No.
Title
Result
Log
Script
Dump
Section EN-I. End Node - Initiator
Sub-Section 1. Endpoint-to-Endpoint Transport
1
Global Setup
PASS
X
X
Link0
Group 1. The Initial Exchanges
Sub-Group 1. Header and Payload Formats
2
Test IKEv2.EN.I.1.1.1.1: Sending IKE_SA_INIT request
FAIL
X
X
Link0
3
Test IKEv2.EN.I.1.1.1.2: Sending IKE_AUTH request
FAIL
X
X
Link0
4
Test IKEv2.EN.I.1.1.1.3: Use of CHILD_SA
SIGNAL (2)
X
X
Link0
Sub-Group 2. Use of Retransmission Timers
5
Test IKEv2.EN.I.1.1.2.1: Retransmission of IKE_SA_INIT request
TBD
X
X
Link0
6
Test IKEv2.EN.I.1.1.2.2: Stop of retransmission of IKE_SA_INIT request
TBD
X
X
Link0
7
Test IKEv2.EN.I.1.1.2.3: Retransmission of IKE_AUTH request
TBD
X
X
Link0
8
Test IKEv2.EN.I.1.1.2.4: Stop of retransmission of IKE_AUTH request
TBD
X
X
Link0
Sub-Group 3. State Synchronization and Connection Timeouts
9
Test IKEv2.EN.I.1.1.3.1: State Synchronization with ICMP message
TBD
X
X
Link0
10
Test IKEv2.EN.I.1.1.3.2: State Synchronization with IKE message
TBD
X
X
Link0
11
Test IKEv2.EN.I.1.1.3.3: Close Connection when repeated attempts fail
TBD
X
X
Link0
12
Test IKEv2.EN.I.1.1.3.4: Close Connection when receiving INITIAL_CONTACT
TBD
X
X
Link0
13
Test IKEv2.EN.I.1.1.3.5: Sending Liveness check
TBD
X
X
Link0
14
Test IKEv2.EN.I.1.1.3.6: Sending Delete Payload for IKE_SA
TBD
X
X
Link0
15
Test IKEv2.EN.I.1.1.3.7: Sending Delete Payload for CHILD_SA
TBD
X
X
Link0
16
Test IKEv2.EN.I.1.1.3.8: Sending Liveness check with unprotected messages
TBD
X
X
Link0
Sub-Group 4. Version Numbers and Forward Compatibility
Test IKEv2.EN.I.1.1.4.1: Unrecognized payload types and critical bit is not set
17
Test IKEv2.EN.I.1.1.4.1 Part A: Invalid payload type 1
TBD
X
X
Link0
18
Test IKEv2.EN.I.1.1.4.1 Part B: Invalid payload type 32
TBD
X
X
Link0
19
Test IKEv2.EN.I.1.1.4.1 Part C: Invalid payload type 49
TBD
X
X
Link0
20
Test IKEv2.EN.I.1.1.4.1 Part D: Invalid payload type 255
TBD
X
X
Link0
Test IKEv2.EN.I.1.1.4.2: Unrecognized payload types and critical bit is set
21
Test IKEv2.EN.I.1.1.4.2 Part A: Invalid payload type 1
TBD
X
X
Link0
22
Test IKEv2.EN.I.1.1.4.2 Part B: Invalid payload type 32
TBD
X
X
Link0
23
Test IKEv2.EN.I.1.1.4.2 Part C: Invalid payload type 49
TBD
X
X
Link0
24
Test IKEv2.EN.I.1.1.4.2 Part D: Invalid payload type 255
TBD
X
X
Link0
Sub-Group 5. Cookies
25
Test IKEv2.EN.I.1.1.5.1: Retrying IKE_SA_INIT request with a Notify payload of type COOKIE
TBD
X
X
Link0
26
Test IKEv2.EN.I.1.1.5.2: Interaction of COOKIE and INVALID_KE_PAYLOAD
TBD
X
X
Link0
27
Test IKEv2.EN.I.1.1.5.3: Interaction of COOKIE and INVALID_KE_PAYLOAD with unoptimized Responder
TBD
X
X
Link0
Sub-Group 6. Cryptographic Algorithm Negotiation
Test IKEv2.EN.I.1.1.6.1: Cryptographic Algorithm Negotiation for IKE_SA
28
Test IKEv2.EN.I.1.1.6.1 Part A: Encryption Algorithm ENCR_AES_CBC
