Home Page | Skip to Navigation | Skip to Content | Skip to Search | Skip to Footer

OPSEC Partners

Symantec Corp.

Product Version Certified: Symantec Event Collector 2.5 for Check Point VPN-1/FireWall-1. Version 2.5, runs in Windows and Solaris
Certified for use with: Check Point Next Generation with Application Intelligence

 

Product Description: Symantec Event Collector enables centralized cross-tier logging, alerting and reporting between the Symantec Enterprise Security Architecture (SESA) event management system and Check Point VPN-1/FireWall-1.

 
Key Features and Benefits
OPSEC Integration
 

Company Description: Symantec is the global leader in information security providing a broad range of software, appliances and services designed to help individuals, small and mid-sized businesses, and large enterprises secure and manage their IT infrastructure. Symantec's Norton brand of products is the worldwide leader in consumer security and problem-solving solutions.

  Symantec
   
Key Features and Benefits

Symantec Event Collector retrieves events that are generated by Check Point VPN-1/FireWall-1 and integrates these events into Symantec Enterprise Security Architecture (SESA). These events are stored in the SESA DataStore (a database), where you can view them in reports, configure them as the basis for alert notifications and incident creation, and configure them as raw data for report generation.

After you install Symantec Event Collector, the Check Point VPN-1/FireWall-1 product is SESA-integrated. When a product is SESA-integrated, you can use the Symantec management console to view the events that it forwards to SESA. The Symantec management console (or SESA console in SESA 1.1) provides a central location in which to view and manage the reporting of event data across multiple SESA-integrated security products.

 
OPSEC Integration:

Symantec Event Collector acquires new events from the Check Point VPN-1/FireWall-1 LEA Server. The Log Export API (LEA) and Open Platform for Secure Enterprise Connectivity (OPSEC) API that enables an application to securely receive and process both real-time and historical logging and auditing events generated by Check Point VPN-1/FireWall-1.