On Mon, 15 Aug 2011 10:08:37 +0300, a bv <[email protected]> wrote:
Hi,

Thinking of up to date gateways R7x, is there any time when
checkpoint/gateway doesnt log (both access/security and audit logs) ?
I  accept that the situation is you select logging on  all the
security rules. Is tehre something like only a

syn packet reaches it doesnt log or anything like that? Are there any
builtin and buggy misses for logs?

Just a few additional thoughts.

1. Use `fw ctl zdebug drop` whenevr you need to see dropped packets versus the normalized logging of the GUI.

2. Check the $FWDIR/log/*.elg files and $CPDIR/log/*.elg files. You may notice events where logging is stopped due to high CPU load.

Hugo.

--
[email protected]   http://hugo.vanderkooij.org/
PGP/GPG? Use: http://hugo.vanderkooij.org/0x58F19981.asc

Scanned by Check Point Total Security Gateway.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================

Reply via email to