Checkpoint Firewall 1 Event Types

Aug 03, 2005 1 Replies

Does anyone have any documentation that would list all the event types (eg accept, reject, auth, drop, etc) that could occur in the checkpoint firewall logs? If not, could you let me know all the event types possible (default) in the audit and firewall logs.


If you have access to the Checkpoint CD, all the management documents are available in the \\docs directory. Other than that, the "event" types you are talking about are actually known as "Action" in the SmartDashboard. The Action chosen there reflects what are in the Firewall logs. Possible Actions are: Accept, Reject, Drop, User Auth, Session Auth and Client Auth. If you are using Traditional Mode Policies, you also have Encrypt and Client Encrypt as options. In the Audit log, there is only one action "Log".

Wayne McGl> Does anyone have any documentation that would list all the event types

Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required