Checkpoint | Map IANA Protocol Numbers #2463
Labels
enhancement
New feature or request
good first issue
Good for newcomers
Integration:checkpoint
Check Point
Our Checkpoint ingest pipeline does not currently map IANA Protocol Numbers, which can be very helpful when building detection rules. Similar to our Firewall Input Consistency effort, IANA Protocol mappings should be included across our firewall integrations. A full list of protocols is available here.
A user shared this modification to the Checkpoint pipeline, which populates the
ctx.network.transport
field (and based on our Fortinet pipelines). Can we add this script to our Checkpoint pipeline to ensure we perform mappings for widely used protocols?Here's a helpful breakdown of protocols found in a users logs (provided by user):
The text was updated successfully, but these errors were encountered: