ZyXEL Communications P-660HW-T v2 User Manual

Page 239

Advertising
background image

P-660HW-T v2 User’s Guide

Chapter 18 Logs

239

Enrollment successful

The CMP online certificate enrollment was successful. The Destination

field records the certification authority server’s IP address and port.

Enrollment failed

The CMP online certificate enrollment failed. The Destination field

records the certification authority server’s IP address and port.

Failed to resolve <CMP
CA server url>

The CMP online certificate enrollment failed because the certification

authority server’s IP address cannot be resolved.

Rcvd ca cert: <subject
name>

The router received a certification authority certificate, with subject

name as recorded, from the LDAP server whose IP address and port

are recorded in the Source field.

Rcvd user cert:
<subject name>

The router received a user certificate, with subject name as recorded,

from the LDAP server whose IP address and port are recorded in the

Source field.

Rcvd CRL <size>:
<issuer name>

The router received a CRL (Certificate Revocation List), with size and

issuer name as recorded, from the LDAP server whose IP address and

port are recorded in the Source field.

Rcvd ARL <size>:
<issuer name>

The router received an ARL (Authority Revocation List), with size and

issuer name as recorded, from the LDAP server whose address and

port are recorded in the Source field.

Failed to decode the
received ca cert

The router received a corrupted certification authority certificate from

the LDAP server whose address and port are recorded in the Source

field.

Failed to decode the
received user cert

The router received a corrupted user certificate from the LDAP server

whose address and port are recorded in the Source field.

Failed to decode the
received CRL

The router received a corrupted CRL (Certificate Revocation List) from

the LDAP server whose address and port are recorded in the Source

field.

Failed to decode the
received ARL

The router received a corrupted ARL (Authority Revocation List) from

the LDAP server whose address and port are recorded in the Source

field.

Rcvd data <size> too
large! Max size
allowed: <max size>

The router received directory data that was too large (the size is listed)

from the LDAP server whose address and port are recorded in the

Source field. The maximum size of directory data that the router allows

is also recorded.

Cert trusted: <subject
name>

The router has verified the path of the certificate with the listed subject

name.

Due to <reason codes>,
cert not trusted:
<subject name>

Due to the reasons listed, the certificate with the listed subject name

has not passed the path verification. The recorded reason codes are

only approximate reasons for not trusting the certificate. Please see

Table 103 on page 239

for the corresponding descriptions of the codes.

Table 103 Certificate Path Verification Failure Reason Codes

CODE

DESCRIPTION

1

Algorithm mismatch between the certificate and the search constraints.

2

Key usage mismatch between the certificate and the search constraints.

3

Certificate was not valid in the time interval.

Table 102 PKI Logs (continued)

LOG MESSAGE

DESCRIPTION

Advertising