CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 10/6, 11/3, 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3, 9/7.
2. Corrent S3500 SecureXL Turbocards For Sale - Last Six Remaining - Get Your Spares!
3. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > SmartCenter Server (Formerly Management Server)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2007-12-13
mnutriaji mnutriaji is offline
Junior Member
 
Join Date: 2007-02-12
Posts: 12
Rep Power: 0
mnutriaji has an average reputation (10+)
Default Checkpoint doen't logging

Hi All,

I need help about Checkpoint Logging.
I am using Checkpoint R60 HFA05 Hotfix 605 for my security gateway. and R65 for my smartcenter.
What happen is: There are no logs from my firewall in my smartcenter. Seems that firewall doesnot send the log to smartcenter, not even try to. I sniffed all the firewall interface destination smartcenter, nothing. also port 257 (for logging), also nothing.
I choose to log locally, then still not logging. I think log daemon is not running or something.
I check SIC...fine
I check name resolution in Firewall to Smartcenter...it resolved
I check MASTERS file....the smartcenter is there
I tried to telnet port 257 from firewall to Smartcenter....it is open

Anybody have experience in this case?

Thanks a lot in advance

Regards

Marendra
Edit/Delete Message
Reply With Quote
  #2 (permalink)  
Old 2007-12-14
MarioL MarioL is offline
Senior Member
 
Join Date: 2007-01-18
Location: London
Posts: 375
Rep Power: 2
MarioL has an average reputation (10+)
Default Re: Checkpoint doen't logging

Here is one thing you can try:

Edit your firewall object and manually set the log server, under "Logs and Masters->Log Servers".

A problem you might also have is that one interface of the firewall can reach the log server, but maybe another one can't and maybe the logs are being generated with that IP.
Reply With Quote
  #3 (permalink)  
Old 2007-12-17
mnutriaji mnutriaji is offline
Junior Member
 
Join Date: 2007-02-12
Posts: 12
Rep Power: 0
mnutriaji has an average reputation (10+)
Default Re: Checkpoint doen't logging

Thank you for replying back

I sniffed around each interfaces for port 257, and there were no logging traffic happening in those interfaces.

But finally , surprisingly, now it generate logs again. What i've done, like MarioL said, i worked around in Checkpoint object-->Log and Masters Area.
Using Local Definition master rather than user Defined Master, compile it and put it back. No restart service or machine. That was friday. and monday i went back, it generated log finally.

Seriously, i dont know what happened there. Anybody know if there are any checkpoint logs that i can evaluate regarding to this matter? /var/log/messages maybe?

Thank you

Regards
marendra
Reply With Quote
  #4 (permalink)  
Old 2007-12-19
MarioL MarioL is offline
Senior Member
 
Join Date: 2007-01-18
Location: London
Posts: 375
Rep Power: 2
MarioL has an average reputation (10+)
Default Re: Checkpoint doen't logging

Glad that worked, I would try to change back and see if it works or not.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -7. The time now is 11:26.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.0.0