- Products
- Learn
- Local User Groups
- Partners
- More
CheckMates Fifth Birthday
Celebrate with Us!
days
hours
minutes
seconds
Join the CHECKMATES Everywhere Competition
Submit your picture to win!
Check Point Proactive support
Free trial available for 90 Days!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
The 2022 MITRE Engenuity ATT&CK®
Evaluations Results Are In!
Now Available: SmartAwareness Security Training
Training Built to Educate and Engage
MITRE ATT&CK
Inside Check Point products!
CheckFlix!
All Videos In One Space
Hello,
we have several firewalls (version 80.40) and we have configured them to send Netflow to some SIEM. We receive logs from almost all gateways except one. After investigation, we found that Netflow traffic does not contain any useful information.
How can we troubleshoot this?
Thank you in advance.
How are the rules/policy configured for the troublesome gateway?
In the Track column for rules, you must select Log and Accounting.
Hello Chris,
yes, Log and Accounting are enabled for all rules.
We have already compared this problem GW with other - the config is the same. It is not something special, you just enable it, specify the collector and activate for a rule.
Noted. For additional context could you please share the model of gateway and installed JHF version?
Hello Chris, I hope you asked about this:
Product Name: VMware Virtual Platform
Product Name: 440BX Desktop Reference Platform
HOTFIX_R80_40_JUMBO_HF_MAIN Take: 94
BUNDLE_R80_40_JUMBO_HF_MAIN Take: 94
Not sure in that case, might be worth contacting TAC and troubleshooting further.
Chris makes a good point. I would personally also compare to see if there are any differences among that specific gateways and the other ones that would potentially cause this issue.
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY