API Guide that it mentions API web service. I'm working with my data engineering colleagues on this but I'm not sure where to start. Firstly, is this particular information accessible via API? Would I have to give external access to the MGMT server as we'd be collecting data from an external location?&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The API guide seems to relate to something else that we're not looking to implement. Any advice would be appreciated!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jan 2021 16:43:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-30-API-Access-for-Threat-Prevention-Stats/m-p/108105#M20616</guid>
      <dc:creator>danog</dc:creator>
      <dc:date>2021-01-18T16:43:59Z</dc:date>
    </item>
    <item>
      <title>Re: R80.30 API Access for Threat Prevention Stats</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-30-API-Access-for-Threat-Prevention-Stats/m-p/108108#M20617</link>
      <description>&lt;P&gt;The Threat Prevention API is mostly about submitting files to be emulated to find out if it’s malicious or not.&lt;BR /&gt;Reporting (statistics, etc) is all on the management server.&lt;BR /&gt;Those statistics are correlated from the logs and the like and are available as SmartEvent reports but not currently consumable via API.&lt;BR /&gt;You can consume logs via API in the most recent versions and potentially generate your own statistics or export your logs via syslog to a SIEM and have that generate the relevant statistics.&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jan 2021 17:17:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-30-API-Access-for-Threat-Prevention-Stats/m-p/108108#M20617</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2021-01-18T17:17:31Z</dc:date>
    </item>
    <item>
      <title>Re: R80.30 API Access for Threat Prevention Stats</title>
      <link>https://community.checkpoint.com/t5/General-Topics/R80-30-API-Access-for-Threat-Prevention-Stats/m-p/108109#M20618</link>
      <description>&lt;P&gt;Hi PhoneBoy. Thanks very much for clarifying!&lt;/P&gt;</description>
      <pubDate>Mon, 18 Jan 2021 17:22:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/R80-30-API-Access-for-Threat-Prevention-Stats/m-p/108109#M20618</guid>
      <dc:creator>danog</dc:creator>
      <dc:date>2021-01-18T17:22:24Z</dc:date>
    </item>
  </channel>
</rss>