TBD
X
X
Link0
29
Test IKEv2.EN.I.1.1.6.1 Part B: Encryption Algorithm ENCR_AES_CTR
TBD
X
X
Link0
30
Test IKEv2.EN.I.1.1.6.1 Part C: Pseudo-random Function PRF_AES128_XCBC
TBD
X
X
Link0
31
Test IKEv2.EN.I.1.1.6.1 Part D: Integrity Algorithm AUTH_AES_XCBC_96
TBD
X
X
Link0
32
Test IKEv2.EN.I.1.1.6.1 Part E: D-H Group Group 14
TBD
X
X
Link0
Test IKEv2.EN.I.1.1.6.2: Cryptographic Algorithm Negotiation for CHILD_SA
33
Test IKEv2.EN.I.1.1.6.2 Part A: Encryption Algorithm ENCR_AES_CBC
TBD
X
X
Link0
34
Test IKEv2.EN.I.1.1.6.2 Part B: Encryption Algorithm ENCR_AES_CTR
TBD
X
X
Link0
35
Test IKEv2.EN.I.1.1.6.2 Part C: Encryption Algorithm ENCR_NULL
TBD
X
X
Link0
36
Test IKEv2.EN.I.1.1.6.2 Part D: Integrity Algorithm AUTH_AES_XCBC_96
TBD
X
X
Link0
37
Test IKEv2.EN.I.1.1.6.2 Part E: Integrity Algorithm NONE
TBD
X
X
Link0
38
Test IKEv2.EN.I.1.1.6.2 Part F: Extended Sequence Numbers
TBD
X
X
Link0
Test IKEv2.EN.I.1.1.6.3: Sending Multiple Transforms for IKE_SA
39
Test IKEv2.EN.I.1.1.6.3 Part A: Multiple Encryption Algorithms
TBD
X
X
Link0
40
Test IKEv2.EN.I.1.1.6.3 Part B: Multiple Pseudo-random Functions
TBD
X
X
Link0
41
Test IKEv2.EN.I.1.1.6.3 Part C: Multiple Integrity Algorithms
TBD
X
X
Link0
42
Test IKEv2.EN.I.1.1.6.3 Part D: Multiple D-H Groups
TBD
X
X
Link0
43
Test IKEv2.EN.I.1.1.6.4: Multiple Proposals for IKE_SA
TBD
X
X
Link0
Test IKEv2.EN.I.1.1.6.5: Sending Multiple Transforms for CHILD_SA
44
Test IKEv2.EN.I.1.1.6.5 Part A: Multiple Encryption Algorithms
TBD
X
X
Link0
45
Test IKEv2.EN.I.1.1.6.5 Part B: Multiple Integrity Algorithms
TBD
X
X
Link0
46
Test IKEv2.EN.I.1.1.6.5 Part C: Multiple Extended Sequence Numbers
TBD
X
X
Link0
47
Test IKEv2.EN.I.1.1.6.6: Sending Multiple Proposals
TBD
X
X
Link0
48
Test IKEv2.EN.I.1.1.6.7: Receipt of INVALID_KE_PAYLOAD
TBD
X
X
Link0
49
Test IKEv2.EN.I.1.1.6.8: Receipt of NO_PROPOSAL_CHOSEN
TBD
X
X
Link0
50
Test IKEv2.EN.I.1.1.6.9: Response with inconsistent SA Proposal for IKE_SA
TBD
X
X
Link0
51
Test IKEv2.EN.I.1.1.6.10: Response with inconsistent SA Proposal for CHILD_SA
TBD
X
X
Link0
52
Test IKEv2.EN.I.1.1.6.11 Part A: Receiving IKE_SA_INIT response with INVALID_KE_PAYLOAD
TBD
X
X
Link0
53
Test IKEv2.EN.I.1.1.6.11 Part B: Receiving IKE_SA_INIT response with INVALID_KE_PAYLOAD
TBD
X
X
Link0
54
Test IKEv2.EN.I.1.1.6.12: Creating an IKE_SA without a CHILD_SA
TBD
X
X
Link0
Sub-Group 7. Traffic Selector Negotiation
55
Test IKEv2.EN.I.1.1.7.1: Narrowing the range of members of the set of traffic selectors
TBD
X
X
Link0
Sub-Group 8. Error Handling
56
Test IKEv2.EN.I.1.1.8.1 Part A: INVALID_IKE_SPI Different IKE_SA Initiator's SPI
TBD
X
X
Link0
57
Test IKEv2.EN.I.1.1.8.1 Part B: INVALID_IKE_SPI Different IKE_SA Responder's SPI
TBD
X
X
Link0
58
Test IKEv2.EN.I.1.1.8.2: INVALID_SELECTORS
TBD
X
X
Link0
