Message Code | PIX-4-402106 |
Severity | Warning |
Description | Rec'd packet not an IPSEC packet (ip) dest_address= dest_address, src_addr= source_address, prot= protocol |
Explanation | "The received packet matched the crypto map ACL, but it is not IPSec-encapsulated; the IPSec peer is sending unencapsulated packets. This error can occur because of a policy setup error on the peer. For example, the Cisco ASA only accepts encrypted Telnet traffic to the outside interface port 23. If you attempt to Telnet without IPSec encryption to the outside interface on port 23, this message appears. This error can also signify a hostile event. This system log message is not generated except under the conditions cited (for example, it is not generated for traffic to the Cisco ASA interfaces themselves). See messages 710001, 710002, and 710003 for messages that track TCP and UDP requests." |
User Action | Contact the peer's administrator to compare policy settings. |
Reference Links |
Catch threats immediately
We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.