2.19. FRAG
These log messages refer to the FRAG (Fragmentation events) category.
2.19.1. individual_frag_timeout (ID: 02000001)
Default Severity WARNING
Log Message Individual fragment timed out.
Explanation A fragment of an IP packet timed out, and is dropped.
Gateway Action drop
Recommended Action None.
Revision 1
Context Parameters Rule Name
Packet Buffer
2.19.2. fragact_contains_frags (ID: 02000002)
Default Severity CRITICAL
Log Message Internal Error: A failed active fragment contained fragments.
Dropping
Explanation An Internal Error occured when freeing an active fragment.
Dropping packet.
Gateway Action drop
Recommended Action None.
Revision 1
Context Parameters Dropped Fragments
Rule Name
2.19.3. fail_suspect_out_of_resources (ID: 02000003)
Default Severity CRITICAL
Log Message Out of reassembly resources for suspect. Frags: <frags>.
<srcip>-<destip> <ipproto> FragID: <fragid>, State: <fragact>
Explanation Out of fragmentation-reassembly resources when processing the IP
packet, which may contain illegal fragments. Dropping packet and
freeing resources.
Gateway Action drop
Recommended Action None.
Chapter 2: Log Message Reference
259