TMS zl Management and Configuration Guide ST.1.1.100226

10-48
Troubleshooting
Troubleshooting the TMS zl Module in Routing Mode
stealth mode. If an access policy denies a connection, the TMS zl Module
denies the connection request by dropping the packet without sending such
a message.
You Receive Multiple “IPROUTE: packet spoof detected” Log
Messages. This log message is generated by the internal TMS zl Module
packet spoof detection. When a packet with a source IP address cannot be
reached through any of the TMS routes, this log message will be generated. If
there are a lot of false positives, ensure that proper routes are configured on
the TMS zl Module and add a proper default route.
You Suspect a Problem with an ALG. If you think there is a problem with
an ALG, you may want to temporarily disable the ALG. To do so, complete the
following steps:
1. Access the switch’s CLI and enter the following command:
hostswitch# services <slot ID> 2
2. Move to the global configuration context:
hostswitch(tms-module-C)# configure terminal
3. Disable the ALG by entering:
hostswitch(tms-module-C:config)# no alg <alg>
You Cannot Add a User Group. When trying to add user groups, you
receive one of the following error messages:
Error: Failed to add user group
The group name could not be added.
Ensure that the number of user groups has not exceeded the maximum limit
of 16.
Application Experiences Problems After TMS zl Module Is Installed.
If
If a network application does not work properly after the TMS zl Module is
installed, first ensure that the necessary access policy has been configured to
allow the application’s traffic. The access policy must allow the host to commu-
nicate with the network application on the ports that the application uses.
If you still have problems, complete the following steps:
1. Create a temporary access policy to allow traffic from just the host that
is running the network application. Use the following values: