Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

20000029

Meaning

XML Validation Violation.

 

 

Field name Description

log_id

20000029

See Log ID numbers.

main_type

XML Validation Violation

subtype

  • XML Schema Validation Violation
  • XML Element Attribute Number Overflow
  • XML Element Attribute Name Length Violations
  • XML Element Attribute Value Length Violations
  • XML Element Cdata Length Violations
  • XML Element Depth Violations
  • XML Element Name Length Violations
  • XML External Entity Violation
  • XML Entity Expansion Violations
  • XML XInclude Violation
  • XML SchemaLocation Violation
  • XML SOAP Protocol Violation
  • XML SOAPAction Violation
  • XML SOAP Header Violation
  • XML SOAP Body Violation
  • SOAP Signature Error
  • SOAP Signature Verification Error
  • SOAP Encryption Error
  • SOAP Decryption Error

 

Examples

v007xxxxdate=2019-08-03 time=12:18:31 log_id=20000029 msg_id=000000251750 device_id=FV-1KE4417900002 vd="root" timezone="(GMT+8:00)Beijing,ChongQing,HongKong,Urumgi" timezone_dayst="GMTa-8" type=attack pri=alert main_type="XML Validation Violation" sub_type="XML Schema Validation Violation" trigger_policy="" severity_level=Medium proto=tcp service=http action=Alert policy="FWB_Policy_Default_AutoTest" src=10.200.10.100 src_port=50895 dst=10.101.0.1 dst_port=80 http_method=post http_url="/testPath" http_host="172.22.6.4:8080" http_agent="none" http_session_id=none msg="XML Schema Validation Violation : Failed to validate schema schemaSingle.xsd" signature_subclass="N/A" signature_id="N/A" signature_cve_id="N/A" srccountry="Reserved" content_switch_name="none" server_pool_name="FWB_server_pool" false_positive_mitigation="none" user_name="Unknown" monitor_status="Disabled" http_refer="none" http_version="1.x" dev_id="none" threat_weight=0 history_threat_weight=0 threat_level=Off ftp_mode="N/A" ftp_cmd="N/A" cipher_suite="none" ml_log_hmm_probability=0.000000 ml_log_sample_prob_mean=0.000000 ml_log_sample_arglen_mean=0.000000 ml_log_arglen=0 ml_svm_log_main_types=0 ml_svm_log_match_types="none" ml_svm_accuracy="none" ml_domain_index=0 ml_url_dbid=0 ml_arg_dbid=0 ml_allow_method="none" owasp_top10="N/A"

20000029

Meaning

XML Validation Violation.

 

 

Field name Description

log_id

20000029

See Log ID numbers.

main_type

XML Validation Violation

subtype

  • XML Schema Validation Violation
  • XML Element Attribute Number Overflow
  • XML Element Attribute Name Length Violations
  • XML Element Attribute Value Length Violations
  • XML Element Cdata Length Violations
  • XML Element Depth Violations
  • XML Element Name Length Violations
  • XML External Entity Violation
  • XML Entity Expansion Violations
  • XML XInclude Violation
  • XML SchemaLocation Violation
  • XML SOAP Protocol Violation
  • XML SOAPAction Violation
  • XML SOAP Header Violation
  • XML SOAP Body Violation
  • SOAP Signature Error
  • SOAP Signature Verification Error
  • SOAP Encryption Error
  • SOAP Decryption Error

 

Examples

v007xxxxdate=2019-08-03 time=12:18:31 log_id=20000029 msg_id=000000251750 device_id=FV-1KE4417900002 vd="root" timezone="(GMT+8:00)Beijing,ChongQing,HongKong,Urumgi" timezone_dayst="GMTa-8" type=attack pri=alert main_type="XML Validation Violation" sub_type="XML Schema Validation Violation" trigger_policy="" severity_level=Medium proto=tcp service=http action=Alert policy="FWB_Policy_Default_AutoTest" src=10.200.10.100 src_port=50895 dst=10.101.0.1 dst_port=80 http_method=post http_url="/testPath" http_host="172.22.6.4:8080" http_agent="none" http_session_id=none msg="XML Schema Validation Violation : Failed to validate schema schemaSingle.xsd" signature_subclass="N/A" signature_id="N/A" signature_cve_id="N/A" srccountry="Reserved" content_switch_name="none" server_pool_name="FWB_server_pool" false_positive_mitigation="none" user_name="Unknown" monitor_status="Disabled" http_refer="none" http_version="1.x" dev_id="none" threat_weight=0 history_threat_weight=0 threat_level=Off ftp_mode="N/A" ftp_cmd="N/A" cipher_suite="none" ml_log_hmm_probability=0.000000 ml_log_sample_prob_mean=0.000000 ml_log_sample_arglen_mean=0.000000 ml_log_arglen=0 ml_svm_log_main_types=0 ml_svm_log_match_types="none" ml_svm_accuracy="none" ml_domain_index=0 ml_url_dbid=0 ml_arg_dbid=0 ml_allow_method="none" owasp_top10="N/A"