FLOW System Log Messages
This chapter describes messages with the FLOW prefix. They are generated by the process that handles flows on routers running the JUNOS Software with enhanced services.
FLOW_HIGH_WATERMARK_TRIGGERED
System Log Message
Number of sessions current-flows exceeded the high watermark limit. Early aging triggered.
Description
Early aging of sessions is triggered when the number of concurrent session entries in the session table exceeds the configured high watermark. When the number of concurrent sessions drops below the configured low watermark, the router stops aggressively aging out sessions. This message notifies you that the session high watermark has been exceeded and aggressive aging of sessions has begun.
Type
Event: This message reports an event, not an error
Severity
info
Facility
LOG_PFE
FLOW_IP_ACTION
System Log Message
Flow IP action detected attack attempt: source-address/source-port --> destination-address/destination-port from interface interface-nameaction.
Description
Flow IP action detected attack attempt.
Type
Event: This message reports an event, not an error
Severity
info
Facility
LOG_PFE
FLOW_LOW_WATERMARK_TRIGGERED
System Log Message
Number of sessions current-flows dropped below the low watermark limit. Early aging stopped.
Description
Early aging of sessions is triggered when the number of concurrent session entries in the session table exceeds the configured high watermark. When the number of concurrent sessions drops below the configured low watermark, the router stops aggressively aging out sessions. This message notifies you that the number of concurrent sessions has dropped below the configured low watermark, and that aggressive aging of sessions has stopped.
Type
Event: This message reports an event, not an error
Severity
info
Facility
LOG_PFE
FLOW_SESSION_CLOSE
System Log Message
session closed reason: source-address/source-port->destination-address/destination-port,protocol-id: policy-name, inbound-packets, inbound-bytes,outbound-bytes elapsed-time
Description
A security session was closed.
Type
Event: This message reports an event, not an error
Severity
info
Facility
LOG_PFE
FLOW_SESSION_CREATE
System Log Message
session created source-address/source-port->destination-address/destination-port,protocol-id: policy-name
Description
A security session was created.
Type
Event: This message reports an event, not an error
Severity
info
Facility
LOG_PFE
FLOW_SESSION_DENY
System Log Message
session denied source-address/source-port->destination-address/destination-port,protocol-id(icmp-type): policy-name
Description
A security session was not permitted by policy.
Type
Event: This message reports an event, not an error
Severity
info
Facility
LOG_PFE