ZyXEL Communications ZyWALL 5 User Manual page 528

Internet security appliance
Hide thumbs Also See for ZyWALL 5:
Table of Contents

Advertisement

ZyWALL 5 Internet Security Appliance
LOG MESSAGE
Failed to resolve <CMP
CA server url>
Rcvd ca cert: <subject
name>
Rcvd user cert:
<subject name>
Rcvd CRL <size>:
<issuer name>
Rcvd ARL <size>:
<issuer name>
Failed to decode the
received ca cert
Failed to decode the
received user cert
Failed to decode the
received CRL
Failed to decode the
received ARL
Rcvd data <size> too
large! Max size
allowed: <max size>
Cert trusted: <subject
name>
Due to <reason codes>,
cert not trusted:
<subject name>
Chart P-15 Certificate Path Verification Failure Reason Codes
CODE
1
Algorithm mismatch between the certificate and the search constraints.
2
Key usage mismatch between the certificate and the search constraints.
3
Certificate was not valid in the time interval.
4
(Not used)
5
Certificate is not valid.
6
Certificate signature was not verified correctly.
7
Certificate was revoked by a CRL.
8
Certificate was not added to the cache.
9
Certificate decoding failed.
P-10
Chart P-14 PKI Logs
The CMP online certificate enrollment failed because the certification
authority server's IP address cannot be resolved.
The router received a certification authority certificate, with subject name as
recorded, from the LDAP server whose IP address and port are recorded in
the Source field.
The router received a user certificate, with subject name as recorded, from
the LDAP server whose IP address and port are recorded in the Source field.
The router received a CRL (Certificate Revocation List), with size and issuer
name as recorded, from the LDAP server whose IP address and port are
recorded in the Source field.
The router received an ARL (Authority Revocation List), with size and issuer
name as recorded, from the LDAP server whose address and port are
recorded in the Source field.
The router received a corrupted certification authority certificate from the
LDAP server whose address and port are recorded in the Source field.
The router received a corrupted user certificate from the LDAP server whose
address and port are recorded in the Source field.
The router received a corrupted CRL (Certificate Revocation List) from the
LDAP server whose address and port are recorded in the Source field.
The router received a corrupted ARL (Authority Revocation List) from the
LDAP server whose address and port are recorded in the Source field.
The router received directory data that was too large (the size is listed) from
the LDAP server whose address and port are recorded in the Source field.
The maximum size of directory data that the router allows is also recorded.
The router has verified the path of the certificate with the listed subject name.
Due to the reasons listed, the certificate with the listed subject name has not
passed the path verification. The recorded reason codes are only
approximate reasons for not trusting the certificate. Please refer to Chart
P-15 for the corresponding descriptions of the codes.
DESCRIPTION
DESCRIPTION
Log Descriptions

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents