Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
TemjinLeow
Explorer

No direct log forwarding to third party syslog server for Checkpoint Firewall v81.20

Hi Guys,

Can anyone confirm if, starting from version R81.20, direct log forwarding to external SIEMs, third-party syslog servers, or other log collectors is no longer supported?

My customer mentioned that Check Point TAC informed them of this.

This came as a surprise to me.

Can anyone verify whether this is accurate?

Thank you.

0 Kudos
3 Replies
PhoneBoy
Admin
Admin

It does seem to be supported by the following SK, which does not list R81.20 and above as supported versions: https://support.checkpoint.com/results/sk/sk87560 
Having said that, I believe the functionality is still there (wasn't removed).

0 Kudos
simonemantovani
MVP Silver
MVP Silver

Hello

the feature is still working, some of my customer with R81.20 are using it to forward traffic logs to a syslog collector (we use it, in some cases, as an alternative solution to the Log Exporter from Management) 

0 Kudos
Chris_Atkinson
MVP Platinum CHKP MVP Platinum CHKP
MVP Platinum CHKP

Context is perhaps key were they asking for Firewall logs only or also other TP blades and was it understood that way?

CCSM R77/R80/ELITE
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events