ZyXEL Communications ZYWALL USG 20 Manual page 766

Unified security gateway
Hide thumbs Also See for ZYWALL USG 20:
Table of Contents

Advertisement

Appendix A Log Descriptions
Table 247 IKE Logs (continued)
LOG MESSAGE
XAUTH succeed! My
name: %s
XAUTH succeed! Remote
user: %s
Dynamic Tunnel
[%s:%s:0x%x:%s] built
successfully
Dynamic Tunnel
[%s:%s:0x%x:0x%x:%s]
rekeyed successfully
Tunnel
[%s:%s:0x%x:%s] built
successfully
Tunnel
[%s:%s:0x%x:0x%x:%s]
rekeyed successfully
Tunnel [%s:%s]
1 pre-shared key
mismatch
Tunnel [%s:%s]
Recving IKE request
Tunnel [%s:%s]
Sending IKE request
Tunnel [%s:0x%x] is
disconnected
Tunnel [%s] rekeyed
successfully
Table 248 IPSec Logs
LOG MESSAGE
Corrupt packet,
Inbound transform
operation fail
Encapsulated packet
too big with length
Get inbound transform
fail
Get outbound transform
fail
Inbound transform
operation fail
766
DESCRIPTION
%s is the my xauth name. This indicates that my name is
valid.
%s is the remote xauth name. This indicate that a remote
user's name is valid
The variables represent the phase 1 name, tunnel name, SPI
and the xauth name (optional). The phase-2 tunnel
negotiation is complete.
The variables represent the phase 1 name, tunnel name, old
SPI, new SPI and the xauth name (optional). The tunnel was
rekeyed successfully.
The variables represent the phase 1 name, tunnel name, SPI
and the xauth name (optional). The phase-2 tunnel
negotiation is complete.
The variables represent the phase 1 name, tunnel name, old
SPI, new SPI and the xauth name (optional). The tunnel was
rekeyed successfully.
The variables represent the phase 1 name and tunnel name.
Phase
When negotiating phase-1, the pre-shared keys did not
match.
The variables represent the phase 1 name and tunnel name.
The device received an IKE request.
The variables represent the phase 1 name and tunnel name.
The device sent an IKE request.
The variables represent the tunnel name and the SPI of a
tunnel that was disconnected.
%s is the tunnel name. The tunnel was rekeyed successfully.
DESCRIPTION
The device received corrupt IPsec packets and could not
process them.
An outgoing packet needed to be transformed but was longer
than 65535.
When performing inbound processing for incoming IPSEC
packets and ICMPs related to them, the engine cannot obtain
the transform context.
When outgoing packet need to be transformed, the engine
cannot obtain the transform context.
After encryption or hardware accelerated processing, the
hardware accelerator dropped a packet (resource shortage,
corrupt packet, invalid MAC, and so on).
ZyWALL USG 20/20W User's Guide

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall usg 20wZywall usg 2000

Table of Contents