Export Threat, Filter, and Data Filtering PCAPs

To export threat PCAPs, you need to provide the PCAP ID from the threat log and the search time, which is the time that the PCAP was received on the firewall. Threat PCAP filenames use a
pcapID.pcap
format.
PCAP Type
API Request
Threat PCAP using PCAP ID, device name, session ID, and search
curl -X GET "https://<firewall>/api/?key=apikey&type=export&category=threat-pcap&pcap-id=<id>&device_name=<device name>&sessionid=<session id>&search-time=<yyyy/mm/dd+hr:min:sec>"
Code copied to clipboard
Unable to copy due to lack of browser support.
List of filtered PCAPs
curl -X GET "https://<firewall>/api/?key=apikey&type=export&category=filters-pcap"
Code copied to clipboard
Unable to copy due to lack of browser support.
Specific filtered PCAP file
curl -X GET "https://<firewall>/api/?key=apikey&type=export&category=filters-pcap&from=<filename>"
Code copied to clipboard
Unable to copy due to lack of browser support.
List of data filtering PCAP file names
curl -X GET "https://<firewall>/api/?key=apikey&type=export&category=dlp-pcap&dlp-password=<password>"
Code copied to clipboard
Unable to copy due to lack of browser support.
Specific data filtering PCAP file
curl -X GET "https://<firewall>/api/?key=apikey&type=export&category=dlp-pcap&dlp-password=<password>&from=<filename>&to=<localfile>"
Code copied to clipboard
Unable to copy due to lack of browser support.

Recommended For You