Hi,
After a bit of advice here please. I am looking to setup a syslog collector server to send logs from the Checkpoint Management box to a Cloud hosted SIEM.
I am also working on another project where they want to see some of the log (smaller set of above logs, e.g. only time, src IP, dst IP, port, action).
Is it possible to have log exporter setup to export two sets of output to the syslog collector server? (one full set and one with just the selected fields?)
Advice will be much appreciated, many thanks in advance.
Regards,
JT