Table 102 pki logs – ZyXEL Communications P-660HW-T v2 User Manual

Page 238

Advertising
background image

P-660HW-T v2 User’s Guide

238

Chapter 18 Logs

Rule [%d] Phase 2
authentication algorithm
mismatch

The listed rule’s IKE phase 2 authentication algorithm did not

match between the router and the peer.

Rule [%d] Phase 2
encapsulation mismatch

The listed rule’s IKE phase 2 encapsulation did not match

between the router and the peer.

Rule [%d]> Phase 2 pfs
mismatch

The listed rule’s IKE phase 2 perfect forward secret (pfs)

setting did not match between the router and the peer.

Rule [%d] Phase 1 ID mismatch The listed rule’s IKE phase 1 ID did not match between the

router and the peer.

Rule [%d] Phase 1 hash
mismatch

The listed rule’s IKE phase 1 hash did not match between the

router and the peer.

Rule [%d] Phase 1 preshared
key mismatch

The listed rule’s IKE phase 1 pre-shared key did not match

between the router and the peer.

Rule [%d] Tunnel built
successfully

The listed rule’s IPSec tunnel has been built successfully.

Rule [%d] Peer's public key
not found

The listed rule’s IKE phase 1 peer’s public key was not found.

Rule [%d] Verify peer's
signature failed

The listed rule’s IKE phase 1verification of the peer’s

signature failed.

Rule [%d] Sending IKE request IKE sent an IKE request for the listed rule.

Rule [%d] Receiving IKE
request

IKE received an IKE request for the listed rule.

Swap rule to rule [%d]

The router changed to using the listed rule.

Rule [%d] Phase 1 key length
mismatch

The listed rule’s IKE phase 1 key length (with the AES

encryption algorithm) did not match between the router and

the peer.

Rule [%d] phase 1 mismatch

The listed rule’s IKE phase 1 did not match between the router

and the peer.

Rule [%d] phase 2 mismatch

The listed rule’s IKE phase 2 did not match between the router

and the peer.

Rule [%d] Phase 2 key length
mismatch

The listed rule’s IKE phase 2 key lengths (with the AES

encryption algorithm) did not match between the router and

the peer.

Table 102 PKI Logs

LOG MESSAGE

DESCRIPTION

Enrollment successful

The SCEP online certificate enrollment was successful. The

Destination field records the certification authority server IP address

and port.

Enrollment failed

The SCEP online certificate enrollment failed. The Destination field

records the certification authority server’s IP address and port.

Failed to resolve
<SCEP CA server url>

The SCEP online certificate enrollment failed because the certification

authority server’s address cannot be resolved.

Table 101 IKE Logs (continued)

LOG MESSAGE

DESCRIPTION

Advertising