Title | Test IKEv2.EN.I.1.1.1.3: Use of CHILD_SA |
CommandLine | ./1-EN-I/IKEv2-EN-I-1-1-1-3-A.seq -log 4.html -ti Test IKEv2.EN.I.1.1.1.3: Use of CHILD_SA |
TestVersion | REL_1_0_3 |
ToolVersion | REL_2_1_6 |
Start | 2010/02/02 23:26:49 |
Tn | /usr/local/koi//etc//tn.def |
Nu | /usr/local/koi//etc//nut.def |
23:26:49 | Start | ||||||||||||||||||||||||||||||
TEST SETUP | |||||||||||||||||||||||||||||||
initializing IKEv2 module ... | |||||||||||||||||||||||||||||||
configuring Common Topology for End-Node: End-Node to End-Node ... | |||||||||||||||||||||||||||||||
parsing ./config.pl ... | |||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||
setting up TN ... | |||||||||||||||||||||||||||||||
23:26:50 |
ikev2Local("/sbin/sysctl -w net.inet6.ip6.forwarding=1")net.inet6.ip6.forwarding: 0 -> 1 |
||||||||||||||||||||||||||||||
23:26:50 |
ikev2Local("/sbin/ifconfig -a")re0: flags=8943<UP,BROADCAST,RUNNING,PROMISC,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=9b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM> ether 54:52:00:34:8a:3a inet 192.168.122.71 netmask 0xffffff00 broadcast 192.168.122.255 media: Ethernet autoselect (100baseTX <full-duplex>) status: active lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 |
||||||||||||||||||||||||||||||
23:26:50 |
ikev2Local("/sbin/ifconfig re0 inet6 fe80::f%re0/64") |
||||||||||||||||||||||||||||||
23:26:50 |
ikev2Local("/sbin/ifconfig re0 inet6 2001:0db8:0001:0001::f/64") |
||||||||||||||||||||||||||||||
23:26:50 |
ikev2Local("/sbin/ifconfig lo1 create") |
||||||||||||||||||||||||||||||
23:26:50 |
ikev2Local("/sbin/ifconfig lo1 up") |
||||||||||||||||||||||||||||||
23:26:50 |
ikev2Local("/sbin/ifconfig lo1 inet6 2001:0db8:000f:0001::1/64") |
||||||||||||||||||||||||||||||
23:26:53 |
ikev2Local("/sbin/ifconfig -a")re0: flags=8943<UP,BROADCAST,RUNNING,PROMISC,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=9b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM> ether 54:52:00:34:8a:3a inet 192.168.122.71 netmask 0xffffff00 broadcast 192.168.122.255 inet6 fe80::f%re0 prefixlen 64 scopeid 0x1 inet6 2001:db8:1:1::f prefixlen 64 media: Ethernet autoselect (100baseTX <full-duplex>) status: active lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 lo1: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 2001:db8:f:1::1 prefixlen 64 |
||||||||||||||||||||||||||||||
23:26:54 |
ikev2Local("/sbin/setkey -D")No SAD entries. |
||||||||||||||||||||||||||||||
23:26:54 |
ikev2Local("/sbin/setkey -F") |
||||||||||||||||||||||||||||||
23:26:57 |
ikev2Local("/sbin/setkey -D")No SAD entries. |
||||||||||||||||||||||||||||||
23:26:57 |
ikev2Local("/sbin/setkey -DP")No SPD entries. |
||||||||||||||||||||||||||||||
23:26:57 |
ikev2Local("/sbin/setkey -FP") |
||||||||||||||||||||||||||||||
23:27:00 |
ikev2Local("/sbin/setkey -DP")No SPD entries. |
||||||||||||||||||||||||||||||
setting up NUT ... | |||||||||||||||||||||||||||||||
23:27:00 |
kRemote(ifconfig.rmt) ``/usr/local/koi/bin/remotes/manual//ifconfig.rmt ifconfig.address=2001:0db8:0001:0001::1234/64 ifconfig.address_family=inet6 ifconfig.interface=eth0'' kRemote()... /usr/local/koi/bin/remotes/manual//ifconfig.rmt ifconfig.address=2001:0db8:0001:0001::1234/64 ifconfig.address_family=inet6 ifconfig.interface=eth0 ifconfig> ifconfig> ifconfig.address: 2001:0db8:0001:0001::1234/64 ifconfig> ifconfig.address_family: inet6 ifconfig> ifconfig.interface: eth0 ifconfig> ifconfig> Press Enter key for continue. ifconfig> | ||||||||||||||||||||||||||||||
