> Source: [sk122323](https://support.checkpoint.com/results/sk/sk122323)

# sk122323 - Log Exporter - Check Point Log Export

| Property | Value |
|----------|-------|
| Solution ID | sk122323 |
| Date Created | 2018-01-15 |
| Last Modified | 2025-08-04 |
| Technical Level | General |
| Products | Security Management Server |
| Versions | R82, R81.20, R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Solution

### Overview

Check Point **"Log Exporter"** is an easy and secure method for exporting Check Point logs from a Check Point Management Server / Log Server over the syslog protocol.

Log Exporter is fully integrated in R80.20 and higher.

Exporting can be done in few standard protocols and formats.

Log Exporter supports:

* **SIEM applications:** Splunk, LogRhythm, Arcsight, RSA, QRadar, McAfee, rsyslog, ng-syslog, and any other SIEM application that can run a Syslog agent.
* **Protocols:** Syslog over TCP, Syslog over UDP.
* **Formats:** Syslog, Splunk, CEF, LEEF, Generic, JSON, LogRhythm, RSA.
* **Security:** Mutual authentication TLS 1.2.
* **Log Types:** The ability to export Security logs, Audit logs, or both.  
  Note: Audit logs exist on both the Management Server and the Log Server.
* **Filtering:** Choose what to export based on field values. Filter out (do not export) Security Gateway connection logs.
* **Links to Logs and Log Attachments:** Export links to the relevant log card in SmartView and to the log attachments.

### Documentation

[Log Exporter Administration Guide](https://sc1.checkpoint.com/documents/Log_Exporter/EN/Default.htm)

### Related Solutions

* [sk182866 - Log Exporter Auto Update Deployment](https://support.checkpoint.com/results/sk/sk182866)
* [sk127653 - How to back up and restore Log Exporter configuration in R81.10 and lower](https://support.checkpoint.com/results/sk/sk127653)
* [sk171946 - Log Exporter does not send logs when filtering by origin](https://support.checkpoint.com/results/sk/sk171946)
* [sk173167 - How to enable logs in milliseconds on Log Exporter](https://support.checkpoint.com/results/sk/sk173167)

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
