Chapter 26 Logs Screens

Table 177 IKE Logs (continued)

LOG MESSAGE

DESCRIPTION

Rule [%d] phase 1 mismatch

The listed rule’s IKE phase 1 did not match between the

 

router and the peer.

Rule [%d] phase 2 mismatch

The listed rule’s IKE phase 2 did not match between the

 

router and the peer.

Rule [%d] Phase 2 key length

The listed rule’s IKE phase 2 key lengths (with the AES

mismatch

encryption algorithm) did not match between the router and

 

the peer.

Remote Gateway Addr in rule

The IP address for the domain name of the peer gateway in

[%s] is changed to %s"

the listed rule changed to the listed IP address.

New My ZyWALL Addr in rule

The IP address for the domain name of the ZyWALL in the

[%s] is changed to %s

listed rule changed to the listed IP address.

Remote Gateway Addr has

The listed tunnel will be deleted because the remote

changed, tunnel [%s] will be

gateway’s IP address changed.

deleted

 

My ZyWALL Addr has changed,

The listed tunnel will be deleted because the ZyWALL’s IP

tunnel [%s] will be deleted

address changed.

Table 178 PKI Logs

LOG MESSAGE

DESCRIPTION

Enrollment successful

The SCEP online certificate enrollment was successful. The

 

Destination field records the certification authority server IP address

 

and port.

 

 

Enrollment failed

The SCEP online certificate enrollment failed. The Destination field

 

records the certification authority server’s IP address and port.

Failed to resolve

The SCEP online certificate enrollment failed because the certification

<SCEP CA server url>

authority server’s address cannot be resolved.

Enrollment successful

The CMP online certificate enrollment was successful. The Destination

 

field records the certification authority server’s IP address and port.

Enrollment failed

The CMP online certificate enrollment failed. The Destination field

 

records the certification authority server’s IP address and port.

Failed to resolve <CMP

The CMP online certificate enrollment failed because the certification

CA server url>

authority server’s IP address cannot be resolved.

Rcvd ca cert: <subject

The router received a certification authority certificate, with subject

name>

name as recorded, from the LDAP server whose IP address and port

 

are recorded in the Source field.

Rcvd user cert:

The router received a user certificate, with subject name as recorded,

<subject name>

from the LDAP server whose IP address and port are recorded in the

 

Source field.

Rcvd CRL <size>:

The router received a CRL (Certificate Revocation List), with size and

<issuer name>

issuer name as recorded, from the LDAP server whose IP address and

 

port are recorded in the Source field.

Rcvd ARL <size>:

The router received an ARL (Authority Revocation List), with size and

<issuer name>

issuer name as recorded, from the LDAP server whose address and

 

port are recorded in the Source field.

Failed to decode the

The router received a corrupted certification authority certificate from

received ca cert

the LDAP server whose address and port are recorded in the Source

 

field.

504

 

ZyWALL 2WG User’s Guide