23:27:34 |
kRemote(route.rmt) ``/usr/local/koi/bin/remotes/manual//route.rmt route.0.address_family=inet6 route.0.gateway=fe80::f%eth0 route.0.interface=eth0 route.0.network=2001:0db8:000f:0001::/64 route.num=1'' kRemote()... /usr/local/koi/bin/remotes/manual//route.rmt route.0.address_family=inet6 route.0.gateway=fe80::f%eth0 route.0.interface=eth0 route.0.network=2001:0db8:000f:0001::/64 route.num=1 route> route> route.0.address_family: inet6 route> route.0.gateway: fe80::f%eth0 route> route.0.interface: eth0 route> route.0.network: 2001:0db8:000f:0001::/64 route> route.num: 1 route> route> Press Enter key for continue. route> | ||||||||||||||||||||||||||||||
23:27:35 |
kRemote(ikev2.rmt) ``/usr/local/koi/bin/remotes/manual//ikev2.rmt operation=stop'' kRemote()... /usr/local/koi/bin/remotes/manual//ikev2.rmt operation=stop ikev2> ikev2> operation: stop ikev2> ikev2> Press Enter key for continue. ikev2> | ||||||||||||||||||||||||||||||
23:27:36 |
kRemote(ikev2.rmt) ``/usr/local/koi/bin/remotes/manual//ikev2.rmt ikev2.addresspool.0.eaddr= ikev2.addresspool.0.saddr= ikev2.addresspool.num=1 ikev2.interface.ike.0.address=2001:0db8:0001:0001::1234 ikev2.interface.ike.0.port=500 ikev2.interface.ike.num=1 ikev2.ipsec.0.ext_sequence=off ikev2.ipsec.0.ipsec_index=common_ipsec_index ikev2.ipsec.0.ipsec_sa_lifetime_time=128 ikev2.ipsec.0.sa_index.0=common_sa_index ikev2.ipsec.0.sa_index.num=1 ikev2.ipsec.num=1 ikev2.policy.0.ipsec_index.0=common_ipsec_index ikev2.policy.0.ipsec_index.num=1 ikev2.policy.0.ipsec_mode=transport ikev2.policy.0.policy_index=common_policy_index ikev2.policy.0.remote_index=common_remote_index ikev2.policy.num=1 ikev2.remote.0.ikev2.initial_contact.initial_contact=off ikev2.remote.0.ikev2.kmp_auth_method.0=psk ikev2.remote.0.ikev2.kmp_auth_method.num=1 ikev2.remote.0.ikev2.kmp_dh_group.0=modp1024 ikev2.remote.0.ikev2.kmp_dh_group.num=1 ikev2.remote.0.ikev2.kmp_enc_alg.0=3des_cbc ikev2.remote.0.ikev2.kmp_enc_alg.num=1 ikev2.remote.0.ikev2.kmp_hash_alg.0=hmac_sha1 ikev2.remote.0.ikev2.kmp_hash_alg.num=1 ikev2.remote.0.ikev2.kmp_prf_alg.0=hmac_sha1 ikev2.remote.0.ikev2.kmp_prf_alg.num=1 ikev2.remote.0.ikev2.kmp_sa_lifetime_time=64 ikev2.remote.0.ikev2.my_id.fqdn.num=0 ikev2.remote.0.ikev2.my_id.ipaddr.0=2001:0db8:0001:0001::1234 ikev2.remote.0.ikev2.my_id.ipaddr.num=1 ikev2.remote.0.ikev2.my_id.keyid.num=0 ikev2.remote.0.ikev2.my_id.rfc822addr.num=0 ikev2.remote.0.ikev2.need_pfs=off ikev2.remote.0.ikev2.peers_id.fqdn.num=0 ikev2.remote.0.ikev2.peers_id.ipaddr.0=2001:0db8:000f:0001::1 ikev2.remote.0.ikev2.peers_id.ipaddr.num=1 ikev2.remote.0.ikev2.peers_id.keyid.num=0 ikev2.remote.0.ikev2.peers_id.rfc822addr.num=0 ikev2.remote.0.ikev2.peers_ipaddr.address=2001:0db8:000f:0001::1 ikev2.remote.0.ikev2.peers_ipaddr.port=500 ikev2.remote.0.ikev2.pre_shared_key.local=IKETEST12345678! ikev2.remote.0.ikev2.pre_shared_key.remote=IKETEST12345678! ikev2.remote.0.ikev2.send_cert_req.send_cert_req=on ikev2.remote.0.remote_index=common_remote_index ikev2.remote.num=1 ikev2.sa.0.esp_auth_alg.0=hmac_sha1 ikev2.sa.0.esp_auth_alg.num=1 ikev2.sa.0.esp_enc_alg.0=3des_cbc ikev2.sa.0.esp_enc_alg.num=1 