You would like to import SNORT rules but to comply with corporate policy you need to test the conversion prior to import. How can you do this?
A. You must manually review each signature.
B. SnortConvertor update -f <inputfile> –dry-run
C. Check Point does not support third party signatures.
D. Under the IPS tree Protections > By Protocol > IPS Software Blade > Application Intelligence > SNORT import and select the SNORT import option.
B
SnortConvertor update -f –dry-run
should be 2 dash in “dry-run”
https://sc1.checkpoint.com/documents/R76/CP_R76_IPS_AdminGuide/12857.htm