Table 179 Certificate Path Verification Failure Reason Codes - ZyXEL Communications ZyXEL ZyWALL 2WG User Manual

Internet security appliance
Hide thumbs Also See for ZyXEL ZyWALL 2WG:
Table of Contents

Advertisement

Table 178 PKI Logs (continued)
LOG MESSAGE
Failed to decode the
received user cert
Failed to decode the
received CRL
Failed to decode the
received ARL
Rcvd data <size> too
large! Max size
allowed: <max size>
Cert trusted: <subject
name>
Due to <reason codes>,
cert not trusted:
<subject name>

Table 179 Certificate Path Verification Failure Reason Codes

CODE
DESCRIPTION
Algorithm mismatch between the certificate and the search constraints.
1
Key usage mismatch between the certificate and the search constraints.
2
Certificate was not valid in the time interval.
3
(Not used)
4
Certificate is not valid.
5
Certificate signature was not verified correctly.
6
Certificate was revoked by a CRL.
7
Certificate was not added to the cache.
8
Certificate decoding failed.
9
Certificate was not found (anywhere).
10
Certificate chain looped (did not find trusted root).
11
Certificate contains critical extension that was not handled.
12
Certificate issuer was not valid (CA specific information missing).
13
(Not used)
14
CRL is too old.
15
CRL is not valid.
16
CRL signature was not verified correctly.
17
CRL was not found (anywhere).
18
CRL was not added to the cache.
19
CRL decoding failed.
20
CRL is not currently valid, but in the future.
21
ZyWALL 2WG User's Guide
DESCRIPTION
The router received a corrupted user certificate from the LDAP server
whose address and port are recorded in the Source field.
The router received a corrupted CRL (Certificate Revocation List) from
the LDAP server whose address and port are recorded in the Source
field.
The router received a corrupted ARL (Authority Revocation List) from
the LDAP server whose address and port are recorded in the Source
field.
The router received directory data that was too large (the size is listed)
from the LDAP server whose address and port are recorded in the
Source field. The maximum size of directory data that the router allows
is also recorded.
The router has verified the path of the certificate with the listed subject
name.
Due to the reasons listed, the certificate with the listed subject name
has not passed the path verification. The recorded reason codes are
only approximate reasons for not trusting the certificate. Please see
Table 179 on page 505
for the corresponding descriptions of the
codes.
Chapter 26 Logs Screens
505

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall 2wg - v4.03Zywall 2wg - v4.04

Table of Contents