2.68. SSLVPN

These log messages refer to the SSLVPN (SSLVPN events.) category.

2.68.1. sslvpn_session_created (ID: 06300010)

Default Severity
INFORMATIONAL
Log Message
SSL VPN Session created at <ssliface>
Explanation
SSL VPN Session created at [ssliface].
Firewall Action
None
Recommended Action
None
Revision
3
Parameters
ssliface
username
ipaddr
Context Parameters
Connection

2.68.2. sslvpn_session_closed (ID: 06300011)

Default Severity
INFORMATIONAL
Log Message
SSLVPN session closed at <ssliface>
Explanation
SSLVPN session closed at [ssliface].
Firewall Action
None
Recommended Action
None
Revision
3
Parameters
ssliface
username
ipaddr
Context Parameters
Connection

2.68.3. sslvpn_max_sessions_reached (ID: 06300012)

Default Severity
ERROR
Log Message
SSL VPN can not create session. Maximum allowed SSL VPN tunnels reached.
Explanation
SSL VPN can not create session. Maximum allowed VPN SSL tunnels reached.
Firewall Action
None
Recommended Action
None
Revision
3

2.68.4. failure_init_radius_accounting (ID: 06300013)

Default Severity
WARNING
Log Message
Failed to send Accounting Start to RADIUS Accounting Server. Accouting will be disabled. Interface: <iface>
Explanation
Failed to send START message to RADIUS accounting server. RADIUS accounting will be disabled for this session. The specified interface, client IP and call ID identify the specific session.
Firewall Action
accounting_disabled
Recommended Action
Make sure the RADIUS accounting configuration is correct.
Revision
1
Parameters
iface

2.68.5. sslvpn_connection_disallowed (ID: 06300203)

Default Severity
WARNING
Log Message
SSL VPN connection from <client_ip> disallowed according to rule <rule>!
Explanation
The SSL VPN connection is disallowed by the new configuration according to the specified userauth rule. Closing down the SSL VPN connection.
Firewall Action
sslvpn_connection_closed
Recommended Action
Make sure the userauth rules are configured correctly.
Revision
2
Parameters
rule
client_ip

2.68.6. unknown_sslvpn_auth_source (ID: 06300204)

Default Severity
WARNING
Log Message
Unknown SSL VPN authentication source for <rule>! Client: <client_ip>
Explanation
The authentication source for the specified userauth rule found in the new configuration is unknown to the SSL VPN server. Closing down the SSL VPN connection.
Firewall Action
sslvpn_connection_closed
Recommended Action
Make sure the userauth rules are configured correctly.
Revision
2
Parameters
rule
client_ip

2.68.7. user_disconnected (ID: 06300205)

Default Severity
INFORMATIONAL
Log Message
User <username> is forcibly disconnected. Client: <client_ip>
Explanation
The connected client is forcibly disconnected by the userauth system.
Firewall Action
None
Recommended Action
None
Revision
3
Parameters
username
client_ip

2.68.8. sslvpn_connection_disallowed (ID: 06300224)

Default Severity
WARNING
Log Message
SSL VPN connection from <client_ip> disallowed according to rule <rule>. Interface: <iface>.
Explanation
The SSL VPN connection is disallowed according to the specified userauth rule.
Firewall Action
None
Recommended Action
Make sure the userauth rules are configured correctly.
Revision
2
Parameters
rule
iface
client_ip

2.68.9. unknown_sslvpn_auth_source (ID: 06300225)

Default Severity
WARNING
Log Message
Unknown SSL VPN authentication source for <rule>!. Interface: <iface>, Client: <client_ip>.
Explanation
The authentication source for the specified userauth rule is unknown to the SSL VPN server.
Firewall Action
None
Recommended Action
Make sure the userauth rules are configured correctly.
Revision
2
Parameters
rule
iface
client_ip

2.68.10. sslvpn_no_userauth_rule_found (ID: 06300226)

Default Severity
CRITICAL
Log Message
Did not find a matching userauth rule for the incoming SSL VPN connection. Interface: <iface>, Client: <client_ip>.
Explanation
The SSL VPN server was unsuccessful trying to find a userauth rule matching the incoming SSL VPN connection.
Firewall Action
None
Recommended Action
Make sure the userauth rules are configured correctly.
Revision
3
Parameters
iface
client_ip