ikev2.sa.0.sa_index=common_sa_index ikev2.sa.0.sa_protocol=esp ikev2.sa.num=1 ikev2.selector.0.direction=outbound ikev2.selector.0.dst.address=2001:0db8:000f:0001::1 ikev2.selector.0.dst.address_family=inet6 ikev2.selector.0.policy_index=common_policy_index ikev2.selector.0.selector_index=common_selector_index_outbound ikev2.selector.0.src.address=2001:0db8:0001:0001::1234 ikev2.selector.0.src.address_family=inet6 ikev2.selector.0.upper_layer_protocol.protocol=any ikev2.selector.1.direction=inbound ikev2.selector.1.dst.address=2001:0db8:0001:0001::1234 ikev2.selector.1.dst.address_family=inet6 ikev2.selector.1.policy_index=common_policy_index ikev2.selector.1.selector_index=common_selector_index_inbound ikev2.selector.1.src.address=2001:0db8:000f:0001::1 ikev2.selector.1.src.address_family=inet6 ikev2.selector.1.upper_layer_protocol.protocol=any ikev2.selector.num=2'' kRemote()... /usr/local/koi/bin/remotes/manual//ikev2.rmt ikev2.addresspool.0.eaddr= ikev2.addresspool.0.saddr= ikev2.addresspool.num=1 ikev2.interface.ike.0.address=2001:0db8:0001:0001::1234 ikev2.interface.ike.0.port=500 ikev2.interface.ike.num=1 ikev2.ipsec.0.ext_sequence=off ikev2.ipsec.0.ipsec_index=common_ipsec_index ikev2.ipsec.0.ipsec_sa_lifetime_time=128 ikev2.ipsec.0.sa_index.0=common_sa_index ikev2.ipsec.0.sa_index.num=1 ikev2.ipsec.num=1 ikev2.policy.0.ipsec_index.0=common_ipsec_index ikev2.policy.0.ipsec_index.num=1 ikev2.policy.0.ipsec_mode=transport ikev2.policy.0.policy_index=common_policy_index ikev2.policy.0.remote_index=common_remote_index ikev2.policy.num=1 ikev2.remote.0.ikev2.initial_contact.initial_contact=off ikev2.remote.0.ikev2.kmp_auth_method.0=psk ikev2.remote.0.ikev2.kmp_auth_method.num=1 ikev2.remote.0.ikev2.kmp_dh_group.0=modp1024 ikev2.remote.0.ikev2.kmp_dh_group.num=1 ikev2.remote.0.ikev2.kmp_enc_alg.0=3des_cbc ikev2.remote.0.ikev2.kmp_enc_alg.num=1 ikev2.remote.0.ikev2.kmp_hash_alg.0=hmac_sha1 ikev2.remote.0.ikev2.kmp_hash_alg.num=1 ikev2.remote.0.ikev2.kmp_prf_alg.0=hmac_sha1 ikev2.remote.0.ikev2.kmp_prf_alg.num=1 ikev2.remote.0.ikev2.kmp_sa_lifetime_time=64 ikev2.remote.0.ikev2.my_id.fqdn.num=0 ikev2.remote.0.ikev2.my_id.ipaddr.0=2001:0db8:0001:0001::1234 ikev2.remote.0.ikev2.my_id.ipaddr.num=1 ikev2.remote.0.ikev2.my_id.keyid.num=0 ikev2.remote.0.ikev2.my_id.rfc822addr.num=0 ikev2.remote.0.ikev2.need_pfs=off ikev2.remote.0.ikev2.peers_id.fqdn.num=0 ikev2.remote.0.ikev2.peers_id.ipaddr.0=2001:0db8:000f:0001::1 ikev2.remote.0.ikev2.peers_id.ipaddr.num=1 ikev2.remote.0.ikev2.peers_id.keyid.num=0 ikev2.remote.0.ikev2.peers_id.rfc822addr.num=0 ikev2.remote.0.ikev2.peers_ipaddr.address=2001:0db8:000f:0001::1 ikev2.remote.0.ikev2.peers_ipaddr.port=500 ikev2.remote.0.ikev2.pre_shared_key.local=IKETEST12345678! ikev2.remote.0.ikev2.pre_shared_key.remote=IKETEST12345678! ikev2.remote.0.ikev2.send_cert_req.send_cert_req=on ikev2.remote.0.remote_index=common_remote_index ikev2.remote.num=1 ikev2.sa.0.esp_auth_alg.0=hmac_sha1 ikev2.sa.0.esp_auth_alg.num=1 ikev2.sa.0.esp_enc_alg.0=3des_cbc ikev2.sa.0.esp_enc_alg.num=1 ikev2.sa.0.sa_index=common_sa_index ikev2.sa.0.sa_protocol=esp ikev2.sa.num=1 ikev2.selector.0.direction=outbound ikev2.selector.0.dst.address=2001:0db8:000f:0001::1 ikev2.selector.0.dst.address_family=inet6 ikev2.selector.0.policy_index=common_policy_index