- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
Hi CP,
Regrading to Threat Prevention log if we not see a few days it's cause from Policy or anything ?
Could be several things probably best reviewed via a remote session rather than guessing.
With that said are you still receiving normal firewall logs from the same Gateways or no?
We got the firewall logs as normal on the same gateway. And just last few days that we did not get threat prevention logs.
Which JHF take is applied to this environment and are the relevant Threat Prevention blades still enabled on the gateway object?
Additionally would anyone have configured fast_accel rules recently?
Again, probably best to contact TAC to review via a remote session.
Threat prevention blades are still enable on the gateway object and as I mention we did not change anything on on that.
Again please provide all the requested info as follows:
- Which Jumbo/JHF version is installed on-top of R81.10?
- Output of command: fw stat -b AMW
- Run CheckME and review logs
If you don't wish to do so here for whatever reason then please consult further with TAC via a remote session to diagnose the problem more efficiently.
May I ask you, Normally threat prevention logs are always detect right?
No they will typically be either Detect or Prevent depending on your configuration/policy and the type of threat encountered.
Please review your smartlog filters...
Yes, I concern because it's just last week that I can not see the logs detection and prevention. That I think it may any issue.
There isn't sufficient information available here to say apart from the obvious categories
Please expand the IPS log card if you need further insight
Might just be that the gateway is not sending logs:
Or some configuration issue.
Did you see TP logs before?
Do you see firewall logs?
Might be that the rule is set not to track?
Can you check the Threat Prevention Policy is installed properly?
Please share the output of fw stat -b AMW on the Security Gateway
We did not change anything on threat prevention policy. And just last few days did not get threat prevention logs.
Please provide output of fw stat -b AMW run on the gateway as requested earlier in the thread.
http://www.cpcheckme.com will light up your Threat Prevention logs and tell you if it is working correctly.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 38 | |
| 14 | |
| 12 | |
| 10 | |
| 10 | |
| 10 | |
| 7 | |
| 7 | |
| 7 | |
| 7 |
Tue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY