
Recommended Action
If any of these combinations should either be ignored or having the
bad flag stripped, specify this in configuration, in the "Settings" sub
system.
Revision
1
Parameters
good_flag
bad_flag
Context Parameters
Rule Name
Packet Buffer
2.29.7. tcp_flag_set (ID: 03300009)
Default Severity
WARNING
Log Message
The TCP <bad_flag> flag is set. Dropping
Explanation
The TCP flag is set. Dropping packet.
Gateway Action
drop
Recommended Action
None.
Revision
1
Parameters
bad_flag
Context Parameters
Rule Name
Packet Buffer
2.29.8. unexpected_tcp_flags (ID: 03300010)
Default Severity
WARNING
Log Message
Unexpected tcp flags <flags> from <endpoint> during state <state>.
Dropping
Explanation
Received unexpected tcp flags during a specific state. Dropping
packet.
Gateway Action
drop
Recommended Action
None.
Revision
1
Parameters
flags
endpoint
state
Context Parameters
Rule Name
Connection
Packet Buffer
2.29.9. mismatched_syn_resent (ID: 03300011)
2.29.7. tcp_flag_set (ID: 03300009)
Chapter 2. Log Message Reference
318
Summary of Contents for NetDefend SOHO DFL-160
Page 20: ...List of Tables 1 Abbreviations 23 20 ...
Page 21: ...List of Examples 1 Log Message Parameters 22 2 Conditional Log Message Parameters 22 21 ...
Page 31: ...1 3 Severity levels Chapter 1 Introduction 31 ...
Page 356: ...2 33 53 sent_sslalert ID 03700511 Chapter 2 Log Message Reference 356 ...