Skyline Configuration on Check Point Servers that run Gaia OS - Prometheus with Grafana

Note - This section provides the steps for the Prometheus Server and the Grafana Server.

For other monitoring tools, see Skyline Configuration on Check Point Servers that run Gaia OS - Other Monitoring Tools.

This section applies to these Check Point Servers:

  • Security Gateways / VSX Gateways.

  • ClusterXL Members.

    In a Cluster, you must configure all the Cluster Members in the same way.

  • Security Groups on Scalable Platforms (ElasticXL Cluster, Maestro, and Scalable Chassis).

  • Security Management Servers.

  • Multi-Domain Security Management Servers.

  • Multi-Domain Log Servers.

  • Log Servers.

  • SmartEvent Servers.

  • Endpoint Security Management Servers.

  • Endpoint Policy Servers.

Video Tutorial

Watch a brief video tutorial on how to install and configure Skyline:

Step 1 - Install the Prometheus Server

Note - Skip this step if you have already installed the Prometheus Server

Step 2 - Install the Grafana Server

Note - Skip this step if you have already installed the Grafana Server.

Step 3 - Install the OpenTelemetry Agent and OpenTelemetry Collector on the Check Point Server

Step 4 - Configure the OpenTelemetry Collector on the Check Point Server to work with the Prometheus Server

This step provides two different procedures - for an on-premises Prometheus Server, and for a Prometheus Server in AWS.

Step 5 - Configure the filter for the OpenTelemetry Collector exported metrics

Step 6 - Configure Access Control Policy

If you configured Skyline on a Security Gateway, ClusterXL, or Scalable Platform Security Group, then you must make sure your Access Control Policy allows the connection to the Prometheus Server to send the exported metrics.

You must configure the required rule on the Management Server (in SmartConsole or with Management API) and install the policy.

See the: