Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
TSOL
Advisor
Jump to solution

From Smart-1 Cloud via API

Hello experts,

 

We’re using Check Point Smart-1 Cloud and would like to integrate it with our internal analysis system.

Specifically, I’d like to know:

  1. Is it possible to pull Traffic and Security logs (e.g., via API for Logs) from Smart-1 Cloud?

  2. If so, what are the limitations in terms of:

    • Number of logs per request or pagination limit

    • Time period that can be queried (how far back I can go)

    • Total volume or rate limits (daily/monthly, etc.)

  3. Are there any differences compared to on-premise Management API (e.g., show-logs endpoint)?

I’ve checked the official documentation and data sheets:

  • Smart-1 Cloud Admin Guide (no clear mention of API for Logs)

  • Logging & Monitoring API (mentions 100 logs per page for on-prem R81)

  • Smart-1 Cloud Data Sheet (mentions 5 GB/day and 200 GB log storage for 5 gateways)

Thanks in advance!

0 Kudos
2 Solutions

Accepted Solutions
Chris_Atkinson
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Note for awareness there is a specific log export add-on license outlined on the datasheet for Smart-1 Cloud.

Your local SE is probably best placed to help validate how this applies to your case versus typical log export to SIEM.

CCSM R77/R80/ELITE

View solution in original post

Dmitrie_Shaiman
Employee
Employee

The information in the official documentation and data sheets is correct and reflects the current behavior of the platform.

All commands listed in the Management API Reference, including show logs, are supported in Smart-1 Cloud, just like in on-premises management.

You can also find useful examples in the Smart-1 Cloud Administration Guide, which show how to use the API and help to run different commands effectively.

View solution in original post

3 Replies
Chris_Atkinson
MVP Gold CHKP MVP Gold CHKP
MVP Gold CHKP

Note for awareness there is a specific log export add-on license outlined on the datasheet for Smart-1 Cloud.

Your local SE is probably best placed to help validate how this applies to your case versus typical log export to SIEM.

CCSM R77/R80/ELITE
Dmitrie_Shaiman
Employee
Employee

The information in the official documentation and data sheets is correct and reflects the current behavior of the platform.

All commands listed in the Management API Reference, including show logs, are supported in Smart-1 Cloud, just like in on-premises management.

You can also find useful examples in the Smart-1 Cloud Administration Guide, which show how to use the API and help to run different commands effectively.

the_rock
MVP Gold
MVP Gold

I agree with what the guys said. I would also add might be worth open TAC case to get an official confirmation if needed.

Best,
Andy
0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events