Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
minamikaze
Explorer

R80.30 - Sending logs via BOTH OPSEC LEA and to Splunk (via log exporter)?

Does Check Point R80.30 support sending firewall traffic logs out via BOTH OPSEC LEA (to another 3rd party server) and to Splunk (via log exporter)?

I'm working on a setup (single CP R80.30) where the user is currently sending traffic logs to Splunk, but also wants the 3rd party server to be able to pull these same traffic logs. But we can't seem to see these traffic logs in the external server, even though:

- the FW rules have logging enabled

- OPSEC certificate setup successfully, with trust established

- local logging enabled

 

So just wanted to confirm that what I mentioned in my initial question was technically possible first - perhaps I might have missed something in the configuration.

 

Thank you!

0 Kudos
4 Replies
This widget could not be displayed.

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events