Is anyone parsing Checkpoint Audit Logs succesfully?

Question asked by David Waugh on Feb 19, 2018
Feb 21, 2018

Hi is anyone successfully collecting Checkpoint Audit logs in Netwitness 10.6.5 or higher?

I have a case open with Support at the moment. Security logs are captured fine but Audit logs dont seem to be being collected.


If I run the NwCheckpointProcess with the --odebug flag i can see the logs phyiscally arriving at the log collector. However, from there they never make it into the GUI, even though the Security Logs do make it through.


The internal case refrence is 01116330 if anyone want to see.