- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Why do Hackers Love IoT Devices so Much?
Join our TechTalk on Aug 17, at 5PM CET | 11AM EST
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
How do you exactly correctly interpret this report?
Interpret1 has only 269 accept logs on internal firewall, which i hardly can believe given the amount of people that work here. Drop and Reject is a lot, which looks normal to me.
Interpret2 same -> low accept logs on internal firewall, although i know there is a lot of internall traffic.
Failover happened on this day, that's the reason why you see also high activity on IFW02. Normally IFW01 is the primary active one.
Interpret3 is report of 5 days, still low accept logs in internal firewall, Drop and Reject is a lot, which again looks normal to me
How is this possible when we log all rules in the policy where traffic has been accepted? Or how do i have to interpret this?
Screenshot shows how it looks in our policy, quite normal i guess.
When looking at some log entries, indeed i could see that a lot of them don't have a Session tab.
I would have expected when you log your rules in your policy, that this would fully reflect in the Network Activity Report.
Is there a way to literally see all accept hits in the report?
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY