Gateway Action
ignore
Recommended Action
None.
Revision
1
Parameters
bad_flag
Context Parameters
Rule Name
Packet Buffer
2.42.4. tcp_flag_set (ID: 03300004)
Default Severity
NOTICE
Log Message
The TCP <bad_flag> flag is set. Stripping
Explanation
A "bad" TCP flag is set. Removing it.
Gateway Action
strip_flag
Recommended Action
None.
Revision
1
Parameters
bad_flag
Context Parameters
Rule Name
Packet Buffer
2.42.5. tcp_null_flags (ID: 03300005)
Default Severity
NOTICE
Log Message
Packet has no SYN, ACK, FIN or RST flag set
Explanation
The packet has no SYN, ACK, FIN or RST flag set. Ignoring.
Gateway Action
ignore
Recommended Action
None.
Revision
1
Context Parameters
Rule Name
Packet Buffer
2.42.6. tcp_flags_set (ID: 03300008)
Default Severity
WARNING
Log Message
The TCP <good_flag> and <bad_flag> flags are set. Dropping
Explanation
The possible combinations for these flags are: SYN URG, SYN PSH,
SYN RST, SYN FIN and FIN URG.
Gateway Action
drop
2.42.4. tcp_flag_set (ID: 03300004)
Chapter 2. Log Message Reference
425
Summary of Contents for DFL-210 - NetDefend - Security Appliance
Page 25: ...List of Tables 1 Abbreviations 28 25...
Page 26: ...List of Examples 1 Log Message Parameters 27 2 Conditional Log Message Parameters 27 26...
Page 36: ...1 3 Severity levels Chapter 1 Introduction 36...
Page 195: ...2 12 6 route_removed ID 01100006 Chapter 2 Log Message Reference 195...
Page 409: ...2 40 19 scp_failed_not_admin ID 04704000 Chapter 2 Log Message Reference 409...
Page 476: ...2 49 14 zd_block ID 03800014 Chapter 2 Log Message Reference 476...