- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
I am wondering whether it is possible to extract the NAT rule base usage according to hitcount. As I extracted the nat rule base, I could use the details-level full syntax, but in the output, there is no hitcount information at all.
Eventually, I could get into the monitoring instance of the PostgreSQL database, but before doing this, I would get your opinion on how to get the requested information. I wanted to write a bash script sorting the nat rule by its respective hitcount.
Any ideas?
According to management API 2.01 docu it should work:
POST https://<mgmt-server>:<port>/web_api/show-nat-rulebase
e.g.
POST https://<mgmt-server>:<port>/web_api/show-nat-rulebase
Content-Type: application/json
X-chkp-sid: <session-id>
{
"package": "standard",
"offset": 0,
"limit": 50,
"details-level": "standard",
"use-object-dictionary": true,
"show-hits": true,
"hits-settings": {
"from-date": "2024-12-12",
"to-date": "2025-12-12"
}
}
| show-hits | boolean | Show hitcount data. |
| hits-settings | Object
|
Hitcount settings, define the range if hits to show. |
According to management API 2.01 docu it should work:
POST https://<mgmt-server>:<port>/web_api/show-nat-rulebase
e.g.
POST https://<mgmt-server>:<port>/web_api/show-nat-rulebase
Content-Type: application/json
X-chkp-sid: <session-id>
{
"package": "standard",
"offset": 0,
"limit": 50,
"details-level": "standard",
"use-object-dictionary": true,
"show-hits": true,
"hits-settings": {
"from-date": "2024-12-12",
"to-date": "2025-12-12"
}
}
| show-hits | boolean | Show hitcount data. |
| hits-settings | Object
|
Hitcount settings, define the range if hits to show. |
Hey Vince,
I wanted to give it a go, but cant find it in the doc...is it this one?
https://sc1.checkpoint.com/documents/latest/APIs/index.html?#cli/introduction~v2.0.1%20
Looking at access control and Nat there is a section Nat rule and here show-Nat-rulebase
At request body you see filter options
Ah, got it, missed that part the first time. Thanks!
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 16 | |
| 15 | |
| 7 | |
| 5 | |
| 5 | |
| 5 | |
| 4 | |
| 4 | |
| 4 | |
| 4 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY