These log messages refer to the IP_ERROR (Packet discarded due to IP header error(s)) category.
2.38.1. too_small_packet (ID: 01500001)
- Default Severity
- WARNING
- Log Message
- Packet is too small to contain IPv4 header
- Explanation
- The received packet is too small to contain an IPv4 header and will be dropped.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 2
- Context Parameters
- Rule Name
Packet Buffer
2.38.2. disallowed_ip_ver (ID: 01500002)
- Default Severity
- WARNING
- Log Message
- Disallowed IP version <ipver>
- Explanation
- The received packet has a disallowed IP version and will be dropped.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 2
- Parameters
- ipver
- Context Parameters
- Rule Name
Packet Buffer
2.38.3. invalid_ip_length (ID: 01500003)
- Default Severity
- WARNING
- Log Message
- Invalid IP header length - IPTotLen=<iptotlen>, IPHdrLen=<iphdrlen>
- Explanation
- The received packet IP header specifies an invalid length. The IP Header length can never be smaller than 20 bytes or longer
than the total packet length. Dropping packet.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 1
- Parameters
- iptotlen
iphdrlen
- Context Parameters
- Rule Name
Packet Buffer
2.38.4. invalid_ip_length (ID: 01500004)
- Default Severity
- WARNING
- Log Message
- Invalid IP header length, IPTotLen=<iptotlen>, RecvLen=<recvlen>
- Explanation
- The received packet IP total length is larger than the received transport data. Dropping packet.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 1
- Parameters
- iptotlen
recvlen
- Context Parameters
- Rule Name
Packet Buffer
2.38.5. invalid_ip_checksum (ID: 01500005)
- Default Severity
- WARNING
- Log Message
- Invalid IP header checksum - RecvChkSum=<recvchksum>, CompChkSum=<compchksum>
- Explanation
- The received packet IP header checksum is invalid, dropping packet.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 1
- Parameters
- recvchksum
compchksum
- Context Parameters
- Rule Name
Packet Buffer
2.38.6. Invalid_ip6_flow (ID: 01500020)
- Default Severity
- WARNING
- Log Message
- Invalid flow label value
- Explanation
- The received packet with flow label other than zero.
- Firewall Action
- None
- Recommended Action
- None
- Revision
- 1
- Parameters
- flow_label
- Context Parameters
- Rule Name
Packet Buffer
2.38.7. Invalid_ip6_flow (ID: 01500021)
- Default Severity
- WARNING
- Log Message
- Invalid flow label value
- Explanation
- The received packet with flow label other than zero.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 1
- Parameters
- flow_label
- Context Parameters
- Rule Name
Packet Buffer
2.38.8. Invalid_ipv6_tc (ID: 01500022)
- Default Severity
- WARNING
- Log Message
- Invalid traffic class value
- Explanation
- The received packet with traffic class other than zero.
- Firewall Action
- None
- Recommended Action
- None
- Revision
- 2
- Parameters
- traffic_class
- Context Parameters
- Rule Name
Packet Buffer
2.38.9. Invalid_ipv6_tc (ID: 01500023)
- Default Severity
- WARNING
- Log Message
- Invalid traffic class value
- Explanation
- The received packet with traffic class other than zero.
- Firewall Action
- strip
- Recommended Action
- None
- Revision
- 2
- Parameters
- traffic_class
- Context Parameters
- Rule Name
Packet Buffer
2.38.10. Invalid_ipv6_tc (ID: 01500024)
- Default Severity
- WARNING
- Log Message
- Invalid traffic class value
- Explanation
- The received packet with traffic class other than zero.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 2
- Parameters
- traffic_class
- Context Parameters
- Rule Name
Packet Buffer
2.38.11. faulty_payload (ID: 01500025)
- Default Severity
- WARNING
- Log Message
- Packet actual payload size <ipactpaylen> does not match IPv6 header payload size <ippaylen>.
- Explanation
- The received packet IPv6 header payload size is faulty and will be dropped.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 1
- Parameters
- ippaylen
ipactpaylen
- Context Parameters
- Rule Name
Packet Buffer
2.38.12. too_small_packet (ID: 01500026)
- Default Severity
- WARNING
- Log Message
- Packet is too small to contain IPv6 header
- Explanation
- The received packet is too small to contain an IPv6 header and will be dropped.
- Firewall Action
- drop
- Recommended Action
- None
- Revision
- 2
- Context Parameters
- Rule Name
Packet Buffer