All Apps and Add-ons

Check Point System Monitoring

usukhbayar_g
Loves-to-Learn

Hello,  I tasked to create dashboard on Splunk that shows Check Point Firewall system information.

Is there any way that Splunk can display Check Point Firewall system information? Such as CPU, memory, traffic rate also hardware sensors (if possible). We use Check Point app for Splunk. But looks like it has no information related to system info.

I don't even know if Check Point Firewall creates logs of this kind of information. Below screenshots are from Smart Console. 
Splunk Enterprise 9.3.1
Check Point Firewall R81.20

Any ideas would be appreciated.

usukhbayar_g_0-1738896645783.png

usukhbayar_g_1-1738896706578.png

 

 

Labels (3)
0 Karma

kiran_panchavat
SplunkTrust
SplunkTrust

@usukhbayar_g Check Point Firewalls do generate logs, but they primarily focus on security events and traffic data rather than detailed system information like CPU, memory usage, or hardware sensors. You should check if your firewall is logging these system details. Please check this document how to enable those logs to be monitored. 

https://community.checkpoint.com/t5/Security-Gateways/Monitoring-RAM-and-CPU-usage/td-p/144877 

Did this help? If yes, please consider giving kudos, marking it as the solution, or commenting for clarification — your feedback keeps the community going!
0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...