MCAS and Log Parsing

Copper Contributor

I am working with Checkpoint on the automatic log setup and we are having a difficult time getting this to work with Auto Discovery because we have no insight into how the logs being sent from our Checkpoint are parsing.   Is there some way to see the log parsing logs on the MCAS side to see what is happening.   For example I cannot tell if MCAS is using the dest ip to identify websites or whether it is using the URL field we are attempting to pass.      Lkewise MCAS reports in governance X logs rejected but is there a way to see which logs were rejected ?

0 Replies