10.6.1.150 64405 -> 10.1.1.151 445 6 AS=0 ID=2 New firewall session 10.6.1.150 64405 -> 10.1.1.151 445 6 AS=0 ID=2 Starting with minimum 0, id 0 and SrcZone first with zones -1 -> -1, geo 0 -> 0, vlan 0, src sgt: 0, src sgt type: unknown, dst sgt: 0, dst sgt type: unknown, svc 0, payload 0, client 0, misc 0, user 9999997 10.6.1.150 64405 -> 10.1.1.151 445 6 AS=0 ID=2 match rule order 180, 'Default Action', action Block 10.6.1.150 64405 -> 10.1.1.151 445 6 AS=0 ID=2 MidRecovery data sent for rule id: 268434432, rule_action:4, rev id:1583587942, rule_match flag:0x1 10.6.1.150 64405 -> 10.1.1.151 445 6 AS=0 ID=2 Generating an SOF event with rule_id = 268434432 ruleAction = 4 ruleReason = 0 10.6.1.150 64405 -> 10.1.1.151 445 6 AS=0 ID=2 deny action 10.6.1.150 64405 -> 10.1.1.151 445 6 AS=0 ID=2 Deleting Firewall session flags=0x0, logFlags=0x1000