Sub-Group 10. Authentication of the IKE_SA
59
Test IKEv2.EN.I.1.1.10.1: Sending Certificate Payload
TBD
X
X
Link0
60
Test IKEv2.EN.I.1.1.10.2: Sending Certificate Request Payload
TBD
X
X
Link0
61
Test IKEv2.EN.I.1.1.10.3: RSA Digital Signature
TBD
X
X
Link0
62
Test IKEv2.EN.I.1.1.10.4: HEX string PSK
TBD
X
X
Link0
Sub-Group 11. Invalid Values
63
Test IKEv2.EN.I.1.1.11.1: Non zero RESERVED fields in IKE_SA_INIT response
TBD
X
X
Link0
64
Test IKEv2.EN.I.1.1.11.2: Non zero RESERVED fields in IKE_AUTH response
TBD
X
X
Link0
65
Test IKEv2.EN.I.1.1.11.3: Version bit is set
TBD
X
X
Link0
66
Test IKEv2.EN.I.1.1.11.4: Unrecognized Notify Message Type of Error
TBD
X
X
Link0
67
Test IKEv2.EN.I.1.1.11.5: Unrecognized Notify Message Type of Status
TBD
X
X
Link0
Group 2. The CREATE_CHILD_SA Exchange
Sub-Group 1. Header and Payload Formats
68
Test IKEv2.EN.I.1.2.1.1: Sending CREATE_CHILD_SA request
TBD
X
X
Link0
Sub-Group 2. Use of Retransmission Timers
69
Test IKEv2.EN.I.1.2.2.1: Retransmission of CREATE_CHILD_SA request
TBD
X
X
Link0
70
Test IKEv2.EN.I.1.2.2.2: Stop of retransmission of CREATE_CHILD_SA request
TBD
X
X
Link0
Sub-Group 3. Rekeying
71
Test IKEv2.EN.I.1.2.3.1: Close the replaced CHILD_SA
TBD
X
X
Link0
72
Test IKEv2.EN.I.1.2.3.2: Receipt of cryptographically valid message on the new SA
TBD
X
X
Link0
73
Test IKEv2.EN.I.1.2.3.3: Lifetime of CHILD_SA expires
TBD
X
X
Link0
74
Test IKEv2.EN.I.1.2.3.4 Part A: Sending Multiple Transform for Rekeying CHILD_SA
TBD
X
X
Link0
75
Test IKEv2.EN.I.1.2.3.4 Part B: Sending Multiple Transform for Rekeying CHILD_SA
TBD
X
X
Link0
76
Test IKEv2.EN.I.1.2.3.4 Part C: Sending Multiple Transform for Rekeying CHILD_SA
TBD
X
X
Link0
77
Test IKEv2.EN.I.1.2.3.5: Sending Multiple Proposal for Rekeying CHILD_SA
TBD
X
X
Link0
78
Test IKEv2.EN.I.1.2.3.6: Rekeying Failure
TBD
X
X
Link0
79
Test IKEv2.EN.I.1.2.3.7: Perfect Forward Secrecy
TBD
X
X
Link0
80
Test IKEv2.EN.I.1.2.3.8: Use of the old CHILD_SA
TBD
X
X
Link0
Sub-Group 4. Rekeying IKE_SAs Using a CREATE_CHILD_SA exchange
81
Test IKEv2.EN.I.1.2.4.1: Close the replaced IKE_SA
TBD
X
X
Link0
82
Test IKEv2.EN.I.1.2.4.2: Receipt of cryptographically valid message on the new IKE_SA
TBD
X
X
Link0
83
Test IKEv2.EN.I.1.2.4.3: Lifetime of IKE_SA expires
TBD
X
X
Link0
84
Test IKEv2.EN.I.1.2.4.4 Part A: Sending Multiple Transform for Rekeying IKE_SA
TBD
X
X
Link0
85
Test IKEv2.EN.I.1.2.4.4 Part B: Sending Multiple Transform for Rekeying IKE_SA
TBD
X
X
Link0
86
Test IKEv2.EN.I.1.2.4.4 Part C: Sending Multiple Transform for Rekeying IKE_SA
TBD
X
X
Link0
87
Test IKEv2.EN.I.1.2.4.4 Part D: Sending Multiple Transform for Rekeying IKE_SA
TBD
X
X
Link0
88
Test IKEv2.EN.I.1.2.4.5: Sending Multiple Proposal for Rekeying IKE_SA
TBD
X
X
Link0
89
Test IKEv2.EN.I.1.2.4.6: Use of the old IKE_SA
