This chapter describes messages with the FLOW prefix. They are generated by the process that handles flows on routers running the JUNOS software with enhanced services.
Number of sessions current-flows exceeded the high watermark limit. Early aging triggered.
Early aging of sessions is triggered when the number of concurrent session entries in the session table exceeds the configured high watermark. When the number of concurrent sessions drops below the configured low watermark, the router stops aggressively aging out sessions. This message notifies you that the session high watermark has been exceeded and aggressive aging of sessions has begun.
Event: This message reports an event, not an error
info
Flow IP action detected attack attempt: source-address/source-port --> destination-address/destination-port from interface interface-nameaction.
Flow IP action detected attack attempt.
Event: This message reports an event, not an error
info
Number of sessions current-flows dropped below the low watermark limit. Early aging stopped.
Early aging of sessions is triggered when the number of concurrent session entries in the session table exceeds the configured high watermark. When the number of concurrent sessions drops below the configured low watermark, the router stops aggressively aging out sessions. This message notifies you that the number of concurrent sessions has dropped below the configured low watermark, and that aggressive aging of sessions has stopped.
Event: This message reports an event, not an error
info
session closed reason: source-address/source-port->destination-address/destination-port,protocol-id: policy-name, inbound-packets, inbound-bytes,outbound-bytes elapsed-time
A security session was closed.
Event: This message reports an event, not an error
info
session created source-address/source-port->destination-address/destination-port,protocol-id: policy-name
A security session was created.
Event: This message reports an event, not an error
info
session denied source-address/source-port->destination-address/destination-port,protocol-id(icmp-type): policy-name
A security session was not permitted by policy.
Event: This message reports an event, not an error
info