Hi all,
Somebody knows if it is possible to normalize chkp logs when these
are sended via "fw log" command to a syslog server like it can do
configuring logexport.ini file??
For example, two different messages for the same accept rule:
27Apr2012 12:43:28 accept 10.196.0.1 >bond0.405 rule: 55; rule_uid:
{D9A1177A-CA96-4DC5-88DA-07D7A226A522}; service_id: http; src:
172.21.1.1; dst: 192.168.86.168; proto: tcp; product: VPN-1 &
FireWall-1; service: 80; s_port: 2470;
27Apr2012 12:43:28 accept 10.196.0.1 >bond0.401 inzone: Internal;
outzone: Internal; rule: 62; rule_uid:
{0C4F36D4-2BDF-481A-8174-5F6DDE74DC15}; service_id: snmp; src:
192.168.55.3; dst: 192.168.52.254; proto: udp; product: VPN-1 &
FireWall-1; service: 161; s_port: 46901;
=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [email protected]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[email protected]
=================================================