- Products
- Learn
- Local User Groups
- Partners
- More
CheckMates Fifth Birthday
Celebrate with Us!
days
hours
minutes
seconds
Join the CHECKMATES Everywhere Competition
Submit your picture to win!
Check Point Proactive support
Free trial available for 90 Days!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
The 2022 MITRE Engenuity ATT&CK®
Evaluations Results Are In!
Now Available: SmartAwareness Security Training
Training Built to Educate and Engage
MITRE ATT&CK
Inside Check Point products!
CheckFlix!
All Videos In One Space
Hello,
I was wondering if there's a way to exclude certain rules from being passed on to QRADAR syslog via Log Exporter.
Since we are using the security rule base policy in order to manage Geo Blocking, this traffic is considered as access traffic.
I would like to exclude this traffic from being passed on to syslog.
This is the config we are using atm:
format leef filter-blade-in "Access,TP" read-mode semi-unified
I believe you can filter based on rule UID.
Meaning send logs for rules that are not one of those rule UIDs.
See: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY