ZyWALL Series Internet Security Gateway
LOG MESSAGE
Adjust TCP MSS to %d
Rule <%d> input idle time out,
disconnect
XAUTH succeed! Username:
<Username>
XAUTH fail! Username:
<Username>
Rule[%d] Phase 1 negotiation mode
mismatch
Rule [%d] Phase 1 encryption
algorithm mismatch
Rule [%d] Phase 1 authentication
algorithm mismatch
Rule [%d] Phase 1 authentication
method mismatch
Rule [%d] Phase 1 key group
mismatch
Rule [%d] Phase 2 protocol
mismatch
Rule [%d] Phase 2 encryption
algorithm mismatch
Rule [%d] Phase 2 authentication
algorithm mismatch
Rule [%d] Phase 2 encapsulation
mismatch
Rule [%d]> Phase 2 pfs mismatch
S-12
Chart S-13 IKE Logs
The router automatically changed the TCP Maximum
Segment Size value after establishing a tunnel.
The tunnel for the listed rule was dropped because there
was no inbound traffic within the idle timeout period.
The router used extended authentication to authenticate the
listed username.
The router was not able to use extended authentication to
authenticate the listed username.
The listed rule's IKE phase 1 negotiation mode did not
match between the router and the peer.
The listed rule's IKE phase 1 encryption algorithm did not
match between the router and the peer.
The listed rule's IKE phase 1 authentication algorithm did
not match between the router and the peer.
The listed rule's IKE phase 1 authentication method did not
match between the router and the peer.
The listed rule's IKE phase 1 key group did not match
between the router and the peer.
The listed rule's IKE phase 2 protocol did not match
between the router and the peer.
The listed rule's IKE phase 2 encryption algorithm did not
match between the router and the peer.
The listed rule's IKE phase 2 authentication algorithm did
not match between the router and the peer.
The listed rule's IKE phase 2 encapsulation did not match
between the router and the peer.
The listed rule's IKE phase 2 perfect forward secret (pfs)
setting did not match between the router and the peer.
DESCRIPTION
Log Descriptions