- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- Using R80 and need to send logs to a Splunk server...
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Jump to solution
Using R80 and need to send logs to a Splunk server. Any idea how?
We are running R80 GA and I need send logs to a new splunk server. Looking to see if anyone is doing the same.
Labels
- Labels:
-
Integrations
- Tags:
- documentation
- logging
1 Solution
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi
I do not sue SPlunk but had issue with the SIEM solution we used. If you use an Opsec object to sent logs to Splunk you will potentially need to downgrade the CA certificate on R80 from Sha 256 to Sha 1 if Splunk doesn't support Sha256 yet
1 Reply
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi
I do not sue SPlunk but had issue with the SIEM solution we used. If you use an Opsec object to sent logs to Splunk you will potentially need to downgrade the CA certificate on R80 from Sha 256 to Sha 1 if Splunk doesn't support Sha256 yet
