ZyXEL Communications 10 User Manual page 469

Internet security gateway
Hide thumbs Also See for 10:
Table of Contents

Advertisement

LOG MESSAGE
Firewall sent TCP
reset packets
Packet without a NAT
table entry blocked
Out of order TCP
handshake packet
blocked
Drop unsupported/out-
of-order ICMP
Router sent ICMP
response packet
(type:%d, code:%d)
ACL SET
DIRECTION
NUMBER
1
LAN to WAN
2
WAN to LAN
3
DMZ to LAN
4
DMZ to WAN
5
WAN to DMZ
6
LAN to DMZ
7
LAN to
LAN/ZyWALL
8
WAN to
WAN/ZyWALL
Log Descriptions
ZyWALL 10~100 Series Internet Security Gateway
Chart Q-6 Access Logs
The firewall sent out TCP reset packets.
The router blocked a packet that did not have a corresponding NAT
table entry.
The router blocked a TCP handshake packet that came out of the
proper order
The ZyWALL generates this log after it drops an ICMP packet due to
one of the following two reasons:
1. The ZyWALL does not support the ICMP packet's protocol.
2. The ICMP packet is an echo reply for which there was no
corresponding echo request.
The router sent an ICMP response packet. This packet automatically
bypasses the firewall. See the section on ICMP messages for type
and code details.
Chart Q-7 ACL Setting Notes
ACL set 1 for packets traveling from the LAN to the WAN.
ACL set 2 for packets traveling from the WAN to the LAN.
ACL set 3 for packets traveling from the DMZ to the LAN.
ACL set 4 for packets traveling from the DMZ to the WAN.
ACL set 5 for packets traveling from the WAN to the DMZ.
ACL set 6 for packets traveling from the LAN to the DMZ.
ACL set 7 for packets traveling from the LAN to the LAN or the
ZyWALL.
ACL set 8 for packets traveling from the WAN to the WAN or the
ZyWALL.
DESCRIPTION
DESCRIPTION
77

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall 10Zywall 10wZywall 50Zywall 100

Table of Contents