ikev2.selector.0.selector_index=common_selector_index_outbound ikev2.selector.0.src.address=2001:0db8:0001:0001::1234 ikev2.selector.0.src.address_family=inet6 ikev2.selector.0.upper_layer_protocol.protocol=any ikev2.selector.1.direction=inbound ikev2.selector.1.dst.address=2001:0db8:0001:0001::1234 ikev2.selector.1.dst.address_family=inet6 ikev2.selector.1.policy_index=common_policy_index ikev2.selector.1.selector_index=common_selector_index_inbound ikev2.selector.1.src.address=2001:0db8:000f:0001::1 ikev2.selector.1.src.address_family=inet6 ikev2.selector.1.upper_layer_protocol.protocol=any ikev2.selector.num=2 ikev2> ikev2> ikev2.addresspool.0.eaddr: 1 ikev2> ikev2.addresspool.0.saddr: 1 ikev2> ikev2.addresspool.num: 1 ikev2> ikev2.interface.ike.0.address: 2001:0db8:0001:0001::1234 ikev2> ikev2.interface.ike.0.port: 500 ikev2> ikev2.interface.ike.num: 1 ikev2> ikev2.ipsec.0.ext_sequence: off ikev2> ikev2.ipsec.0.ipsec_index: common_ipsec_index ikev2> ikev2.ipsec.0.ipsec_sa_lifetime_time: 128 ikev2> ikev2.ipsec.0.sa_index.0: common_sa_index ikev2> ikev2.ipsec.0.sa_index.num: 1 ikev2> ikev2.ipsec.num: 1 ikev2> ikev2.policy.0.ipsec_index.0: common_ipsec_index ikev2> ikev2.policy.0.ipsec_index.num: 1 ikev2> ikev2.policy.0.ipsec_mode: transport ikev2> ikev2.policy.0.policy_index: common_policy_index ikev2> ikev2.policy.0.remote_index: common_remote_index ikev2> ikev2.policy.num: 1 ikev2> ikev2.remote.0.ikev2.initial_contact.initial_contact: off ikev2> ikev2.remote.0.ikev2.kmp_auth_method.0: psk ikev2> ikev2.remote.0.ikev2.kmp_auth_method.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_dh_group.0: modp1024 ikev2> ikev2.remote.0.ikev2.kmp_dh_group.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_enc_alg.0: 3des_cbc ikev2> ikev2.remote.0.ikev2.kmp_enc_alg.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_hash_alg.0: hmac_sha1 ikev2> ikev2.remote.0.ikev2.kmp_hash_alg.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_prf_alg.0: hmac_sha1 ikev2> ikev2.remote.0.ikev2.kmp_prf_alg.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_sa_lifetime_time: 64 ikev2> ikev2.remote.0.ikev2.my_id.fqdn.num: 0 ikev2> ikev2.remote.0.ikev2.my_id.ipaddr.0: 2001:0db8:0001:0001::1234 ikev2> ikev2.remote.0.ikev2.my_id.ipaddr.num: 1 ikev2> ikev2.remote.0.ikev2.my_id.keyid.num: 0 ikev2> ikev2.remote.0.ikev2.my_id.rfc822addr.num: 0 ikev2> ikev2.remote.0.ikev2.need_pfs: off ikev2> ikev2.remote.0.ikev2.peers_id.fqdn.num: 0 ikev2> ikev2.remote.0.ikev2.peers_id.ipaddr.0: 2001:0db8:000f:0001::1 ikev2> ikev2.remote.0.ikev2.peers_id.ipaddr.num: 1 ikev2> ikev2.remote.0.ikev2.peers_id.keyid.num: 0 ikev2> ikev2.remote.0.ikev2.peers_id.rfc822addr.num: 0 ikev2> ikev2.remote.0.ikev2.peers_ipaddr.address: 2001:0db8:000f:0001::1 ikev2> ikev2.remote.0.ikev2.peers_ipaddr.port: 500 ikev2> ikev2.remote.0.ikev2.pre_shared_key.local: IKETEST12345678! ikev2> ikev2.remote.0.ikev2.pre_shared_key.remote: IKETEST12345678! ikev2> ikev2.remote.0.ikev2.send_cert_req.send_cert_req: on ikev2> ikev2.remote.0.remote_index: common_remote_index ikev2> ikev2.remote.num: 1 ikev2> ikev2.sa.0.esp_auth_alg.0: hmac_sha1 ikev2> ikev2.sa.0.esp_auth_alg.num: 1 ikev2> ikev2.sa.0.esp_enc_alg.0: 3des_cbc ikev2> ikev2.sa.0.esp_enc_alg.num: 1 ikev2> ikev2.sa.0.sa_index: common_sa_index ikev2> ikev2.sa.0.sa_protocol: esp ikev2> ikev2.sa.num: 