Checkpoint Firewalls - Netflow + Syslog Configuration

Modified on Mon, 29 Jun at 3:40 PM

TABLE OF CONTENTS


 

Configuration Steps - Syslog Forwarding

  1. Login to your Checkpoint Firewall.
  2. Under Network Management , go to "System Management → System Logging" and then to Remote System Logging and click Add. Configure System Remote logging as pictured.
  3. When completed, apply the changes. 



Configuration Steps - Netflow Forwarding

  1. Login to your Checkpoint Firewall. 
  2. Navigate to Netflow Export, then select Add under Collectors. 
  3. Fill in the ARIA CCE information.
    IP Address: <COLLECTOR_IP>
    UDP Port Number: 9995
    Export Format: Netflow_V9
    Source IP Address: Leave Blank
    Enable: True

  4. Select OK to apply. 

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article