TBD
X
X
Link0
90
Test IKEv2.EN.I.1.2.4.7: Changing PRFs when rekeying IKE_SA
TBD
X
X
Link0
Sub-Group 5. Creating New CHILD_SAs with the CREATE_CHILD_SA Exchange
91
Test IKEv2.EN.I.1.2.5.1: Sending CREATE_CHILD_SA request
TBD
X
X
Link0
92
Test IKEv2.EN.I.1.2.5.2: Receipt of cryptographically valid message on the new SA
TBD
X
X
Link0
Sub-Group 6. Exchange Collisions
93
Test IKEv2.EN.I.1.2.6.1: Simulataneous CHILD_SA Close
TBD
X
X
Link0
94
Test IKEv2.EN.I.1.2.6.2: Simulataneous IKE_SA Close
TBD
X
X
Link0
95
Test IKEv2.EN.I.1.2.6.3: Simulataneous CHILD_SA Rekeying
TBD
X
X
Link0
96
Test IKEv2.EN.I.1.2.6.4: Simulataneous CHILD_SA Rekeying with retransmission
TBD
X
X
Link0
97
Test IKEv2.EN.I.1.2.6.5: Simulataneous IKE_SA Rekeying
TBD
X
X
Link0
98
Test IKEv2.EN.I.1.2.6.6: Simulataneous IKE_SA Rekeying with retransmission
TBD
X
X
Link0
99
Test IKEv2.EN.I.1.2.6.7: Closing and Rekeying CHILD_SA
TBD
X
X
Link0
100
Test IKEv2.EN.I.1.2.6.8: Closing a new CHILD_SA
TBD
X
X
Link0
101
Test IKEv2.EN.I.1.2.6.9: Rekeying a new CHILD_SA
TBD
X
X
Link0
102
Test IKEv2.EN.I.1.2.6.10: Rekeying an IKE_SA with half-open CHILD_SAs
TBD
X
X
Link0
103
Test IKEv2.EN.I.1.2.6.11: Rekeying a CHILD_SA while rekeying an IKE_SA
TBD
X
X
Link0
104
Test IKEv2.EN.I.1.2.6.12: Rekeying an IKE_SA with half-closed CHILD_SAs
TBD
X
X
Link0
105
Test IKEv2.EN.I.1.2.6.13: Closing a CHILD_SA while rekeying an IKE_SA
TBD
X
X
Link0
106
Test IKEv2.EN.I.1.2.6.14: Closing an IKE_SA while rekeying an IKE_SA
TBD
X
X
Link0
107
Test IKEv2.EN.I.1.2.6.15: Rekeying an IKE_SA while closing the IKE_SA
TBD
X
X
Link0
Sub-Group 7. Non zero RESERVED fields
108
Test IKEv2.EN.I.1.2.7.1: Non zero RESERVED fields in CREATE_CHILD_SA response
TBD
X
X
Link0
Group 3. The INFORMATIONAL Exchange
Sub-Group 1. Header and Payload Formats
109
Test IKEv2.EN.I.1.3.1.1: Sending INFORMATIONAL request
TBD
X
X
Link0
Sub-Group 2. Use of Retransmission Timers
110
Test IKEv2.EN.I.1.3.2.1: Retransmission of INFORMATIONAL request
TBD
X
X
Link0
111
Test IKEv2.EN.I.1.3.2.2: Stop of retransmission of INFORMATIONAL request
TBD
X
X
Link0
Sub-Group 3. Non zero RESERVED fields
112
Test IKEv2.EN.I.1.3.3.1: Non zero RESERVED fields in INFORMATIONAL response
TBD
X
X
Link0
Sub-Group 4. Error Handling
113
Test IKEv2.EN.I.1.3.4.1: INVALID_SPI
TBD
X
X
Link0
114
Global Cleanup
TBD
X
X
Link0
Sub-Section 2. Endpoint to Security Gateway Tunnel
115
Global Setup
TBD
X
X
Link0
Group 1. The Initial Exchanges
Sub-Group 1. Header and Payload Formats
116
Test IKEv2.EN.I.2.1.1.1: Sending IKE_AUTH request
TBD
X
X
Link0
117
Test IKEv2.EN.I.2.1.1.2: Use of CHILD_SA
TBD
X
X
Link0
Sub-Group 2. Requesting an Internal Address on a Remote Network
118
Test IKEv2.EN.I.2.1.2.1: Sending CFG_REQUEST
TBD
X
X
Link0
119
Test IKEv2.EN.I.2.1.2.2: Receipt of CFG_REPLY
TBD
X
