Skip to content

Latest commit

 

History

History
34 lines (27 loc) · 715 Bytes

6a9feb6e-acfb-4f7b-ab8d-e0f9606aced2.md

File metadata and controls

34 lines (27 loc) · 715 Bytes

Mappings: Check Point Redirect

Input Requirements

Input Value
Vendor Check Point
Product Firewall
Log Format JSON
Event ID Regex Pattern Redirect|redirect

Record Output

Output Value
Vendor CheckPoint
Product Firewall and VPN
Record Type Network

Fields Mapped

Cloud SIEM Schema Field Original Record Key Notes
action action
device_ip origin
dstDevice_ip dst
dstPort service
ipProtocol proto
srcDevice_ip src
srcDevice_natIp xlatesrc
srcPort s_port
timestamp time We expect the orginal record value of time is in the format epoch
user_username user