LevelBlue Completes Acquisition of Cybereason. Learn More
Get access to immediate incident response assistance.
The current version of the OPSEC SDK only supports certificates generated with SHA-1. If the Checkpoint device is using a SHA-256 certificate, SIEM will not be able to retrieve logs.
To verify whether Checkpoint is using SHA 1 or SHA 256, in the Checkpoint command line interface, run the following command:
grep ":signature_hash" $FWDIR/conf/InternalCA.C
To contact Trustwave about this article or to request support: