- Products
- Learn
- Local User Groups
- Partners
- More
Step Into the Future of
AI-Powered Cyber Security
The State of Ransomware Q1 2026
Key Trends and Their Impact
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
Hi All I would like to know how to send log moreover opseclea ? such as Syslog also if send from Syslog should add plug-in or add-on or not , could you please suggest to me Firmware R77.20 The logging server is Splunk Thank you
If you use central management, you can use Log Exporter (check sk122323) or connect using the Splunk Check Point addon.
You can also send syslog to a log server directly from SMB appliances in both locally and centrally managed SMBs:
If you use central management, you can use Log Exporter (check sk122323) or connect using the Splunk Check Point addon.
You can also send syslog to a log server directly from SMB appliances in both locally and centrally managed SMBs:
HI R77.20 Can install Log export plug-in? Thank you
You can install Log Export or use LEA on a R77.30 or R80.X security management server which manages a SMB appliance.
If locally managed, you have to send Syslog directly from the appliance as shown in the screenshot. No support for LEA then.
Log Exporter is only available from R77.30 and not available for locally managed SMB appliances.
The syslog support will only get device logs (not security logs).
You cannot to my knowledge, configure a LEA connection between an SMB appliance and Splunk.
You can configure a LEA connection with a Check Point log server and configure Splunk to pull from that.
Hi thank for answer I have a little bit question now I have to integrate send a log from mgmt with opseclea application to Splunk server but I have found an issue about the Splunk server on window base is support opsec lea or not .
If you are pulling the logs from a Check Point management/log server R77.30 and above, use Log Exporter: Log Exporter - Splunk Integration Update
This does not require LEA at all as it uses syslog.
Hi Dameon Welch-Abernathy Limitation of Syslog can get log such as firewall log or just device log if use log exporter
Thank you
You will get the security logs into splunk. For more information see this discussion: *New* Splunk App for Check Point Logs.
You can send all the security logs you seen in SmartLog with Log Exporter.
The advantage is that now MGMT is actively sending logs to Splunk, whereas with LEA Splunk has to actively collects logs from MGMT.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 4 | |
| 4 | |
| 3 | |
| 3 | |
| 2 | |
| 2 | |
| 2 | |
| 1 | |
| 1 | |
| 1 |
Wed 20 May 2026 @ 11:00 AM (CEST)
The New DDoS Reality: Autonomy, Scale, and the Future of DefenceFri 29 May 2026 @ 09:00 AM (EDT)
Caracas: Executive Breakfast: Innovación en Ciberseguridad – IA y Threat IntelligenceTue 02 Jun 2026 @ 06:00 PM (IDT)
Under the Hood | Check Point SASE: Identity Integration & Access Policy Design Best PracticesWed 20 May 2026 @ 11:00 AM (CEST)
The New DDoS Reality: Autonomy, Scale, and the Future of DefenceTue 02 Jun 2026 @ 06:00 PM (IDT)
Under the Hood | Check Point SASE: Identity Integration & Access Policy Design Best PracticesThu 04 Jun 2026 @ 02:00 PM (CEST)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - EuropeThu 04 Jun 2026 @ 07:00 PM (IDT)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - AmericaFri 12 Jun 2026 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 47: Continuous Threat Exposure ManagementFri 29 May 2026 @ 09:00 AM (EDT)
Caracas: Executive Breakfast: Innovación en Ciberseguridad – IA y Threat IntelligenceAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY