Setting Up Firewall Analyzer
I'm setting up a firewall analyzer server. It's on the same subnet as my Check Point management server. I have everything configure on the management server including the $FWDIR/conf/fwopsec.conf file.
I wanted to use authentication to pull log data from the management server. I established SIC and I can see LEA traffic between the firewall analyzer and the management station but the logs don't seem to be making into the server.
I tried to simplify the issue by configuring the servers for no authentication. Using Wireshark, I see lots of traffic, but it's still not be logged by the firewall analyzer.
Any suggestions?
New to ADSelfService Plus?