Hello ,
I am looking for help with decoder for CheckPoint logs-
2025-01-19T06:42:53.322752+05:30 192.168.1.1 CEF: 0|Check Point|VPN-1 & FireWall-1|Check Point|Reject|cp_tcp_A936BBAC_EBC3_4F18_B3CC_A63365F07477|Unknown|act=Reject app=HTTPS destinationTranslatedAddress=0.0.0.0 destinationTranslatedPort=0 deviceDirection=0 rt=1768821172000 sourceTranslatedAddress=116.72.25.6 sourceTranslatedPort=30165 spt=53118 dpt=443 cs2Label=Rule Name cs2=Internet Access Blocked Category layer_name=Network layer_uuid=63b7fe60-76d2-4287-bca5-21af87337b0a match_id=16 parent_rule=0 rule_action=Reject rule_uid=4c6a3319-3146-ce7b84692bc0 conn_direction=Outgoing contextnum=1 ifname=eth1 logid=0 loguid={0xff017026,0xfe62e77a,0x62f0fe92d} origin=192.168.7.1 originsicname=cn\=cp_mgmt,o\=acfw01..9c3cwq sequencenum=74 version=5 context_num=1 dst=52.168.112.66 hll_key=8041615528 inzone=Internal nat_addtnl_rulenum=0 nat_rule_uid=7d40-4852-a28a-64b75ec46d50 nat_rulenum=30 needs_browse_time=1 outzone=External product=VPN-1 & FireWall-1 proto=6 service_id=cp_tcp_A936BBAC_EBC3_4F18_B3CC_A63365F07477 sig_id=13 src=192.168.1.134
Currently i am getting below response -
timestamp: '2025-01-19T06:42:53.322752+05:30'
program_name: 'CEF'
**Phase 2: Completed decoding.
No decoder matched.
Regards,
Prasad