Category – Internet Access Gateway(IAG)

[aBOS] After aBOS is launched, the intranet can ping vIAG but cannot ping aBOS
[BA] After installing the external SP package, the external console cannot log in
[BA] BA query log stuck — hardware KEY detection failed
[BA] Shutdown detection has no data–user is in the root group
[BA] The audited file on the USB disk cannot be exported — the attachment is not synchronized to the external
[BA] The BA page displays all garbled characters – the disk space is full.
[BA] The behavior perception system cannot find any records when querying a certain group – the organizational structure will not be automatically synchronized
[BA] The number of people on the detection interface that is not shut down is inconsistent with the number of people in the exported report
[DAS] Auditing method for web and database business monitoring on different IP addresses
[DAS] How to uninstall the agent plug-in under Windows
[DAS] Oracle database operation audit is incomplete
[IAG access] The authentication-free access scenario does not take effect
[IAG] 12.0.42 link load does not take effect
[IAG] 12.0.62R2 upgrade to 12.0.80 failed
[IAG] 12.0.8 Authentication Policy MAC as Username Automatic Entry User and MAC Address Binding Failed
[IAG] 163 mailbox audit failed – SSL content recognition is not effective
[IAG] 6.1 to 11.0R2 upgrade failed – too many URLs in the blacklist and whitelist groups
[IAG] 6.1 upgrade to IAG11.0 upgrade error – the external file alarm function is configured
[IAG] 802.1x authentication Android 11 does not support the method of not verifying certificates
[IAG] 802.1x authentication failed on the computer side – certificate authentication was enabled
[IAG] 802.1X authentication, authentication assistant succeeds, but authentication fails on IAG
[IAG] 802.1x Ingress Client opens error message
[IAG] A case where integrated wndow identity authentication (iwa) single sign-on fails to join the domain
[IAG] A computer on the intranet cannot access the IAG console – there is a conflict with the computer's virtual network card address
[IAG] A custom URL for a domain name failed to be released – web file type filtering caused
[IAG] A new external network line was added, causing abnormal Internet access on the internal network
[IAG] A new network segment is added to the intranet and cannot access the network–Authentication policy denies authentication
[IAG] A possibility that access control policy denial may not take effect
[IAG] A possibility that the bridge deployment device cannot log in
[IAG] A possibility that the data center cannot find logs
[IAG] A possible reason why the device CPU is continuously high
[IAG] A single website cannot be accessed, and the direct access prompts that the user authentication packet is lost
[IAG] A situation where the data center cannot query logs based on the organizational structure
[IAG] Abnormal IAG behavior audit QQ application log in bypass mode – monitoring network segment setting problem
[IAG] Abnormal status of active/standby deployment indicates heartbeat timeout – high availability is not enabled on the standby machine
[IAG] Abnormal user logout–the terminal's heartbeat detection interaction message and IAG communication failed
[IAG] abos initialization wizard prompts that at least one gateway type device should be activated: The authorization serial number is opened incorrectly
[IAG] aBOS warns every day that the virtual storage usage exceeds the threshold: Turning on automatic backup causes
[IAG] Access is restricted when modifying IP address group in object definition
[IAG] Access policy is not effective – the user terminal matching the access policy does not pop up the access interception page
[IAG] Access rules have been set, but the client has been prompted for violation, and the policy of prohibiting Internet access has not taken effect – the silent installation function has been enabled
[IAG] Access to an intranet server without going through IAG was blocked by IAG, and will be restored after going through directly
[IAG] Access to the intranet server is inaccessible —IAG global exclusion is normal
[IAG] Access to the public network database port cannot communicate
[IAG] Accessing the headquarters application via ipsec is blocked by policy: the VPN belongs to the wrong area
[IAG] Accessing the redirection address 1.1.1.3 is sometimes not accessible
[IAG] Accessing VDI using a browser without going through IAG prompts that it is blocked by IAG policy
[IAG] Across three-layer environments, users bound to MAC cannot access the Internet
[IAG] Active-active deployment cannot log in to the node due to virtual address anomaly
[IAG] AD domain password authentication and local password authentication are used at the same time, and the password authentication prompts that the password is wrong
[IAG] AD domain password authentication prompts the user has expired —- there is a local user with the same name with an expiration time set
[IAG] AD domain password authentication, some users will be prompted that it does not exist
[IAG] AD domain push access Ingress Client cannot be uninstalled
[IAG] AD domain script single sign-on becomes Sangfor forwarding online – no external authentication server added
[IAG] AD domain script single sign-on causes slow startup of users
[IAG] AD domain script single sign-on failed because the sinforIP file content did not configure the user's computer DNS IP address.
