Information: Forum is in read-only mode
For details and other support options see https://www.adiscon.com/news/support-forum-set-to-read-only-mode/

configure a firewall,urgent

Problems configuring syslog in your device or application? Turn to this group for peer discussions.

Moderator: alorbach

Google Ads


configure a firewall,urgent

Postby wal » Mon Feb 28, 2005 3:14 pm

hi !!!
so, I have a big problem to configure a "Check Point" firewall made by NOKIA firewall -1ng , to redirect it events(intrusions, alerts ....) to a syslog wich I will develop it after, so for who know about this configuration please tell me how to do it?????? thinks :roll:
wal
 

Postby rgerhards » Mon Feb 28, 2005 4:57 pm

Hello,

it might sound funny, but this is actually a not-easy-to-solve problem. Checkpoint does not support syslog natively. I also do not have the details on how to do it, but I know others have done it already. The basic idea is as such:

Checkpoint seems to provide a way to write all messages to a text file. Configure it so that it does. Then, run a logger tool (e.g. http://www.monitorware.com/logger/ ) against this text file and instruct logger to forward the text lines to the syslog server. If your system is windows-based, you can also run http://www.mwagent.com/ on it and use MonitorWare Agent's text file monitor.

I hope that helps at least a bit....

Rainer
rgerhards
Site Admin
 
Posts: 3807
Joined: Thu Feb 13, 2003 11:57 am

Are you sure...

Postby Andyboy » Tue Jul 19, 2005 10:59 am

that

> "Checkpoint does not support syslog natively. " ?

I'm in that same situation (having to collect syslog from remote nokias) and found (in the "Management Guide" Manual of NG) a clue to a setting on the management server:

The
-> Logs and Masters
-> Additional Logging Configuration
settings page has a checkbox "Accept syslog messages"!

Having checked this, the nokias still complain "Host down or unreachable", but this sounds more like a problem in routing/ firewall settins....

So, I'm still searching...
Andyboy
 

Google Ads



Return to Configuring Syslog

Who is online

Users browsing this forum: No registered users and 0 guests

cron