- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- Re: rule number in syslog messages at 80.40
Options
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×
Sign in with your Check Point UserCenter/PartnerMap account to access more great content and get a chance to win some Apple AirPods! If you don't have an account, create one now for free!
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
rule number in syslog messages at 80.40
I went from 80.10 to 80.40.
However, the rule number does not appear in the syslog message.
I use log export.
If you know what the problem is, please let me know.
3 Replies
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Which Jumbo take and log format is used?
CCSM R77/R80/ELITE
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I used R80.40 take 294 and syslog of format
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Does it happen for all records or only some?
Note T294 is the base ISO version for R80.40, what Jumbo Hotfix level is installed?
Log Exporter supports:
- SIEM applications: Splunk, LogRhythm, Arcsight, RSA, QRadar, McAfee, rsyslog, ng-syslog, and any other SIEM application that can run a Syslog agent.
- Protocols: Syslog over TCP, Syslog over UDP.
- Formats: Syslog, Splunk, CEF, LEEF, Generic, JSON, LogRhythm, RSA.
CCSM R77/R80/ELITE
