Open Frames Download Complete PDF Send Feedback Print This Page

Previous

Next

F2F Rejection Reasons

Name

Description

FRAG

Packet is a fragment

IP_OPT

Packet has IP options

CONN_MISS_ICMP

No connection found for an ICMP packet

CONN_MISS_TCP_SYN

No connection found for a TCP syn packet

CONN_MISS_TCP_OTHER

No connection found for a TCP non-syn packet

CONN_MISS_UDP

No connection found for a UDP packet

CONN_MISS_OTHER

No connection not found for a packet of any other type

VPN_F2F

VPN connection

F2F_IS_ON_ICMP

ICMP packet set by the firewall to be rejected

F2F_IS_ON_TCP

TCP packet set by the firewall to be rejected

F2F_IS_ON_UDP

UDP packet set by the firewall to be rejected

F2F_IS_ON_OTHER

Other type of packet set by the firewall to be rejected

UNIDIR_VIOL

Uni-directional violation

SPOOF_VIOL

Possible spoof violation

TCP_STATE

Possible TCP state violation

OUT_IF

Outbound Interface is not defined or accelerated

XMT_EQ_RCV

Incoming interface is the same as the outgoing interface

ROUTING_ERR

Routing decision error

SANITY_CHECKS

Sanity checks failed

TEMP_CONN

Temporary connection expired

FWD_NON_PIVOT

Device cannot forward to non-pivot member

BROADCAST

Broadcast / multicast in pivot member

CLUSTER_MSG

Source address is of FWHA protocol or LS forwarding layer

PARTIAL_CONN

Partial connection

PXL_F2F

PXL connection

CLUSTER_FORWARD

Packet forwarded from another cluster member

CHAIN_FORWARD

Packet reinjection by the chain forwarding mechanism

SPORT_ALLOC_F2F

Packet rejected due to port allocation failure

GENERAL

Packet rejected for a reason not listed above

 
Top of Page ©2014 Check Point Software Technologies Ltd. All rights reserved. Download Complete PDF Send Feedback Print