1 ikev2> ikev2.selector.0.direction: outbound ikev2> ikev2.selector.0.dst.address: 2001:0db8:000f:0001::1 ikev2> ikev2.selector.0.dst.address_family: inet6 ikev2> ikev2.selector.0.policy_index: common_policy_index ikev2> ikev2.selector.0.selector_index: common_selector_index_outbound ikev2> ikev2.selector.0.src.address: 2001:0db8:0001:0001::1234 ikev2> ikev2.selector.0.src.address_family: inet6 ikev2> ikev2.selector.0.upper_layer_protocol.protocol: any ikev2> ikev2.selector.1.direction: inbound ikev2> ikev2.selector.1.dst.address: 2001:0db8:0001:0001::1234 ikev2> ikev2.selector.1.dst.address_family: inet6 ikev2> ikev2.selector.1.policy_index: common_policy_index ikev2> ikev2.selector.1.selector_index: common_selector_index_inbound ikev2> ikev2.selector.1.src.address: 2001:0db8:000f:0001::1 ikev2> ikev2.selector.1.src.address_family: inet6 ikev2> ikev2.selector.1.upper_layer_protocol.protocol: any ikev2> ikev2.selector.num: 2 ikev2> ikev2> Press Enter key for continue. ikev2> | ||||||||||||||||||||||||||||||
TEST PROCEDURE | |||||||||||||||||||||||||||||||
(I) (R) NUT TN1 | | |-------------->| IKE_SA_INIT request (HDR, SAi1, KEi, Ni) | | V V | |||||||||||||||||||||||||||||||
23:27:38 |
Clear Buffer done |
||||||||||||||||||||||||||||||
23:27:38 |
kRemoteAsync(ikev2.rmt) ``/usr/local/koi/bin/remotes/manual//ikev2.rmt selector.direction=outbound selector.dst.address=2001:0db8:000f:0001::1 selector.dst.address_family=inet6 selector.policy_index=common_policy_index selector.selector_index=common_selector_index_outbound selector.src.address=2001:0db8:0001:0001::1234 selector.src.address_family=inet6 selector.upper_layer_protocol.protocol=any target=2001:0db8:000f:0001::1 operation=initiate'' kRemoteAsync()... /usr/local/koi/bin/remotes/manual//ikev2.rmt selector.direction=outbound selector.dst.address=2001:0db8:000f:0001::1 selector.dst.address_family=inet6 selector.policy_index=common_policy_index selector.selector_index=common_selector_index_outbound selector.src.address=2001:0db8:0001:0001::1234 selector.src.address_family=inet6 selector.upper_layer_protocol.protocol=any target=2001:0db8:000f:0001::1 operation=initiate Link to remote control log |
||||||||||||||||||||||||||||||
23:27:38 |
Listen SrcAddr:2001:0db8:000f:0001::1 SrcPort:500 done listening at SocketID:3 |
||||||||||||||||||||||||||||||
23:27:38 |
Receive SrcAddr:2001:db8:1:1::1234 SrcPort:500 DstAddr:2001:db8:f:1::1 DstPort:500 done received from SocketID:4 receive 1st packet |
||||||||||||||||||||||||||||||
compare the received packet with packets('common_remote_index') | |||||||||||||||||||||||||||||||
23:27:42 | Checking Payload Order ... | ||||||||||||||||||||||||||||||
OK: Payload Order ('HDR', 'SA', 'KE', 'Ni, Nr', 'V') | |||||||||||||||||||||||||||||||
23:27:42 | Preparing Expected Packet ... | ||||||||||||||||||||||||||||||
OK: Added Payloads:Added#0 vendorID = 24533135371380597343774798968 inserted = 4 added = 1 self = V critical = 0 length = 16 nexttype = 0 reserved = 0 offset = 228OK: Modified Payloads: Modified#0 critical = 0 length = ARRAY(0x8a7c280) length_comparator = range nexttype = V self = Ni, Nr nonce = NaN reserved = 0 modified = nexttype(0 -> V) | |||||||||||||||||||||||||||||||
23:27:42 | Checking Fields ... | ||||||||||||||||||||||||||||||