X
Link0
120
Test IKEv2.EN.I.2.1.2.3: Non zero RESERVED fileds in Configuration Payload
TBD
X
X
Link0
121
Test IKEv2.EN.I.2.1.2.4: Receiving IKE_AUTH response without CFG_REPLY
TBD
X
X
Link0
122
Test IKEv2.EN.I.2.1.2.5: Receiving unrecognized Configuration Attributes
TBD
X
X
Link0
123
Global Cleanup
TBD
X
X
Link0
Section EN-R. End Node - Responder
Sub-Section 1. Endpoint-to-Endpoint Transport
124
Global Setup
TBD
X
X
Link0
Group 1. The Initial Exchanges
Sub-Group 1. Header and Payload Formats
125
Test IKEv2.EN.R.1.1.1.1: Sending IKE_SA_INIT response
TBD
X
X
Link0
126
Test IKEv2.EN.R.1.1.1.2: Sending IKE_AUTH response
TBD
X
X
Link0
127
Test IKEv2.EN.R.1.1.1.3: Use of CHILD_SA
TBD
X
X
Link0
Sub-Group 2. Use of Retransmission Timers
128
Test IKEv2.EN.R.1.1.2.1: Receipt of retransmitted IKE_SA_INIT request
TBD
X
X
Link0
129
Test IKEv2.EN.R.1.1.2.2: Receipt of retransmitted of IKE_AUTH request
TBD
X
X
Link0
Sub-Group 3. State Synchronization and Connection Timeouts
130
Test IKEv2.EN.R.1.1.3.1: State Synchronization with ICMP Message
TBD
X
X
Link0
131
Test IKEv2.EN.R.1.1.3.2: State Synchronization with IKE Message
TBD
X
X
Link0
132
Test IKEv2.EN.R.1.1.3.3: Close Connections when receiving INITIAL_CONTACT
TBD
X
X
Link0
133
Test IKEv2.EN.R.1.1.3.4: Receiving Liveness check
TBD
X
X
Link0
134
Test IKEv2.EN.R.1.1.3.5: Receiving Delete Payload for IKE_SA
TBD
X
X
Link0
135
Test IKEv2.EN.R.1.1.3.6: Receiving Delete Payload for CHILD_SA
TBD
X
X
Link0
Sub-Group 4. Version Numbers and Forward Compatibility
136
Test IKEv2.EN.R.1.1.4.1: Receipt of a larger minor version number
TBD
X
X
Link0
137
Test IKEv2.EN.R.1.1.4.2: Receipt of a higher major version number
TBD
X
X
Link0
Test IKEv2.EN.R.1.1.4.3: Unrecognized payload types and critical bit is not set
138
Test IKEv2.EN.R.1.1.4.3 Part A: Invalid payload type 1
TBD
X
X
Link0
139
Test IKEv2.EN.R.1.1.4.3 Part B: Invalid payload type 32
TBD
X
X
Link0
140
Test IKEv2.EN.R.1.1.4.3 Part C: Invalid payload type 49
TBD
X
X
Link0
141
Test IKEv2.EN.R.1.1.4.3 Part D: Invalid payload type 255
TBD
X
X
Link0
Test IKEv2.EN.R.1.1.4.4: Unrecognized payload types and critical bit is set
142
Test IKEv2.EN.R.1.1.4.4 Part A: Invalid payload type 1
TBD
X
X
Link0
143
Test IKEv2.EN.R.1.1.4.4 Part B: Invalid payload type 32
TBD
X
X
Link0
144
Test IKEv2.EN.R.1.1.4.4 Part C: Invalid payload type 49
TBD
X
X
Link0
145
Test IKEv2.EN.R.1.1.4.4 Part D: Invalid payload type 255
TBD
X
X
Link0
146
Test IKEv2.EN.R.1.1.4.5: Invalid Payload Order
TBD
X
X
Link0
Sub-Group 5. Cookies
£´
147
Test IKEv2.EN.R.1.1.5.1: Cookies
TBD
X
X
Link0
148
Test IKEv2.EN.R.1.1.5.2: Invalid Cookies
TBD
X
X
Link0
149
Test IKEv2.EN.R.1.1.5.3: Interaction of COOKIE and INVALID_KE_PAYLOAD
TBD
X
X
Link0
150
Test IKEv2.EN.R.1.1.5.4: Interaction of COOKIE and INVALID_KE_PAYLOAD with unoptimized Initiator
