cancel
Showing results for 
Search instead for 
Did you mean: 
Post a Question
Highlighted

Using R80 and need to send logs to a Splunk server. Any idea how?

Jump to solution

We are running R80 GA and I need send logs to a new splunk server. Looking to see if anyone is doing the same.

Labels (1)
Tags (2)
0 Kudos
1 Solution

Accepted Solutions

Re: Using R80 and need to send logs to a Splunk server. Any idea how?

Jump to solution

Hi

I do not sue SPlunk but had issue with the SIEM solution we used. If you use an Opsec object to sent logs to Splunk you will potentially need to downgrade the CA certificate on R80 from Sha 256 to Sha 1 if Splunk doesn't support Sha256 yet

https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...

0 Kudos
1 Reply

Re: Using R80 and need to send logs to a Splunk server. Any idea how?

Jump to solution

Hi

I do not sue SPlunk but had issue with the SIEM solution we used. If you use an Opsec object to sent logs to Splunk you will potentially need to downgrade the CA certificate on R80 from Sha 256 to Sha 1 if Splunk doesn't support Sha256 yet

https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...

0 Kudos