12.07.2015 Views

Symantec™ Security Gateways Reference Guide - Sawmill

Symantec™ Security Gateways Reference Guide - Sawmill

Symantec™ Security Gateways Reference Guide - Sawmill

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

170 Log messagesNotice messages (200-299)229 - IP packet dropped (decapsulated)Description: An incoming packet was dropped after decapsulation. An interface filter is associated with the tunnel andthe packet did not pass the interface filter. This is because you have configured the interface filter to dropthese packets.230 - Not authorizedDescription: An attempt is being made to access a security gateway service with a bad password.232 - Sending ICMP unreachableDescription: For the packet received, we responded with an ICMP unreachable error message. For example, someonesent a packet to a closed UDP port. A very large number of these can indicate an attack or a port scan or amis-configuration. This message is typical in low numbers.These messages sent on the wire and recorded in the log file can often be suppressed. This is accomplishedby checking “Suppress Reset and ICMP error message” in the UI options for the interface.233 - Packet dropped by interface, input packet filterDescription: A packet did not pass the input interface filter based on your configuration instructions. If you did notintend this kind of action, refine your filter.233 - Packet dropped by interface, output packet filterDescription: A packet did not pass the output interface filter based on your configuration instructions. If you did notintend this kind of action, refine your filter.234 - Network error detected, abortingDescription: A network error causes the connection to terminate.235 - NAT address allocation failed from poolDescription: The security gateway software failed to allocate an address from the NAT pool, for the particular entity.238 - Already active sockets to different servers for this client connection; delaying connectinguntil existing request completesDescription: If httpd.warn_delay is set to 1, it indicates that the HTTP daemon has reached the maximum number ofconnections from a client to HTTP servers.238 - An illegal character was found in the request (see RFC 2068, RFC 1738, and RFC 1808)Description: The proxy discovered an illegal character in the HTTP request.238 - Audio notifications not supported on this systemDescription: The notify daemon is unable to create audio notification because the hardware does not support an audiodevice.238 - Authentication session for user timed outDescription: This message from Out of Band Authentication (OOBA) gives the status of the session, indicating that theauthentication session has timed out.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!