TBD
X
X
Link0
Sub-Group 6. Cryptographic Algorithm Negotiation
Test IKEv2.EN.R.1.1.6.1: Cryptographic Algorithm Negotiation for IKE_SA
151
Test IKEv2.EN.R.1.1.6.1 Part A: Encryption Algorithm ENCR_AES_CBC
TBD
X
X
Link0
152
Test IKEv2.EN.R.1.1.6.1 Part B: Encryption Algorithm ENCR_AES_CTR
TBD
X
X
Link0
153
Test IKEv2.EN.R.1.1.6.1 Part C: Pseudo-random Function PRF_AES128_XCBC
TBD
X
X
Link0
154
Test IKEv2.EN.R.1.1.6.1 Part D: Integrity Algorithm AUTH_AES_XCBC_96
TBD
X
X
Link0
155
Test IKEv2.EN.R.1.1.6.1 Part E: D-H Group Group 14
TBD
X
X
Link0
Test IKEv2.EN.R.1.1.6.2: Cryptographic Algorithm Negotiation for CHILD_SA
156
Test IKEv2.EN.R.1.1.6.2 Part A: Encryption Algorithm ENCR_AES_CBC
TBD
X
X
Link0
157
Test IKEv2.EN.R.1.1.6.2 Part B: Encryption Algorithm ENCR_AES_CTR
TBD
X
X
Link0
158
Test IKEv2.EN.R.1.1.6.2 Part C: Encryption Algorithm ENCR_NULL
TBD
X
X
Link0
159
Test IKEv2.EN.R.1.1.6.2 Part D: Integrity Algorithm AUTH_AES_XCBC_96
TBD
X
X
Link0
160
Test IKEv2.EN.R.1.1.6.2 Part E: Integrity Algorithm NONE
TBD
X
X
Link0
161
Test IKEv2.EN.R.1.1.6.2 Part F: Extended Sequence Number
TBD
X
X
Link0
Test IKEv2.EN.R.1.1.6.3: Receiving Multiple Transforms for IKE_SA
162
Test IKEv2.EN.R.1.1.6.3 Part A: Multiple Encryption Algorithms
TBD
X
X
Link0
163
Test IKEv2.EN.R.1.1.6.3 Part B: Multiple Pseudo-Random Functions
TBD
X
X
Link0
164
Test IKEv2.EN.R.1.1.6.3 Part C: Multiple Integrity Algorithms
TBD
X
X
Link0
165
Test IKEv2.EN.R.1.1.6.3 Part D: Multiple D-H Groups
TBD
X
X
Link0
Test IKEv2.EN.R.1.1.6.4: Receiving Multiple Proposals for IKE_SA
166
Test IKEv2.EN.R.1.1.6.4 Part A: Multiple Proposals for IKE_SA
TBD
X
X
Link0
167
Test IKEv2.EN.R.1.1.6.4 Part B: Multiple Proposals for IKE_SA
TBD
X
X
Link0
168
Test IKEv2.EN.R.1.1.6.4 Part C: Multiple Proposals for IKE_SA
TBD
X
X
Link0
169
Test IKEv2.EN.R.1.1.6.4 Part D: Multiple Proposals for IKE_SA
TBD
X
X
Link0
Test IKEv2.EN.R.1.1.6.5: Receiving Multiple Transforms for CHILD_SA
170
Test IKEv2.EN.R.1.1.6.5 Part A: Multiple Encryption Algorithms
TBD
X
X
Link0
171
Test IKEv2.EN.R.1.1.6.5 Part B: Multiple Integrity Algorithms
TBD
X
X
Link0
172
Test IKEv2.EN.R.1.1.6.5 Part C: Multiple Extended Sequence Numbers
TBD
X
X
Link0
Test IKEv2.EN.R.1.1.6.6: Receiving Multiple Proposals for CHILD_SA
173
Test IKEv2.EN.R.1.1.6.6 Part A: Receiving Multiple Proposals
TBD
X
X
Link0
174
Test IKEv2.EN.R.1.1.6.6 Part B: Receiving Multiple Proposals
TBD
X
X
Link0
175
Test IKEv2.EN.R.1.1.6.6 Part C: Receiving Multiple Proposals
TBD
X
X
Link0
176
Test IKEv2.EN.R.1.1.6.7: Sending of INVALID_KE_PAYLOAD
TBD
X
X
Link0
177
Test IKEv2.EN.R.1.1.6.8: INVALID_KE_PAYLOAD in the Initial Exchange
TBD
X
X
Link0
178
Test IKEv2.EN.R.1.1.6.9: Creating an IKE_SA without a CHILD_SA
TBD
X
X
Link0
Sub-Group 7. Traffic Selector Negotiation
