Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Baya_007
Participant

Log parsing and FW rule creation upon that?

Hi all,

Does anybody know is there some kind of tool (script or something) that would do log parsing (check point logs) and create (suggest) FW rules based on that parsing?

Kind regards,

Petar

0 Kudos
2 Replies
_Val_
Admin
Admin

AFAIK, there is no such tool.

Anyway, building policies based on logged traffic is a VERY bad idea. You will end up with tons of host to host rules without any logic and order. On top, there will be huge amount of traffic you do not really want to accept in these logs.

0 Kudos
Chris_Atkinson
Employee Employee
Employee

Alternately if the objective is to migrate from another vendors solution or to introduce security to a environment that presently has none there are other options potentially available to you.

We have SmartMove for the first scenario and solutions such as NDR for the later.

CCSM R77/R80/ELITE
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events