- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
Watch NowOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello members,
i have Checkpoint security firewall and would like to integrate it with FortiSIEM solution i need help as it is my first time to implement.
thanks
If it takes syslog, jsut use log exporter
Hi,
can you share the settings to integrate with FortiSiem
What do you mean under settings?
This is the original SK: https://support.checkpoint.com/results/sk/sk122323
You can setup based on your needs. Usually we send syslog to FortiSien, and the SIEM will parse the logs.
Have a look at in this:
You need to send syslog in CEF format according to this sample:
cp_log_export add name <Name> [domain-server {mds | all}] target-server <HostName or IP address of Target Server> target-port <Port on Target Server> protocol {udp | tcp} format {syslog | splunk | cef | leef | generic | json | logrhythm | rsa} [<Optional Arguments>]
Hi,
I use the following:
cp_log_export add name FortiSiem target-server x.x.x.x target-port 514 protocol udp format cef
cp_log_export restart name FortiSiem
Regards,
Start with above and then:
https://support.checkpoint.com/results/sk/sk122323
Better to create object in SmartConsole. Before you always had to start from CLI but that changed and made it more easy. Still can do all via CLI but via GUI is better.
If all changes are done check with tcpdump if you see traffic being send out. tcpdump -nni any host IP port 514
The sk given by Akos and Lesley is your best bet.
Andy
Hi,
Did you manage to integrate the logs in fortisiem via Log exporter? Is the parser correct? Can you share the settings you used?
Thanks
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 19 | |
| 17 | |
| 14 | |
| 8 | |
| 7 | |
| 3 | |
| 3 | |
| 3 | |
| 3 | |
| 2 |
Tue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY