IP filter rules changed (1615)
This alert is generated when an IP filter rule is changed, added, or deleted.
The email format of the alert is:
From: C2POLICE at DINO
Subject: Alert: IP filter rules changed in TCP/IP stack TCPIP
Alert: IP filter rules changed in TCP/IP stack TCPIP
Alert id 1615
Kind of change CHG-
Changed fields LOG(Yes->No)-
Source IP
Source prefix length 0
Source port 0
Destination IP
Destination prefix length 0
Destination port 0
Protocol
Type 64
Code 0
Packet filter logging enabled No
Routing LOCAL
Security class 0
Stack TCPIP
System ID DINO
The text message format of the alert is:
Subject: Alert 1615: IP filter rules changed in TCP/IP stack TCPIP
Alert:1615: IP filter rules changed in TCP/IP stack TCPIP
The generated email contains several components of the changed, added, or deleted IP filter rule: the source IP address for the outbound rule, the prefix length for the source subnet address, the source port for the outbound rule (for TCP or UDP traffic), the destination IP address for the outbound rule, the destination subnet address prefix length, the destination port for the outbound rule (matching the source port for the generated inbound rule), the type of traffic that the rule applies to, the ICMP value (for ICMP traffic), an indication whether packet filter logging is enabled for the default filter rule, the type of packet routing that the rule applies to, and the security class of the rule.