Via Check Point Support you get a Syslog exporter for SIEM applications for R80.10 Managment.
Which allows an easy and secure method for exporting CP logs over syslog. Exporting can be done in few standard protocols and formats.
Log Exporter supports:
Log Exporter is a multi-threaded daemon service, running on a log server. Each log that is written on the log server is read by the log exporter daemon, transformed into the desired format and mapping, and then sent to the end target.
Installation on R80.10 Jumbo Hotfix Take 56 or higher.
# cp_log_export add name <name> [domain-server <domain-server>] target-server <target-server> target-port <target-port> protocol <(udp|tcp)> [optional arguments]
Deploy a new Check Point logs exporter.
Updates an exporter's configuration.
Removes an exporter.
Prints an exporter's current configuration.
Shows an exporter's overview status.
Starts an exporter process
Stops an exporter process.
Restarts an exporter process.
Resets the current position, and re-exports all logs per the configuration.