[IAG] AD domain script single sign-on failed, sinforIP file was placed in the wrong directory
[IAG] AD domain script single sign-on user is authenticated and forwarded to logout
[IAG] AD domain single sign-on cannot go online, prompting a situation where binding verification failed
[IAG] AD domain single sign-on users often log out and go online collectively
[IAG] AD domain user synchronization failed–StrongAuthRequired is required (strong authentication binding is required)
[IAG] AD domain users create a new security group, and domain users cannot associate policies through the security group
[IAG] Added LDAP server, test account validity, error: Successfully connected to the server but unable to bind user
[IAG] Administrators at the same level cannot edit Internet access policies
[IAG] Administrators at the same level cannot edit policies created by others
[IAG] ADNSHOST keep generate warning log
[IAG] After a user is moved to another group, the logs for this user for a certain month cannot be found.
[IAG] After adding the AD domain server, the validity test failed and the baseDN could not be obtained.
[IAG] After BBC upgrade, IAG can send configurations normally, but SG cannot send configurations normally
[IAG] After configuration import, all application control policies are displayed in the audit policy position
[IAG] After configuring 802.1X authentication, you can change your password through the authentication assistant and still authenticate and log in with an incorrect account and password.
[IAG] After configuring a custom authentication page, the authentication interface does not display updated
[IAG] After configuring password authentication, the PC cannot automatically connect to WIFI when it is turned on – the wireless WIFI detection traffic is intercepted by IAG
[IAG] After configuring SSL content identification, users cannot use Dandelion networking applications, even after installing the IAG root certificate
[IAG] After configuring the access policy, the access download interface cannot be popped up because the PC has already installed the access plug-in
[IAG] After configuring the traffic behavior inspection rules, EDR will still redirect to the download interface after installation
[IAG] After customizing the authentication page, modifying the authentication page file, repackaging and uploading it to IAG, the preview page reports a 404 error.
[IAG] After enabling access proxy decryption, the customer's dacs workspace software cannot access the intranet
[IAG] After enabling all applications, the IP address website cannot be opened directly, and the firewall rule shows packet loss
[IAG] After enabling direct access, the authentication interface will still pop up when opening an HTTPS website
[IAG] After enabling peripheral control in the whole network behavior management, the virtual machine cannot see the system disk, but can only see the data disk
[IAG] After enabling policy control, the mobile phone cannot access intranet resources
[IAG] After enabling SSL and submitting the username and password, the authentication page cannot be opened–the terminal browser Internet settings have disabled TLS1.2
[IAG] After enabling SSL content recognition and installing the certificate, Google opens the web page with an alarm, but IE opens normally
[IAG] After enabling SSL to submit username and password, the device still pops up a certificate warning after importing a trusted certificate for authentication
[IAG] After external log migration, logs cannot be queried
[IAG] After IAG is deployed in active/standby mode and the connected switch is switched, the active IAG is still receiving data packets
[IAG] After IAG is installed, intranet users cannot access the Internet – the link load proxy DNS service is connected to the line DNS function.
[IAG] After importing the configuration, the bridge address cannot be logged into the console
[IAG] After importing the configuration, the ldaps authentication test validity prompts an error: LDAP initialization TLS failed, please try again
[IAG] After importing the IAG5.4 configuration into IAG6.0, the console cannot log in
[IAG] After importing the user table of versions before 6.1 to 11.X/12.X/13.X devices, the authentication prompt is incorrect password – version incompatibility
[IAG] After installing the access plug-in, a certain computer frequently prompts to install the plug-in
[IAG] After installing the access plug-in, the access page will still pop up
[IAG] After installing the access plug-in, the browser access page prompts incompatibility
[IAG] After password authentication for a single terminal on IAG, the entire network is disconnected and the connection is restored directly
[IAG] After replacing an IAG device, the intranet computer needs to refresh the ARP table every time it goes online.
