> Source: [sk154213](https://support.checkpoint.com/results/sk/sk154213)

# sk154213 - 1100 and 1400 appliances do not send logs to Log Server

| Property | Value |
|----------|-------|
| Solution ID | sk154213 |
| Date Created | 2019-05-23 |
| Last Modified | 2023-02-01 |
| Technical Level | Advanced |
| Products | Spark Firewall (Locally Managed) |
| Versions | R82.00.X, R81.10.X |

## Symptoms

- * 1100 and 1400 appliances do not send logs to Log Server.
* SIC and policy installation working successfully.
* The 1100 or 1400 appliance does not initiate connections over port 257.
* *SFWD* debug on the 1100 and 1400 appliance during the Policy installation shows:  
  Local Security Policy is Up-To-Date.  
  The Security Policy was not installed because it is the same as the Policy already on the Module.  
  `Commit_exec_cb: got message:`  
  `

  Commit_exec_cb: got message: Installing Security Policy...`  
  `

  Commit_exec_cb: got message:`  
  `

  Commit_exec_cb: got message: Installing Security Policy Succeeded.`  
  `

  Commit_exec_cb: got message: Done.`  
  `

  Updated the local IP addresses.`  
  `
  Updated the interfaces set (1 interfaces).`  
  `
  sfwd_get_log_server_sic_name: cannot get external_onprim_log_servers`  
  `
  sfwd_get_log_server_sic_name: Cannot find SIC name for '[Log Server IP]'.`  
  `
  sfwd_get_servers_properties: Configuration error: SIC is not defined for the log server [Log Server IP].`  
  `
  logtransport_get_log_config: error getting primary logservers`  
  `
  logtransport_reconf: failed to get transport properties`  
  `
  log_client_reconf: failed to reconf transport layer`  
  `
  sfwd_reconf: log_client_reconf failed`

## Cause

**Environment:**

* VPN community was configured on the 1100 and 1400 appliance and the *fw_log*service was excluded from the VPN community object.
* In SmartConsole, "Accept control connections" option was selected in the Management object/Global Properties.
* In 'SMB GAiA Portal WebUI - Security Management \> Test SIC \> IP Address of the Management', the option "Send logs to the same address" is selected.

**Configuring the VPN community on the 1100 and 1400 appliance** **requires editing the *$FWDIR/conf/masters*file on the Branch Office Appliance.**

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
