Table 177 rfc-2408 isakmp payload types – ZyXEL Communications ZyXEL ZyWALL 2WG User Manual

Page 449

Advertising
background image

Chapter 25 Logs Screens

ZyWALL 2WG User’s Guide

449

The following table shows RFC-2408 ISAKMP payload types that the log displays. Please
refer to the RFC for detailed information on each type.

Event Log: <Facility*8 +
Severity>Mon dd hr:mm:ss
hostname src="<srcIP:srcPort>"
dst="<dstIP:dstPort>"
ob="<0|1>" ob_mac="<mac
address>" msg="<msg>"
note="<note>" devID="<mac
address>" cat="<category>"

This message is sent by the device ("RAS" displays as the

system name if you haven’t configured one) at the time

when this syslog is generated. The facility is defined in the

web MAIN MENU, LOGS, Log Settings page. The

severity is the log’s syslog class. The definition of

messages and notes are defined in the other log tables. OB

is the Out Break flag and the mac address of the Out Break

PC.

Event Log: <Facility*8 +
Severity>Mon dd hr:mm:ss
hostname src="<srcIP:srcPort>"
dst="<dstIP:dstPort>"
ob="0|1" ob_mac="<mac
address>" msg="<msg>"
note="<note>" devID="<mac
address>" cat="Anti Virus"
encode="< uu | b64 >"

This message is sent by the device ("RAS" displays as the
system name if you haven’t configured one) at the time
when this syslog is generated. The facility is defined in the
web MAIN MENU, LOGS, Log Settings page. The
severity is the log’s syslog class. The "encode" message
indicates the mail attachments encoding method. The
definition of messages and notes are defined in the Anti-
Virus log descriptions.

Event Log: <Facility*8 +
Severity>Mon dd hr:mm:ss
hostname src="<srcIP:srcPort>"
dst="<dstIP:dstPort>"
ob="<0|1>" ob_mac="<mac
address>" msg="<msg>"
note="<note>" devID="<mac
address>" cat="IDP"
class="<idp class>" sid="<idp
sid> act="<idp action>"
count="1"

This message is sent by the device ("RAS" displays as the
system name if you haven’t configured one) at the time
when this syslog is generated. The facility is defined in the
web MAIN MENU, LOGS, Log Settings page. The
severity is the log’s syslog class. The definition of
messages and notes are defined in the IDP log
descriptions.

Event Log: <Facility*8 +
Severity>Mon dd hr:mm:ss
hostname src="<srcIP:srcPort>"
dst="<dstIP:dstPort>"
ob="<0|1>" ob_mac="<mac
address>" msg="<msg>"
note="<note>" devID="<mac
address>" cat="Anti Spam"
1stReIP="<IP>"

This message is sent by the device ("RAS" displays as the

system name if you haven’t configured one) at the time

when this syslog is generated. The facility is defined in the

web MAIN MENU, LOGS, Log Settings page. The

severity is the log’s syslog class. 1stReIP is the IP address

of the first mail relay server. The definition of messages

and notes are defined in the Anti-Spam log descriptions.

Table 177 RFC-2408 ISAKMP Payload Types

LOG DISPLAY

PAYLOAD TYPE

SA

Security Association

PROP

Proposal

TRANS

Transform

KE

Key Exchange

ID

Identification

CER

Certificate

CER_REQ

Certificate Request

Table 176 Syslog Logs (continued)

LOG MESSAGE

DESCRIPTION

Advertising