[IAG] After replacing the proxy with SG single-arm, the intranet cannot access the device
[IAG] After setting flow control, the egress traffic does not reach the total bandwidth of the egress line
[IAG] After successful password authentication, you cannot jump to the authentication result page – Windows pop-up scene does not support jump
[IAG] After successful user password authentication, the authentication page pops up again–the terminal PC has dual network cards
[IAG] After switching devices, intranet users cannot access the Internet due to delays in MAC learning by the operator
[IAG] After the bridge mode is deployed and connected to the network, the intranet cannot be connected to the Internet directly – the routing configuration of the egress device is wrong
[IAG] After the custom URL of a foreign website is banned, it can occasionally be opened: the second-level domain name with the same suffix is globally excluded
[IAG] After the LAN port of IAG was modified, the DHCP address allocation problem still used the old network segment – customer environment problem
[IAG] After the link load reaches a fixed line, it will still go through other lines
[IAG] After the log center report is generated, it is exported in tgz format. The decompressed file is garbled – due to the compression software
[IAG] After the master-master is successfully established, the online node displays an abnormality
[IAG] After the user password authentication is successful, the authentication page pops up again–MAC acquisition across three layers fails
[IAG] After turning on SSL content identification, the website added in SSL content identification cannot be opened
[IAG] After turning on SSL content recognition, a warning page still pops up after installing the device certificate (rootca.crt)
[IAG] After upgrading to 13.0.80, the authentication assistant disappears and the run access error message resrouter.dll cannot be found
[IAG] After using IAG as a DNS server, the intranet terminal devices cannot perform domain name resolution normally – DNS service is not enabled
[IAG] Aliwangwang cannot be logged in, direct access prompts http packet loss—Internet access policy prohibits http, ssl standard port uses other protocols
[IAG] All user access rights policies are checked for the applicable object, but the association still cannot be performed
[IAG] All user traffic cannot be restricted – the flow control policy is configured but not enabled
[IAG] An application report cannot be uploaded and will jump to other interfaces
[IAG] An error message appears during the 6.1 upgrade detection, indicating a port conflict. Port 444 is already occupied (the port is configured in the file /etc/sinfor/webuisetting/conf)
[IAG] An error occurs when pasting a MAC address in [Authentication Policy] – [Applicable Scope]
[IAG] An external server was built, but there is no domain user locally
[IAG] An Internet access policy is added to a user, but online users cannot see that the user is associated with the policy.
[IAG] An IP cannot be accessed, and the direct connection prompts that the port control packet is lost
[IAG] An online user has a policy, but the policy does not select the user.
[IAG] Anti-sharing does not work – caused by adding a trust list
[IAG] Attachment audit was not checked, but the attachment was still audited
[IAG] Audit found that the IM file was sent from other IMs. Need to locate the software that sent it?
[IAG] Audit found the traffic of QQ receiving files, but no behavior records were found
[IAG] Audit rule base update failed
[IAG] Authentication forwarding failed when IAG is combined with Sangfor AF
[IAG] Authentication policy configuration is not allowed to take effect
[IAG] Authentication policy does not match – Layer 3 switch MAC is not excluded in cross-Layer 3 configuration
[IAG] Authentication policy submission error message: invalid MAC address
[IAG] Authorization fails when the number of vIAG network ports is less than 3
[IAG] BA bandwidth analysis query error – the file storing traffic analysis results does not exist
[IAG] BA checks the bandwidth analysis module and prompts that there are devices older than 12.0
[IAG] BA statistics on user traffic rankings do not display user names – BA has enabled the [Enable statistics on group traffic only] function.
