pC_checkpointfirewallnetworkconnectionaccept.md

June 14, 2023 ยท View on GitHub

Parser Content

{
Name = checkpoint-firewall-network-connection-accept
  Vendor = Check Point 
  Product = NGFW
  Lms = Direct
  DataType = "network-connection"
  TimeFormat = "ddMMMyyyy','HH:mm:ss"
  Conditions = [ """,log,accept,""" ]
  Fields = [
    """({time}\d{1,100}\w+\d\d\d\d,\d{1,100}:\d{1,100}:\d{1,100}),(|({host}[^,]{0,2000})),log,({action}accept),([^,]{0,2000

}