179
Test IKEv2.EN.R.1.1.7.1: Narrowing the range of members of the set of traffic selectors
TBD
X
X
Link0
180
Test IKEv2.EN.R.1.1.7.2: TS_UNACCEPTABLE
TBD
X
X
Link0
181
Test IKEv2.EN.R.1.1.7.3: Narrowing multiple traffic selector
TBD
X
X
Link0
Sub-Group 8. Error Handling
Test IKEv2.EN.R.1.1.8.1: INVALID_IKE_SPI
182
Test IKEv2.EN.R.1.1.8.1 Part A: Different IKE_SA Initiator's SPI
TBD
X
X
Link0
183
Test IKEv2.EN.R.1.1.8.1 Part B: Different IKE_SA Responder's SPI
TBD
X
X
Link0
184
Test IKEv2.EN.R.1.1.8.2: INVALID_SYNTAX
TBD
X
X
Link0
185
Test IKEv2.EN.R.1.1.8.3: INVALID_SELECTORS
TBD
X
X
Link0
Sub-Group 10. Authentication of the IKE_SA
186
Test IKEv2.EN.R.1.1.10.1: Sending Certificate Payload
TBD
X
X
Link0
187
Test IKEv2.EN.R.1.1.10.2: Sending Certificate Request Payload
TBD
X
X
Link0
188
Test IKEv2.EN.R.1.1.10.3: RSA Digital Signature
TBD
X
X
Link0
189
Test IKEv2.EN.R.1.1.10.4: HEX string PSK
TBD
X
X
Link0
Sub-Group 11. Invalid Values
190
Test IKEv2.EN.R.1.1.11.1: Non zero RESERVED fields in IKE_SA_INIT response
TBD
X
X
Link0
191
Test IKEv2.EN.R.1.1.11.2: Non zero RESERVED fields in IKE_AUTH response
TBD
X
X
Link0
192
Test IKEv2.EN.R.1.1.11.3: Version bit is set
TBD
X
X
Link0
193
Test IKEv2.EN.R.1.1.11.4: Response bit is set
TBD
X
X
Link0
194
Test IKEv2.EN.R.1.1.11.5 Part A: Unrecognized Notify Message Type
TBD
X
X
Link0
195
Test IKEv2.EN.R.1.1.11.5 Part B: Unrecognized Notify Message Type
TBD
X
X
Link0
Group 2. The CREATE_CHILD_SA Exchange
Sub-Group 1. Header and Payload Formats
196
Test IKEv2.EN.R.1.2.1.1: Receipt of CREATE_CHILD_SA request
TBD
X
X
Link0
Sub-Group 2. Use of Retransmission Timers
197
Test IKEv2.EN.R.1.2.2.1: Receipt of retransmitted CREATE_CHILD_SA request
TBD
X
X
Link0
Sub-Group 3. State Synchronization and Connection Timeouts
198
Test IKEv2.EN.R.1.2.3.1: Receiving Delete Payload for Multiple CHILD_SA
TBD
X
X
Link0
Sub-Group 4. Cryptographic Algorithm Negotiation
199
Test IKEv2.EN.R.1.2.4.1: Sending NO_PROPOSAL_CHOSEN for CREATE_CHILD_SA
TBD
X
X
Link0
Sub-Group 5. Rekeying
200
Test IKEv2.EN.R.1.2.5.1: Close the replaced CHILD_SA
TBD
X
X
Link0
201
Test IKEv2.EN.R.1.2.5.2: Receipt of cryptographically protected message on the old SA and the new SA
TBD
X
X
Link0
202
Test IKEv2.EN.R.1.2.5.3 Part A: Receiving Multiple Transform for Rekeying CHILD_SA
TBD
X
X
Link0
203
Test IKEv2.EN.R.1.2.5.3 Part B: Receiving Multiple Transform for Rekeying CHILD_SA
TBD
X
X
Link0
204
Test IKEv2.EN.R.1.2.5.3 Part C: Receiving Multiple Transform for Rekeying CHILD_SA
TBD
X
X
Link0
205
Test IKEv2.EN.R.1.2.5.4 Part A: Receiving Multiple Proposal for Rekeying CHILD_SA
TBD
X
X
Link0
206
Test IKEv2.EN.R.1.2.5.4 Part B: Receiving Multiple Proposal for Rekeying CHILD_SA
TBD
X
X
Link0
207
Test IKEv2.EN.R.1.2.5.4 Part C: Receiving Multiple Proposal for Rekeying CHILD_SA
