Table 47 Icmp Logs; Table 48 Ppp Logs - ZyXEL Communications P-2024 User Manual

Voip analog telephone adapter
Hide thumbs Also See for P-2024:
Table of Contents

Advertisement

Chapter 11 Logs
Table 46 TCP Reset Logs (continued)
LOG MESSAGE
Peer TCP state out of
order, sent TCP RST
Firewall session time
out, sent TCP RST
Exceed MAX incomplete,
sent TCP RST
Access block, sent TCP
RST
F
or type and code details, see

Table 47 ICMP Logs

LOG MESSAGE
Firewall default policy: ICMP
<Packet Direction>, <type:%d>,
<code:%d>
Firewall rule [NOT] match: ICMP
<Packet Direction>, <rule:%d>,
<type:%d>, <code:%d>
Triangle route packet forwarded:
ICMP
Packet without a NAT table entry
blocked: ICMP
Unsupported/out-of-order ICMP:
ICMP
Router reply ICMP packet: ICMP

Table 48 PPP Logs

LOG MESSAGE
ppp:LCP Starting
ppp:LCP Opening
ppp:CHAP Opening
112
DESCRIPTION
The router sent a TCP reset packet when a TCP connection state
was out of order.Note: The firewall refers to RFC793 Figure 6 to
check the TCP state.
The router sent a TCP reset packet when a dynamic firewall
session timed out.
The default timeout values are as follows:
ICMP idle timeout: 3 minutes
UDP idle timeout: 3 minutes
TCP connection (three way handshaking) timeout: 270 seconds
TCP FIN-wait timeout: 2 MSL (Maximum Segment Lifetime set in
the TCP header).
TCP idle (established) timeout (s): 150 minutes
TCP reset timeout: 10 seconds
The router sent a TCP reset packet when the number of
incomplete connections (TCP and UDP) exceeded the user-
configured threshold. (Incomplete count is for all TCP and UDP
connections through the firewall.)Note: When the number of
incomplete connections (TCP + UDP) > "Maximum Incomplete
High", the router sends TCP RST packets for TCP connections
and destroys TOS (firewall dynamic sessions) until incomplete
connections < "Maximum Incomplete Low".
The router sends a TCP RST packet and generates this log if you
turn on the firewall TCP reset mechanism (via CI command:
firewall tcprst
Table 50 on page
113.
DESCRIPTION
ICMP access matched the default policy and was
blocked or forwarded according to the user's setting.
ICMP access matched (or didn't match) a firewall rule
(denoted by its number) and was blocked or forwarded
according to the rule.
The firewall allowed a triangle route session to pass
through.
The router blocked a packet that didn't have a
corresponding NAT table entry.
The firewall does not support this kind of ICMP packets
or the ICMP packets are out of order.
The router sent an ICMP reply packet to the sender.
DESCRIPTION
The PPP connection's Link Control Protocol stage has started.
The PPP connection's Link Control Protocol stage is opening.
The PPP connection's Challenge Handshake Authentication Protocol stage is
opening.
).
P-2024 User's Guide
sys

Advertisement

Table of Contents
loading

Table of Contents