Join the Conversation

To sign in, use your existing MySonicWall account. To create a free MySonicWall account click "Register".


Constant IPsec AH Packet Dropped message.

Hello, I keep getting a message about IPsec AH Packets being dropped from one of my Ubuntu Nginx proxy servers. The destination is the VRRP multicast address and the catagory is VPN which is strange. Is there a reason why this is happening? Nothing seems to be wrong with the servers and their functions but I would like to find the reason these messages keep coming up and filling the logs. Does anyone know what this message exactly means?

I have a Global and SSL VPN running. This is on a TZ400 with the latest firmware.

Category: Entry Level Firewalls

Best Answer

  • Options
    MarkDMarkD Cybersecurity Overlord ✭✭✭
    Answer ✓

    If its a case of these devices communicaing with each other and its the event logged to the FW you dont want to see (its a m'cast to all devices on the subnet so seen by the firewall) You should be able to click the X in the event log and the FW will no longer log this message.


Sign In or Register to comment.