CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 And Related Products > SmartView Tracker/Logging And Alerting
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2005-08-13
Administrator
 
Join Date: 2005-08-11
Location: San Francisco, CA
Posts: 582
Rep Power: 10
BarryStiefel has disabled reputation
Default fw log -h doesn't work as expected

fw log -h doesn't work as expected



fw log -h says only to display log entries generated by the firewall named hostname, not a packet from or to hostname. This works whether you use the machines IP address or hostname.

Output from this command looks like this: # fw log -h langhorneDate: Oct 27, 1998

0:04:17 drop langhorne >Elnk31 proto udp src 205.188.252.18 dst langhorne service 59504 s_port icq-udp len 34 rule 90:10:07 drop langhorne >Elnk31 proto udp src 205.188.252.15 dst langhorne service 59583 s_port icq-udp len 38 rule 90:13:18 drop langhorne >EE162 proto icmp src 192.168.0.78 dst 205.188.252.15 rule 9 icmp-type 3 icmp-code 3 xlatesrc langhorne xlatedst 205.188.252.150:17:01 drop langhorne >Elnk31 proto udp src icq.mirabilis.com dst langhorne service 59652 s_port icq-udp len 38 rule 9If you're trying to look at log entries where the source/destination IP/hostname is something else, you'll have to do something like "fw log | grep hostname".



-- GuyR - 06 Jan 2004

FAQForm FAQs.Class: LoggingAndAlertingFAQs FAQs.OS: FAQs.Version:
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 18:35.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0