[IAG] BA_Multi-branch application access alarm-version number is less than 12.0
[IAG] Baidu cannot be blocked after SSL is enabled, and Zoom cannot be used after SSL is disabled
[IAG] Bandwidth restriction for a single user does not take effect — caused by dual external network lines
[IAG] BBC new policy template keeps prompting to load the image: The branch version center image is not loaded
[IAG] bbc sends configuration prompts that the configuration merge exceeds the limit, resulting in merge failure
[IAG] Before authentication, the user can access the specified website directly without authentication: Pre-authentication policy configuration error
[IAG] Bidirectional NAT configuration does not take effect
[IAG] Blackbox Data Missing Due To /Ac/Debug Partition Full
[IAG] Branch terminals cannot remotely access headquarters computers via sangfor VPN
[IAG] Branches added to central management cannot be redirected via SC
[IAG] Bridge master-master mode deployment, static routing and other information are not synchronized (which configurations are not synchronized in master-master mode)
[IAG] Bridge mode deployment, bandwidth cannot be increased through IAG – incorrect working mode
[IAG] Bridge mode deployment, mapped servers cannot be accessed through IAG
[IAG] Bypass deployment – Abnormal traffic sent from the management port
[IAG] Bypass deployment cannot audit server data
[IAG] Bypass mode can open https web pages without authentication – bypass does not support SSL content recognition
[IAG] Bypass mode deployment, no online users – protocol encapsulation
[IAG] Bypass mode prompts that the device is a high-availability standby machine or node
[IAG] Cancellation of USB flash drive prohibition policy does not take effect – USB flash drive needs to be re-inserted
[IAG] Certificate error message when opening a web page using IE browser — Caused by PC time error
[IAG] Change Internal Report Center Auto Deletion Threshold
[IAG] Changed IAG admin authentication method from backend
[IAG] Check the domain user "Tip: Domain objects change in real time. To ensure correct configuration, please re-add the page!"
[IAG] Cisco and IAG cannot connect to each other as third-party VPN
[IAG] Click on the IAG built-in data center, and you will enter the firewall built-in data center
[IAG] Client upgrade error message: Disk is full
[IAG] Combined with AD domain password authentication, domain user authentication prompts "This workstation is not allowed to log in"
[IAG] Combined with Ruijie for single sign-on, the terminal is redirected to 1.1.1.3 after connecting to wireless
[IAG] Configuration deployment mode prompts and free port IP conflicts: The free port address is manually configured
[IAG] Configure domain monitoring single sign-on, and now the user single sign-on fails
[IAG] Configure POP3 external password authentication, all users' password authentication failed – POP3 external password authentication does not support encrypted protocols
[IAG] Configure user quota policy, single user monthly quota limit policy does not take effect
[IAG] Configuring 802.1x single-point authentication, users cannot go online after authentication, but account and password authentication works fine
[IAG] Configuring AD domain single sign-on, single sign-on with sinforIP file failed
[IAG] Configuring firewall rules to deny ipv6-icmp from wan to lan does not take effect
[IAG] Configuring flow control policy does not achieve the desired effect
[IAG] Configuring NAT proxy to access the Internet does not take effect
[IAG] Configuring Windows system applications for application networking control does not take effect
[IAG] Console [Join Centralized Management] form is blank and cannot be entered
[IAG] Cookie authentication exemption does not take effect–Cookie authentication exemption is not enabled on the device
[IAG] Cookie authentication is not effective – the portal page that pops up automatically on the iPhone is a temporary window and cannot save cookie information
[IAG] Cookie authentication-free test does not work, online user logout test causes cookie to become invalid
[IAG] Core Switch when pinging the front-end firewall LAN port address, but normal operation is normal when IAG is switched off
[IAG] Cross-layer 3 is not effective – exclude the cause of incorrect MAC address of the layer 3 switch
[IAG] Cross-layer 3 unsuccessful: Link aggregation, the core reply packet is sent to another pair of bridges
[IAG] Custom application matching does not take effect
[IAG] Custom applications cannot be searched by application name in Internet access permission policy
[IAG] Custom applications cause Internet access policy control to fail to take effect
[IAG] Custom root certificate import failed for P12 format certificate
[IAG] Custom URL policy interception does not take effect
[IAG] Custom URLs are identified as other applications – data is tampered by intermediate devices
[IAG] Custom VPN interface prompts conflict – caused by wan port dial-up failure
[IAG] Customized application does not take effect – "User-defined rules take precedence" is not checked
[IAG] Customized application release does not take effect
[IAG] Customized URL classification library occasionally fails to take effect
[IAG] Customized URL does not take effect – (matching relationship between custom URL and built-in URL library)
[IAG] Customized URL for some domain names is not effective
[IAG] DAS has set up report subscription, but the email address does not receive the subscribed report
[IAG] Data cannot be audited in bypass mode – caused by incorrect deployment mode configuration
[IAG] Data center access log is "Unidentified Application"
[IAG] Data center export report shows all users/groups but logs are not available, subgroup logs are available
[IAG] Data center line traffic trend shows no traffic at present – due to the large difference with the previous traffic
[IAG] Data center logs cannot be found – system time issue
[IAG] Data center modification log export number failed
[IAG] Data center traffic statistics daily, weekly, monthly query shows inconsistent traffic in the same time period
[IAG] Database secondary development: Synchronize logs from a specified date to the database
[IAG] Deleting a user using the open interface of 12.0.9 failed
[IAG] Deployed in bypass mode, a PC in the intranet cannot audit logs
[IAG] Deployed in bypass mode, no audit logs found on IAG
[IAG] Deployment mode configuration submission "The DMZ port and the idle port IP conflict and cannot be in the same network segment. Please check!"
