After you create the OPSEC Application Object, you can locate the Log Source SIC from the
Check Point SmartConsole.
Procedure
-
Select .
-
In the Categories tree, select Gateways and Servers under
Networks Objects.
-
Select your Check Point Log Host object.
-
Copy the Secure Internal Communication (SIC).
Important: Depending on your Check Point version, the
Communication button displays the SIC attribute. You can locate the SIC
attribute from the Check Point Management Server command-line interface. You must use the
cpca_client lscert command from the command-line interface of the Management
Server to display all certificates.
Important: The Log Source SIC Attribute resembles the following example:
cn=cp_mgmt,o=cpmodule...tdfaaz. For more information, see your Check Point
Command Line Interface Guide.
You must now install the Security Policy from the Check Point SmartConsole user
interface.
What to do next
You are now ready to configure the OPSEC LEA protocol. For more information, see OPSEC/LEA log source parameters for Check Point.