z/OS Communications Server: IP Messages Volume 4 (EZZ, SNM)
Previous topic | Next topic | Contents | Contact z/OS | Library | PDF


EZZ8438I

z/OS Communications Server: IP Messages Volume 4 (EZZ, SNM)
SC27-3657-01

EZZ8438I
PAGENT POLICY DEFINITIONS CONTAIN ERRORS FOR image : type

Explanation

The specified policies, which are defined in a configuration file or on an LDAP server, contain errors, or cannot be accessed, for the specified TCP/IP stack or remote policy client. The error might be caused by any of the following conditions:
  • The policy definitions contain one or more syntax or semantic errors.
  • The configuration file configured for the specified policy type does not exist or cannot be read.
  • The Policy Agent that is acting as a policy client does not have permission to access the specified policy type on the Policy Agent that is acting as a policy server.
  • The import requestor does not have permission to access the policy type on the Policy Agent.

image is the name of the TCP/IP stack, remote policy client, or import requestor for which the policy errors were detected. When the image value specifies an import requestor, this message is written only to the Policy Agent log file.

type indicates the policy type for which errors were detected. The type value is one of the following:
IDS
Intrusion Detection Services policies
IPSEC
IP Filtering, KeyExchange and LocalDynVpn policies
LDAP
Policies configured in LDAP
QOS
Quality of Service policies
ROUTING
Policy-based routing policies
TTLS
Application Transparent Transport Layer Security (AT-TLS) policies

System action

The results depend on type as follows:
IDS
Only the policy (for example rule or action) that contained the error was discarded.
IPSEC
The previous IPSec policies will remain in effect and all of the new configured IPSec policies were discarded.
LDAP
Only the policy (for example rule or action) that contained the error was discarded.
QOS
Only the policy (for example rule or action) that contained the error was discarded.
ROUTING
The previous routing policies remain in effect and all of the newly configured routing policies are discarded.
TTLS
The previous AT-TLS policies will remain in effect and all of the new configured AT-TLS policies were discarded.

Operator response

Contact the system programmer. If the system programmer indicates that more information is required in the appropriate Policy Agent log file, restart the Policy Agent with a minimum of LogLevel 127 configured in the configuration file, or with the -d 1 start option.

System programmer response

Examine the log files to determine the cause of the policy definition errors. When this message occurs on a policy client, examine the log files on the policy server because policy parsing is performed on the policy server. If you need more information to diagnose the errors, re-create the error with a minimum of LogLevel 127 configured in the configuration file or start the appropriate Policy Agent with the -d 1 start option. Correct the Policy Agent policy definition errors identified in the log and restart Policy Agent with the corrected policy definitions.

Module

PLFMMISC

Procedure name

plfm_disciplineMsg

Go to the previous page Go to the next page




Copyright IBM Corporation 1990, 2014