[IAG] Description of the matching order of custom URLs and custom applications in access permission policies
[IAG] DHCP cannot obtain the address after installation access
[IAG] DHCP is enabled in IAG routing mode deployment, intranet layer 2 environment, intranet users cannot access the Internet – DHCP configuration error
[IAG] DHCP prompts that the address is insufficient and has been used up, but not so many addresses have actually been allocated
[IAG] DHCP reserved IP is configured, but the corresponding computer cannot obtain the corresponding IP
[IAG] DHCP reserved IP is configured, but the obtained IP is not a reserved IP.
[IAG] DingTalk authentication failed – Failed to obtain the user's group – Address book permission not enabled
[IAG] DingTalk authentication failed – Failed to obtain the user's group – Export IP does not match
[IAG] DingTalk authentication failed on some mobile phones, and the DingTalk client could not be launched
[IAG] DingTalk authentication in bypass mode failed
[IAG] DingTalk authentication needs to restrict users outside the organizational structure from being allowed to authenticate
[IAG] DingTalk authentication prompts "Login failed. Failed to obtain user information. Please try again later" (Part 2)
[IAG] DingTalk client cannot use file sending and receiving, new schedule, mailbox, video conferencing functions
[IAG] dkey user login failed–source IP does not match
[IAG] dlan service cannot be started–sn code invalid
[IAG] DNS proxy "redirect to DNS server" function does not take effect
[IAG] DNS proxy policy is configured to specify the DNS server, and the domain name cannot be resolved normally
[IAG] DNS proxy selection custom category does not take effect
[IAG] Do not uncheck the box on the Select Applicable Applications page
[IAG] Domain monitoring single point failed – due to environment
[IAG] Domain monitoring single sign-on cannot obtain users
[IAG] Domain monitoring single sign-on failed
[IAG] Domain monitoring single sign-on failed: wmi service is not enabled
[IAG] Domain organizational structure cannot be synchronized
[IAG] Domain organizational structure is not synchronized in the online user list
[IAG] Domain script single sign-on users go online slowly, causing the built-in prompt page to be displayed when opening the web page
[IAG] Domain single sign-on, wired and wireless switching scenarios, logon script to launch new IP
[IAG] Domain user authentication is online to the local: openldap domain users add @domain name authentication
[IAG] Domain user authentication page prompts that the username and password are incorrect when changing passwords. The username and password are normal when actually tested
[IAG] Domain user security groups are nested and cannot be associated with policies
[IAG] Domain user synchronization to local failed – OU name changed but synchronization policy was not modified
[IAG] Domain users are excluded, resulting in the inability to associate the domain security group with the Internet access policy
[IAG] Domain users cannot be associated with Internet access policies – multiple domain environments, users with the same name exist
[IAG] Domain users cannot be associated with policies
[IAG] Domain users cannot be selected in the shared access trust list
[IAG] Domain users cannot synchronize OU group users
[IAG] Domain users go online as temporary users and cannot match domain policies
[IAG] Domain users go online in local user groups
[IAG] Dual bridge deployment, one of the bridge IPs cannot be seen by online users
[IAG] Dual external network lines, the internal network is disconnected after unplugging one line – NAT setting error
[IAG] Dual-bridge deployment cannot manage IAG through bridge address
[IAG] EDR push configuration does not take effect–the node is not connected to EDR
[IAG] Email alert non-free applications license has expired
[IAG] Email alerts were received even though email alerts were not configured
[IAG] Email filtering did not audit the rejection log: the recipient also includes the allowed mailbox
[IAG] Enable SSL content identification, install the certificate, but the browser still issues an alert
[IAG] Enable VPN disconnection after using admission policy
[IAG] Enabling direct pass does not take effect, and there is no direct pass log issue
[IAG] Encrypted emails cannot be audited, but SSL content identification function works normally
[IAG] Error "Form loading failed" is reported when advanced authentication options are turned on
[IAG] Error message during installation of external data center
[IAG] Error message when editing domain users in new Internet access policy
[IAG] Error message when importing IAG12.0.29 version configuration to network-wide behavior management version 13.0.4
[IAG] Error message when installing the plug-in, 1726 error message
[IAG] Error message when logging into the data center: "The data center only supports IE browser, please use IE browser to view!"
