z/OS Communications Server: IP Messages Volume 4 (EZZ, SNM)
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


EZZ8676I

z/OS Communications Server: IP Messages Volume 4 (EZZ, SNM)
SC27-3657-01

EZZ8676I
TRMD ATTACK EE XID timeout flood statistics: date time dipaddr= dipaddr timeoutcnt= timeoutcnt peakxids= peakxids floodcount= floodcount sennsorhostname= sensorhostname

Explanation

Intrusion Detection Services (IDS) ATTACK statistics have been gathered for the XID flood policy. All the values, except peakxids, represent the number of received XIDs that timed out in the statistics interval. The value for the statistics interval is defined in the action associated with the IDS EE XID attack rule.

In the message text:
date
The date when the statistics were collected.
time
The time when the statistics were collected.
dipaddr
The destination IP address of the EE connection.
timeoutcnt
The total number of XID timeouts during this statistics interval.
peakxids
The highest number of XID timeouts in any one minute interval during this statistics interval.
floodcount
The number of times an EE XID flood started during this statistics interval.
sensorhostname
The fully qualified host name of the IDS sensor.

System action

Processing continues.

Operator response

None.

System programmer response

None.

User response

Not applicable.

Problem determination

None.

Source

z/OS® Communications Server TCP/IP: TRMD

Module

EZATRMD

Routing code

2, 8

Descriptor code

8, 9

Automation

None.

Example

EZZ8676I TRMD ATTACK EE XID timeout Flood statistics:10/19/2010 01:53:00.97 dipaddr=9.42.105.53 
timeoutcnt= 105 peakxids= 4 floodcount= 1 sensorhostname=HOST1.COMPANYBA.COM

Procedure name

WriteLogEntries

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014