Appendix A Log Descriptions
ZyWALL USG 20/20W User’s Guide
762
Content-Filter
service has expired.
The content filtering service period has expired. The device
can find this through either a service expiration day check via
MyZyXEL.com server or by the device’s own count.
Unknown TLS/SSL
version: %d.
The device only supports SSLv3 protocol. %d: SSL version
assigned by client.
Load trusted root
certificates has
failed.
The device needs to load the trusted root certificate before
the device can verify a server's certificate. This log displays if
the device failed to load it.
Certificate has
expired.
Verification of a server’s certificate failed because it has
expired.
Self signed
certificate.
Verification of a server’s certificate failed because it is self-
signed.
Self signed
certificate in
certificate chain.
Verification of a server’s certificate failed because there is a
self-signed certificate in the server’s certificate chain.
Verify peer
certificates has
succeeded.
The device verified a server’s certificate while processing an
HTTPS connection.
Certification
verification failed:
Depth: %d, Error
Number(%d):%s.
Verification of a server’s certificate failed while processing an
HTTPS connection. This log identifies the reason for the
failure.
1st %d: certificate chain level
2nd %d: error number
%s: error message
Certificate issuer
name:%s.
Verification of the specified certificate failed because the
device could not get the certificate’s issuer name. %s is the
certificate name.
The wrong format for
HTTP header.
The header format of a packet returned by a server is wrong.
Timeout for get server
response.
After the device sent packets to a server, the device did not
receive any response from the server. The root cause may be
a network delay issue.
Download file size is
wrong.
The file size downloaded for AS is not identical with content-
length
Parse HTTP header has
failed.
Device can't parse the HTTP header in a response returned by
a server. Maybe some HTTP headers are missing.
Table 247 IKE Logs
LOG MESSAGE DESCRIPTION
Peer has not announced
DPD capability
The remote IPSec router has not announced its dead peer
detection (DPD) capability to this device.
[COOKIE] Invalid
cookie, no sa found
Cannot find SA according to the cookie.
Table 246 myZyXEL.com Logs (continued)
LOG MESSAGE DESCRIPTION