[IAG] Error message when opening the security status page with a non-admin account
[IAG] Error message when upgrading IAG13.0.62R2 or 12.0.62R2 to 13.0.80
[IAG] Error when closing the built-in data center – The synchronization strategy of the external log center is not configured, and closing the built-in log center is not allowed
[IAG] Error when importing lower version configuration into higher version: Configuration conversion failed
[IAG] Error when upgrading external data center 6.1 to 11.0 – web port is not 80
[IAG] Error when upgrading from 12.0.29 to 13.0.1 – caused by failure to restore to factory settings
[IAG] Error when upgrading from IAG12.0.18 to IAG13.0.4
[IAG] Error when upgrading from IAG12.0.27 to IAG12.0.29
[IAG] Error when upgrading from IAG12.0.40 to IAG13.0.7
[IAG] Error when upgrading IAG13.0.62 R2 to 13.0.80
[IAG] Error when upgrading to version 11.0: Application duration statistics function is configured
[IAG] Error when upgrading to version 11.0: Routing mode prompts that the management port uses the bridge port
[IAG] Error when upgrading to version 11.0: The device is in bridge multi-port mode
[IAG] Error when upgrading to version 6.0: Each service group cannot exceed 6 items
[IAG] Error when uploading the logo image of the customized authentication page: The server returns an error message
[IAG] Even if authentication is not allowed, intranet PCs can still go online without authentication
[IAG] External data center audit attachments cannot be downloaded – Synchronize attachments is not checked
[IAG] External data center query log is always 0% – the system time zone is wrong
[IAG] External data center synchronization log error message indicates that the disk space is full, but the actual space is sufficient
[IAG] External data center upgrade error – caused by not running as an administrator
[IAG] External data center upgrade failed – SQL Server Reporting Services (MSSQLSERVER) occupied port 80
[IAG] External data center upgrade fails with "Port 443 is occupied by another program"
[IAG] External data center, query log prompt: Data loading failed-the service is not started
[IAG] External password authentication password modification prompts no permission – only local and LDAP accounts support password modification
[IAG] External synchronization error "recv verrsion vertify data FALLED ERRNO 104"
[IAG] Failed to add policy through API interface
[IAG] Failed to add route in IAG bridge deployment
[IAG] Failed to obtain corresponding information when retrieving MAC across three layers
[IAG] Failed to obtain data across three layers – Inconsistent OID filling caused the acquisition to fail
[IAG] Failed to obtain MAC information across three layers, and the switch performance was abnormal
[IAG] Failed to replace single sign-on script file – Rename to solve
[IAG] Failed to start MySQL service in secondary development of database — configuration file encoding problem
[IAG] Failed to synchronize logs between IAG and external data center
[IAG] Failed to synchronize logs to an external data center for versions below 6.1. Data reception timed out (10004)
[IAG] Failed to use the API open interface [Get application traffic ranking]
[IAG] Failed to use the API open interface [Get Throughput]
[IAG] Firewall rules do not take effect due to port mapping configuration
[IAG] Flow control channel single user limit does not display the unit
[IAG] Flow control does not take effect – caused by mismatch of node configuration virtual lines
[IAG] /ac partition full due to endpoint discovery