pC_checkpointfirewallnetworkconnectionaccept.md
June 14, 2023 ยท View on GitHub
Parser Content
{
Name = checkpoint-firewall-network-connection-accept
Vendor = Check Point
Product = NGFW
Lms = Direct
DataType = "network-connection"
TimeFormat = "ddMMMyyyy','HH:mm:ss"
Conditions = [ """,log,accept,""" ]
Fields = [
"""({time}\d{1,100}\w+\d\d\d\d,\d{1,100}:\d{1,100}:\d{1,100}),(|({host}[^,]{0,2000})),log,({action}accept),([^,]{0,2000
}