Motorola nvg589 Administrator's Hanbook page 99

Vdsl2
Hide thumbs Also See for nvg589:
Table of Contents

Advertisement

11. TCP SYN flood detected:
12. Telnet receive DoS attack -
packets dropped:
13. dropped - reassembly time-
out:
14. dropped - illegal size:
Firewall Log Messages Detail (AT&T requirement #841)
Reason Enumeration ( C )
NM_LOGDROP_CAT_DIR
NM_LOGDROP_CAT_DIR_UP
NM_LOGDROP_CAT_DIR_DOWN
NM_LOGDROP_CAT_ETH
NM_LOGDROP_CAT_ETH_SRC_ADDR
NM_LOGDROP_CAT_ETH_DST_ADDR
NM_LOGDROP_CAT_ETH_PROT
NM_LOGDROP_CAT_ETH_VLAN
NM_LOGDROP_CAT_IP
NM_LOGDROP_CAT_IP_SRC
NM_LOGDROP_CAT_IP_DST
NM_LOGDROP_CAT_IP_PROT
NM_LOGDROP_CAT_IP_SPOOF
NM_LOGDROP_CAT_IP_ILL
NM_LOGDROP_CAT_TCP
NM_LOGDROP_CAT_TCP_SRC_PORT
NM_LOGDROP_CAT_TCP_DST_PORT
NM_LOGDROP_CAT_TCP_FLAGS
NM_LOGDROP_CAT_UDP
NM_LOGDROP_CAT_UDP_SRC_PORT
NM_LOGDROP_CAT_UDP_DST_PORT
Access-related Log Messages
This log-message is generated whenever a SYN packet destined to
the router's management interface is dropped because the number of
SYN-sent and SYN-receives exceeds one half the number of allow-
able connections in the router.
This log-message is generated whenever TCP packets destined to
the router's telnet management interface are dropped due to over-
whelming receive data.
This log-message is generated whenever packets, traversing the
router or destined to the router itself, are dropped because of reas-
sembly timeout.
This log-message is generated whenever packets, traversing the
router or destined to the router itself, are dropped during reassembly
because of illegal packet size in a fragment.
Log Text
Representation
DIRECTION
DIRECTION-UP
DIRECTION-DOWN
ETH
ETH-SRC
ETH-DST
ETH-PROTOCOL
ETH-VLAN
IP
IP-SRC
IP-DST
IP-PROTOCOL
IP-SPOOF
IP-ILLEGAL
TCP
TCP-SRC-PORT
TCP-DST-PORT
TCP-FLAGS
UDP
UDP-SRC-PORT
UDP-DST-PORT
Why the packet was
logged
Direction (generic)
Upstream direction
Downstream direction
Ethernet Header (generic)
Ethernet Source MAC Address
Ethernet Destination MAC
Address
Ethernet Protocol
Ethernet VLAN ID (where appli-
cable)
IP Header (generic)
IP Source Address
IP Destination Address
IP Protocol
IP Address is spoofed (could not
have been sent by a device legit-
imately with the address in the
source address field)
IP Address is illegal (either src or
dest)
TCP Header (generic)
TCP Source Port
TCP Destination Port
TCP Flags field
UDP Header (generic)
UDP Source Port
UDP Destination Port
99

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents