We use cookies on our website to ensure we provide you with the best experience on our website. By using our website, you agree to the use of cookies for analytics and personalized content.This website uses cookies. More Information
It seems like your browser didn't download the required fonts. Please revise your security settings and try again.
Barracuda NextGen Firewall X

Log message 'PAYLOAD_MALFORMED', 'INVALID_PAYLOAD_TYPE', 'INVALID_COOKIE' reported in ike.log

  • Type: Knowledgebase
  • Date changed: 5 months ago
Solution 00005279 

 
Scope:
This solution replies to:
- NG Firewall firmware versions 4.2.x, 5.0.x, 5.2.x
- netfence firmware versions 4.2.x

 
Symptoms:

This messages are reported in the "Log" > "<Servername>" > "<Servicename>" > "ike.log":

dropped message from x.x.x.x port 500 due to notification type PAYLOAD_MALFORMED
dropped message from x.x.x.x port 500 due to notification type INVALID_PAYLOAD_TYPE
dropped message from x.x.x.x port 500 due to notification type INVALID_COOKIE

What does it mean?


 

Solution:

dropped message from x.x.x.x port 500 due to notification type PAYLOAD_MALFORMED
dropped message from x.x.x.x port 500 due to notification type INVALID_PAYLOAD_TYPE

These errors do indicate that the preshared-key does not match on the two peers. The result of this will be that the encrypted fifth main-mode packet will be "incorrectly" decrypted, or decrypted with another key.


dropped message from x.x.x.x port 500 due to notification type INVALID_COOKIE

This error indicate, that the configuration of Phase1 or Phase2 does not match between both peers.



Link to This Page:
https://campus.barracuda.com/solution/50160000000IKbAAAW