User`s guide

376 XSR Users Guide
Firewall and NAT Alarms and Reports Appendix A
Alarms/Events and System Limits
Firewall and NAT Alarms and Reports
The XSR reports logging messages for firewall and NAT functionality as
listed below. Low system-level logging messages are classified at Levels 4 or 6
while Medium system-level alarms are classified at Level 3. The format codes
used in report descriptions are defined as follows:
%CMD - ACTIVEX, JAVA or CLS application commands
%IP1 - 192.168.1.1
%IP2 - 192.168.1.1->10.10.10.1
%IP_P2 - 192.168.1.1(12352)->10.10.10.1(21)
%IP_TC - 192.168.1.1 type 8 code 2
%IP2_ICMP - 192.168.1.1->10.10.10.1 type 8 code 0
%IP2_X - 192.168.1.1->10.10.10.1 protocol nn
%POL - Name of the firewall policy that causes this report
ASYNC_
DRIV
Recoverable error The device has hard recoverable error.
ASYNC_
DRIV
Packets lost > 255 (RX overrun) The number of packets lost due to RX FIFO overrun has
exceeded 255.
Table 18 Low Severity Alarms/Events (Continued)
Module Message Description
Table 19 Firewall and NAT Alarms
Severity Report Text
0 - EMERG Bad NAT entry pointer passed to freeAddrTransEntry()
0 - EMERG Init: Failed to allocate memory for NAT cache
1 - ALERT DHCP module resolved a new IP Address for NAT: %IP1
1 - ALERT DHCP module resolved a new IP Mask for NAT: %IP1
1 - ALERT DHCP module resolved a new router's IP address: %IP1
1 - ALERT NAT: Attempt made to bypass NAT by a GRE packet, %IP2
1 - ALERT NAT: Attempt made to bypass NAT, %IP_P2