The Checkpoint Firewall-1 log shows which firewall rule is applied to any traffic. Is there any version of Firewall-1 that will in addition show you which address translation rule was applied to the same traffic?
Firewall-1 does show you the translated source and destination IPs and ports, but that's only partially useful when trying to debug why / where a translation is being done. Showing which translation rule is applied would rapidly speed up debugging of translation configurations.