Does anyone have any documentation that would list all the event types (eg accept, reject, auth, drop, etc) that could occur in the checkpoint firewall logs? If not, could you let me know all the event types possible (default) in the audit and firewall logs.
Checkpoint Firewall 1 Event Types
Aug 03, 2005
1 Replies
If you have access to the Checkpoint CD, all the management documents are available in the \\docs directory. Other than that, the "event" types you are talking about are actually known as "Action" in the SmartDashboard. The Action chosen there reflects what are in the Firewall logs. Possible Actions are: Accept, Reject, Drop, User Auth, Session Auth and Client Auth. If you are using Traditional Mode Policies, you also have Encrypt and Client Encrypt as options. In the Audit log, there is only one action "Log".
Wayne McGl> Does anyone have any documentation that would list all the event types
Join the Discussion
Have something to add? Share your thoughts — no account required.
Didn't find your answer?
Ask the community — no account required