cancel
Showing results for 
Search instead for 
Did you mean: 
Post a Question
Blason_R
Nickel

cp_log_export Mgmt Audit log forwarding?

Jump to solution

Hi Guys,

I am forwarding cp_log_export package to forward CheckPoint logs to our SIEM in CEF format. However would like to know since those are all traffic logs can I forward Mgmt Audit logs as well through cp_log_export to my SIEM?

if not is there any alternate way to achieve the same?

Thanks and Regards

0 Kudos
1 Solution

Accepted Solutions
Admin
Admin

Re: cp_log_export Mgmt Audit log forwarding?

Jump to solution

Looks like I may have been mistaken: audit logs should be included.

See the discussion here:  

0 Kudos
2 Replies
Admin
Admin

Re: cp_log_export Mgmt Audit log forwarding?

Jump to solution

Currently, audit logs can only be forwarded thru LEA, which is how SIEMs have traditionally integrated with our product.

You will need to consult with your SIEM vendor on the exact procedure for this.

We do plan to integrate audit logs support into Log Exporter in an upcoming release.

0 Kudos
Admin
Admin

Re: cp_log_export Mgmt Audit log forwarding?

Jump to solution

Looks like I may have been mistaken: audit logs should be included.

See the discussion here:  

0 Kudos