Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Blason_R
Leader
Leader
Jump to solution

cp_log_export Mgmt Audit log forwarding?

Hi Guys,

I am forwarding cp_log_export package to forward CheckPoint logs to our SIEM in CEF format. However would like to know since those are all traffic logs can I forward Mgmt Audit logs as well through cp_log_export to my SIEM?

if not is there any alternate way to achieve the same?

Thanks and Regards

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
0 Kudos
1 Solution

Accepted Solutions
PhoneBoy
Admin
Admin

Looks like I may have been mistaken: audit logs should be included.

See the discussion here: https://community.checkpoint.com/thread/7248-log-exporter-guide 

View solution in original post

0 Kudos
2 Replies
PhoneBoy
Admin
Admin

Currently, audit logs can only be forwarded thru LEA, which is how SIEMs have traditionally integrated with our product.

You will need to consult with your SIEM vendor on the exact procedure for this.

We do plan to integrate audit logs support into Log Exporter in an upcoming release.

0 Kudos
PhoneBoy
Admin
Admin

Looks like I may have been mistaken: audit logs should be included.

See the discussion here: https://community.checkpoint.com/thread/7248-log-exporter-guide 

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events