Support Center > Search Results > SecureKnowledge Details
SNX traffic with R80.10 Security Gateway dropped with "Rulebase - ERROR"
Symptoms
  • SNX traffic with R80.10 Security Gateway dropped.
    #fw ctl zdebug drop | grep output:
    dropped by fw_send_log_drop Reason: Rulebase - ERROR;
  • VPN Kernel debug:
    cmi_context_exec_from_non_stream: cmik_loader_fw_context_match_cb(context=352, app_id = 23, context_apps=ec0000) failed;
    [ERROR]: up_manager_fw_handle_first_packet: cmi_exec_from_first_packet() failed;
    [ERROR]: up_manager_fw_handle_first_packet: failed to execute first packet context; fw_log_drop_ex: Packet proto=xx x.x.x.x:xxxxx -> y.y.y.y:yy dropped by fw_send_log_drop Reason: Rulebase - ERROR;
  • CVPND.elg:
    [AUTHORIZATION] [CVPN_INFO] Authorization::MailAuthorizeCommand::isSensitivitySatisfied: Sensitivity secondary authentication is not satisfied
Cause

Mobile Access Blade protection levels were configured incorrectly and casued the Mobile Access Blade policy to drop/reject the specific connection.


Solution
Note: To view this solution you need to Sign In .