- Products
- Learn
- Local User Groups
- Partners
- More
AI Security Masters E7:
How CPR Broke ChatGPT's Isolation and What It Means for You
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
Good, Better, Best:
Prioritizing Defenses Against Credential Abuse
Ink Dragon: A Major Nation-State Campaign
Watch HereCheckMates Go:
CheckMates Fest
Hi,
On the security logs on the Manager, how can I filter on DNS requests, the logs that have a specific DNS_query without opening line by line and see the DNS_query field ?
Regards
Hi @CarlosDias
You mean that, you want to search among the logs for eg.: nasa.org?
Akos
Hi @CarlosDias
I checked in a working cluster. Here, the APPL and URLF blade are switched on.
When I type a simple URL, the relevant results are shown in the log.
Akos
Same here, works in my R81.20 and R82 lab.
Andy
Hello,
I have version R82. How can I make the "dns_query" field appear in the domain-udp query logs? I tried the solutions from sk116694 and sk183647 without success, but it works in R81.20.
Hi,
No that is not what I mean. That way I can find traffic that goes to a specific url or domain.
What I want is on a DNS packet sent to the DNS server I could filter the DNS_query field.
If you open a DNS packet log on the checkpoint you can see a field called DNS_query, where you can see what url it is asking to the DNS server. I am not able to filter that. The only solution is to open this dns traffic logs, one by one.
Regards
Btw is the version you still run is supported? I don't recall it is possible to see this in supported versions
Hi,
I am running R81.10, which I thinks its still supported.
Regards
Hi,
I have version R82. How can I make the "dns_query" field appear in the domain-udp query logs? I tried the solutions from sk116694 and sk183647 without success, but it works in R81.20.
Hi @CarlosDias
If its field is not indexed, you can'T search for it with regular expression.
What is the most painful for me, the NAT field is te same.
Akos
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 66 | |
| 19 | |
| 13 | |
| 12 | |
| 11 | |
| 9 | |
| 9 | |
| 7 | |
| 7 | |
| 7 |
Tue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementTue 28 Apr 2026 @ 06:00 PM (IDT)
Under the Hood: Securing your GenAI-enabled Web Applications with Check Point WAFTue 12 May 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point Cloud Firewall delivered as a serviceThu 30 Apr 2026 @ 03:00 PM (PDT)
Hillsboro, OR: Securing The AI Transformation and Exposure ManagementAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY