> Source: [sk163615](https://support.checkpoint.com/results/sk/sk163615)

# sk163615 - Log Server receives gibberish from Log Exporter

| Property | Value |
|----------|-------|
| Solution ID | sk163615 |
| Date Created | 2019-12-03 |
| Last Modified | 2019-12-04 |
| Technical Level | Advanced |
| Products | Security Management Server |
| Versions | R82.10, R82, R81.20, R82.20 |
| OS | Gaia |

## Symptoms

- * 3rd party Log Server that is the target for Log Exporter shows received logs without structure and contains a log of garbage information.

* "cp_log_export show" output provides the following output:

  ```
  
  name: Log_Exporter_CMA1 domain-server: : CMA1
       enabled: true
       target-server: x.x.x.x
       target-port: x
       protocol: tcp
       format: splunk
       read-mode: Found
  ```

  <br />

* Relevant configuration file does not contain read-mode field
  /opt/CPmds-R80.20/customers/CMA1/CPrt-R80.20/log_exporter/targetstargetConfiguration.xml

* The issue occurred after attempt to run 'cp_log_export reconf' to reconfigure Log Exporter after the upgrade.

## Cause

A software limitation during reconfiguration lead to incorrect configuration file creation leading to read-mode field disappearance.

Issue was detected on R80.20 without any Jumbo hotfixes installed prior to reconfig.

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
