Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Sabi_Halevi
Participant
Jump to solution

logs from $FWDIR/log

Hi,

I Would like to know if the ".log" files in $FWDIR/log/ directory are encrypted?
The only way to view them in human-readable is via the smart-console?

How can I achieve CLI access to those logs for monitoring, what are my options to view audit-logs, blades logs(not from smart-console)?

For R80.40 & R81 there is an option with an API request, what are my options for the other versions?

 

Thanks!

 

 

0 Kudos
2 Solutions

Accepted Solutions
Kaspars_Zibarts
Employee Employee
Employee

You may want to consider log export https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut... 

Else you can use fw log command to display logs directly from command line: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut... 

Short answer - log files aren't plain text format

View solution in original post

PhoneBoy
Admin
Admin

The log files are stored in a binary format.
In addition to fw log, there is the command CpLogFilePrint: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...

There are no APIs for logs in prior releases.
You can use Log Exporter to export to a syslog server: https://community.checkpoint.com/t5/Management/Log-Exporter-guide/m-p/9035

View solution in original post

3 Replies
Kaspars_Zibarts
Employee Employee
Employee

You may want to consider log export https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut... 

Else you can use fw log command to display logs directly from command line: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut... 

Short answer - log files aren't plain text format

Sabi_Halevi
Participant

Many thanks!

0 Kudos
PhoneBoy
Admin
Admin

The log files are stored in a binary format.
In addition to fw log, there is the command CpLogFilePrint: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...

There are no APIs for logs in prior releases.
You can use Log Exporter to export to a syslog server: https://community.checkpoint.com/t5/Management/Log-Exporter-guide/m-p/9035

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events