Table 187 Ipsec Logs; Table 188 Ike Logs - ZyXEL Communications ZYWALL 35 User Manual

Internet security appliance
Hide thumbs Also See for ZYWALL 35:
Table of Contents

Advertisement

Chapter 31 Logs Screens
Table 186 Wireless Logs
LOG MESSAGE
WLAN STA Association
WLAN STA Association List
Full
WLAN STA Association Again The SSID and time of association were updated for an wireless

Table 187 IPSec Logs

LOG MESSAGE
Discard REPLAY packet
Inbound packet
authentication failed
Receive IPSec packet,
but no corresponding
tunnel exists
Rule <%d> idle time
out, disconnect
WAN IP changed to <IP>
Inbound packet
decryption failed
Cannot find outbound SA
for rule <%d>
Rule [%s] sends an echo
request to peer
Rule [%s] receives an
echo reply from peer

Table 188 IKE Logs

LOG MESSAGE
Active connection allowed
exceeded
Start Phase 2: Quick Mode
Verifying Remote ID failed:
Verifying Local ID failed:
IKE Packet Retransmit
Failed to send IKE Packet
Too many errors! Deleting SA
562
DESCRIPTION
A wireless station associated with the device.
The maximum number of associated wireless clients has been
reached.
station that was already associated.
DESCRIPTION
The router received and discarded a packet with an incorrect
sequence number.
The router received a packet that has been altered. A third party
may have altered or tampered with the packet.
The router dropped an inbound packet for which SPI could not find a
corresponding phase 2 SA.
The router dropped a connection that had outbound traffic and no
inbound traffic for a certain time period. You can use the "ipsec
timer chk_conn" CI command to set the time period. The default
value is 2 minutes.
The router dropped all connections with the "MyIP" configured as
"0.0.0.0" when the WAN IP address changed.
Please check the algorithm configuration.
A packet matches a rule, but there is no phase 2 SA for outbound
traffic.
The device sent a ping packet to check the specified VPN tunnel's
connectivity.
The device received a ping response when checking the specified
VPN tunnel's connectivity.
DESCRIPTION
The IKE process for a new connection failed because the limit
of simultaneous phase 2 SAs has been reached.
Phase 2 Quick Mode has started.
The connection failed during IKE phase 2 because the router
and the peer's Local/Remote Addresses don't match.
The connection failed during IKE phase 2 because the router
and the peer's Local/Remote Addresses don't match.
The router retransmitted the last packet sent because there
was no response from the peer.
An Ethernet error stopped the router from sending IKE
packets.
An SA was deleted because there were too many errors.
ZyWALL 5/35/70 Series User's Guide

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents