beautypg.com

ZyXEL Communications ZyWALL 2 Plus User Manual

Page 439

background image

Chapter 25 Logs Screens

ZyWALL 2 Plus User’s Guide

439

Remote IP /
conflicts

The security gateway is set to “0.0.0.0” and the router used

the peer’s “Local Address” as the router’s “Remote Address”.

This information conflicted with static rule #d; thus the

connection is not allowed.

Phase 1 ID type mismatch

This router’s "Peer ID Type" is different from the peer IPSec

router's "Local ID Type".

Phase 1 ID content mismatch

This router’s "Peer ID Content" is different from the peer

IPSec router's "Local ID Content".

No known phase 1 ID type
found

The router could not find a known phase 1 ID in the

connection attempt.

ID type mismatch. Local /
Peer: type>

The phase 1 ID types do not match.

ID content mismatch

The phase 1 ID contents do not match.

Configured Peer ID Content:

The phase 1 ID contents do not match and the configured

"Peer ID Content" is displayed.

Incoming ID Content:

The phase 1 ID contents do not match and the incoming

packet's ID content is displayed.

Unsupported local ID Type:
<%d>

The phase 1 ID type is not supported by the router.

Build Phase 1 ID

The router has started to build the phase 1 ID.

Adjust TCP MSS to %d

The router automatically changed the TCP Maximum

Segment Size value after establishing a tunnel.

Rule <%d> input idle time
out, disconnect

The tunnel for the listed rule was dropped because there was

no inbound traffic within the idle timeout period.

XAUTH succeed! Username:

The router used extended authentication to authenticate the

listed username.

XAUTH fail! Username:

The router was not able to use extended authentication to

authenticate the listed username.

Rule[%d] Phase 1 negotiation
mode mismatch

The listed rule’s IKE phase 1 negotiation mode did not match

between the router and the peer.

Rule [%d] Phase 1 encryption
algorithm mismatch

The listed rule’s IKE phase 1 encryption algorithm did not

match between the router and the peer.

Rule [%d] Phase 1
authentication algorithm
mismatch

The listed rule’s IKE phase 1 authentication algorithm did not

match between the router and the peer.

Rule [%d] Phase 1
authentication method
mismatch

The listed rule’s IKE phase 1 authentication method did not

match between the router and the peer.

Rule [%d] Phase 1 key group
mismatch

The listed rule’s IKE phase 1 key group did not match

between the router and the peer.

Rule [%d] Phase 2 protocol
mismatch

The listed rule’s IKE phase 2 protocol did not match between

the router and the peer.

Rule [%d] Phase 2 encryption
algorithm mismatch

The listed rule’s IKE phase 2 encryption algorithm did not

match between the router and the peer.

Table 153 IKE Logs (continued)

LOG MESSAGE

DESCRIPTION