TBD
X
X
Link0
208
Test IKEv2.EN.R.1.2.5.5: Perfect Forward Secrecy
TBD
X
X
Link0
209
Test IKEv2.EN.R.1.2.5.6: Use of the old CHILD_SA
TBD
X
X
Link0
Sub-Group 6. Rekeying IKE_SAs Using a CREATE_CHILD_SA exchange
210
Test IKEv2.EN.R.1.2.6.1: Sending CREATE_CHILD_SA response
TBD
X
X
Link0
211
Test IKEv2.EN.R.1.2.6.2: Receipt of cryptographically valid message on the old IKE_SA
TBD
X
X
Link0
212
Test IKEv2.EN.R.1.2.6.3: Use of the old IKE_SA
TBD
X
X
Link0
213
Test IKEv2.EN.R.1.2.6.4: Close the replaced IKE_SA
TBD
X
X
Link0
214
Test IKEv2.EN.R.1.2.6.5 Part A: Receiving Multiple Transform for Rekeying IKE_SA
TBD
X
X
Link0
215
Test IKEv2.EN.R.1.2.6.5 Part B: Receiving Multiple Transform for Rekeying IKE_SA
TBD
X
X
Link0
216
Test IKEv2.EN.R.1.2.6.5 Part C: Receiving Multiple Transform for Rekeying IKE_SA
TBD
X
X
Link0
217
Test IKEv2.EN.R.1.2.6.5 Part D: Receiving Multiple Transform for Rekeying IKE_SA
TBD
X
X
Link0
218
Test IKEv2.EN.R.1.2.6.6 Part A: Receiving Multiple Proposal for Rekeying IKE_SA
TBD
X
X
Link0
219
Test IKEv2.EN.R.1.2.6.6 Part B: Receiving Multiple Proposal for Rekeying IKE_SA
TBD
X
X
Link0
220
Test IKEv2.EN.R.1.2.6.6 Part C: Receiving Multiple Proposal for Rekeying IKE_SA
TBD
X
X
Link0
221
Test IKEv2.EN.R.1.2.6.6 Part D: Receiving Multiple Proposal for Rekeying IKE_SA
TBD
X
X
Link0
222
Test IKEv2.EN.R.1.2.6.7: Changing PRFs when rekeying the IKE_SA
TBD
X
X
Link0
223
Test IKEv2.EN.R.1.2.6.8: D-H Transform NONE when rekeying the iKE_SA
TBD
X
X
Link0
Sub-Group 7. Creating new CHILD_SAs using CREATE_CHILD_SA exchange
224
Test IKEv2.EN.R.1.2.7.1: Receipt of cryptographically valid message on the new CHILD_SA
TBD
X
X
Link0
Sub-Group 8. Error Handling
Test IKEv2.EN.R.1.2.8.1: AUTHENTICATION_FAILED
225
Test IKEv2.EN.R.1.2.8.1 Part A: Authentication Data
TBD
X
X
Link0
226
Test IKEv2.EN.R.1.2.8.1 Part B: Authentication Method
TBD
X
X
Link0
Sub-Group 9. Non zero RESERVED fields
227
Test IKEv2.EN.R.1.2.9.1: Non zero RESERVED fields in CREATE_CHILD_SA response
TBD
X
X
Link0
Group 3. The INFORMATIONAL Exchange
Sub-Group 1. Header and Payload Formats
228
Test IKEv2.EN.R.1.3.1.1: Sending INFORMATIONAL request
TBD
X
X
Link0
Sub-Group 2. Use of Retransmission Timers
229
Test IKEv2.EN.R.1.3.2.1: Retransmission of INFORMATIONAL request
TBD
X
X
Link0
Sub-Group 3. Non zero RESERVED fields
230
Test IKEv2.EN.R.1.3.3.1: Non zero RESERVED fields in INFORMATIONAL response
TBD
X
X
Link0
231
Global Cleanup
TBD
X
X
Link0
Sub-Section 2. Endpoint to Security Gateway Tunnel
232
Global Setup
TBD
X
X
Link0
Group 1. The Initial Exchanges
Sub-Group 1. Header and Payload Formats
233
Test IKEv2.EN.R.2.1.1.1: Receipt of IKE_AUTH request
TBD
X
X
Link0
234
Test IKEv2.EN.R.2.1.1.2: Use of CHILD_SA
TBD
X
X
Link0
235
Global Cleanup
TBD
X
X
Link0