Projects / FW1-Loggrabber


FW1-Loggrabber is a simple LEA (Log Export API) client for Checkpoint Firewall-1. It was developed to access Firewall-1 Logfiles from commandline from any host in the network. Without an LEA client you can only access logs with graphical Checkpoint Tools or via commandline directly on the Firewall-1 machine. The primary goal was to automate reports of FW-1 logs with LIRE.

Operating Systems

Recent releases

  •  21 Feb 2005 22:23

    Release Notes: A bug in Checkpoints OPSEC SDK that caused a segmentation fault in fw1-loggrabber when switching log files on the management station made it necessary to relink the binaries. There are also minor bugfixes.

    •  02 Jan 2005 20:47

      Release Notes: New features include separation of configuration files, support of authenticated connections to FW-1 4.1, automatic reconnect of LEA connections, configurable print-order of fields, support of multiple DBMSs using ODBC libraries (Oracle, MS SQL, MySQL, PostgreSQL, and DB2) which replaced experimental MySQL support, more filters, an installer script for Unix/Linux, and an installer package for Windows.

      •  15 Sep 2004 20:39

        Release Notes: Changes include filter rules for audit logs, as well as general enhancement of filter rules including support for negation of filter arguments. fw1-loggrabber also supports additional output destinations, such as files or syslog. A complete rewrite of the documentation was done. The README file was replaced by a man page as well as HTML documentation. The opsec timeout was disabled and some minor bugs were fixed.

        •  10 Jul 2004 19:56

          Release Notes: This new release contains some more log fields to be supported, as well as the possibility to use various authentication mechanisms and enhanced error handling.

          •  12 Feb 2004 10:58

            Release Notes: This release features a user defined separator, configurable date format, filtering on date/time, a global configuration file, simple filters for audit logs, and experimental MySQL support.


            Project Spotlight


            A Fluent OpenStack client API for Java.


            Project Spotlight

            TurnKey TWiki Appliance

            A TWiki appliance that is easy to use and lightweight.