Default Severity
Log Message
Disallowed SNMP from <peer>, message is outside of the Time
/-150 seconds
Explanation
According to SNMPv3 specification RFC3414 a message containing
engine time that differs more than +/-150 seconds from current time
is to be dropped to prevent replay attacks.
Gateway Action
drop
Recommended Action
Investigate the peer that sends SNMP messages that are ouside the
Time Window.
Revision
1
Parameters
peer
Context Parameters
2.53.10. snmp3_bad_version (ID: 03100107)
Default Severity
Log Message
Disallowed SNMP from <peer>, wrong SNMP version
Explanation
The SNMP request did not have the correct SNMP version.
Gateway Action
drop
Recommended Action
Make sure the selected SNMP version is correct.
Revision
1
Parameters
peer
Context Parameters
2.53.11. snmp3_decryption_failed (ID: 03100108)
Default Severity
Log Message
Disallowed SNMP from <peer>, decryption failed
Explanation
The SNMP decryption failed because peer did not send an
appropriate privParameter.
Gateway Action
drop
Recommended Action
Investigate the device that send invalid privParameter.
Revision
1
Parameters
peer
Context Parameters
Chapter 2: Log Message Reference
560
Summary of Contents for NetDefend DFL-260E
Page 32: ...List of Tables 1 Abbreviations 35 32...
Page 33: ...List of Examples 1 Log Message Parameters 34 2 Conditional Log Message Parameters 34 33...
Page 42: ...routemetric Route metric cost Chapter 1 Introduction 42...
Page 44: ...Chapter 1 Introduction 44...
Page 216: ...Rule Information Connection Chapter 2 Log Message Reference 216...
Page 243: ...client_ip Context Parameters Rule Name Packet Buffer Chapter 2 Log Message Reference 243...
Page 556: ...logger Chapter 2 Log Message Reference 556...
Page 613: ...Parameters location Chapter 2 Log Message Reference 613...