z/OS Communications Server: IP Messages Volume 2 (EZB, EZD)
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


EZD2022A

z/OS Communications Server: IP Messages Volume 2 (EZB, EZD)
SC27-3655-01

EZD2022A
QDIO ACCELERATOR IS ENABLED ONLY FOR SYSPLEX DISTRIBUTOR BECAUSE OF DEFENSIVE FILTER RULES

Explanation

QDIO Accelerator will accelerate only Sysplex Distributor traffic. Routed traffic cannot be accelerated because the defensive filters managed by the defense manager daemon (DMD) are being used to block some routed traffic. To satisfy the defensive filters, routed traffic must be processed by the TCP/IP stack, where defensive filtering is implemented.

System action

Processing continues with QDIO Accelerator enabled only for sysplex distributor traffic.

Operator response

Contact the system programmer.

System programmer response

Defensive filters are usually added to block a temporary security condition such as an attack or scan. The defensive filters causing this condition are removed when their configured expiration time passes. You can wait for the filters to expire.

Before these defensive filters expire, you can work with the security administrator to evaluate whether the filters are still needed. If the defensive filters are no longer needed, the security administrator can use the <ipsec -F command> to delete them.

For more information, see QDIO Accelerator and IP security in z/OS Communications Server: IP Configuration Guide.

User response

Not applicable.

Problem determination

None.

Source

z/OS® Communications Server TCP/IP

Module

EZBISDAD, EZBIPEPR

Routing code

10

Descriptor code

2

Automation

You can automate on this message to detect situations when routed traffic is not being QDIO accelerated because of defensive filter rules.

Example

EZD2022A QDIO ACCELERATOR IS ENABLED ONLY FOR SYSPLEX DISTRIBUTOR BECAUSE OF DEFENSIVE FILTER RULES

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014