IKE Header OK initSPI: (received: e73345debbc7945e, expected: 0000000000000000, comp: ne) OK respSPI: (received: 0000000000000000, expected: 0000000000000000, comp: eq) OK nexttype: (received: SA, expected: SA, comp: eq) OK major: (received: 2, expected: 2, comp: eq) OK minor: (received: 0, expected: 0, comp: eq) OK exchType: (received: IKE_SA_INIT, expected: IKE_SA_INIT, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) OK initiator: (received: 1, expected: 1, comp: eq) OK higher: (received: 0, expected: 0, comp: eq) OK response: (received: 0, expected: 0, comp: eq) OK reserved2: (received: 0, expected: 0, comp: eq) OK messID: (received: 0, expected: 0, comp: eq) OK length: (received: 244, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
SA Proposal Comparison OK ENCR: (received:ENCR_3DES, expected:ENCR_3DES) OK PRF: (received:PRF_HMAC_SHA1, expected:PRF_HMAC_SHA1) OK INTEG: (received:INTEG_HMAC_SHA1_96, expected:INTEG_HMAC_SHA1_96) OK D-H: (received:D-H_1024 MODP Group, expected:D-H_1024 MODP Group) OK ESN: (received:, expected:) | |||||||||||||||||||||||||||||||
Security Association Payload OK nexttype: (received:KE, expected:KE, comp: ne) OK reserved: (received:0, expected:0, comp: eq) OK critical: (received:0, expected:0, comp: eq) OK length: (received:44, expected:44, comp: eq) | |||||||||||||||||||||||||||||||
Proposal Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved: (received:0, expected:0, comp: eq) OK number: (received:1, expected:1, comp: eq) OK proposalLen: (received:40, expected:40, comp: eq) OK transformCount: (received:4, expected:4, comp: eq) OK id: (received:IKE, expected:IKE, comp: eq) OK spiSize: (received:0, expected:0, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:ENCR, expected:ENCR, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:3DES, expected:3DES, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:INTEG, expected:INTEG, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:HMAC_SHA1_96, expected:HMAC_SHA1_96, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:PRF, expected:PRF, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:HMAC_SHA1, expected:HMAC_SHA1, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:D-H, expected:D-H, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:1024 MODP Group, expected:1024 MODP Group, comp: eq) | |||||||||||||||||||||||||||||||
Key Exchange Payload OK nexttype: (received: Ni, Nr, expected: Ni, Nr, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 136, expected: 136, comp: eq) OK group: (received: 2, expected: 2, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) OK publicKey: (received: 0x31206b9e52a2696c85bb9e831a899ca69ea910f857343a0fc614e24aa349c08118acd3098dfcd93acab3c984efb5f7989b1c2df5a0f81762559a4d9d968db95ec29532c92005ccf226b9b1c52f04bdb609c8038a6f07741be1edd4d05db879c008ef7df554c1d0110bc7653850a6d99f7dfd67c2abc35c6d29083677fe8bee65, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
Nonce Payload OK nexttype: (received: V, expected: V, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 20, expected: [20-260], comp: range) OK nonce: (received: 0x86acfed20825b87ad147fe6c4dae90aa, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
Vendor Payload OK nexttype: (received: 0, expected: 0, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 16, expected: 16, comp: eq) OK vendorID: (received: 24533135371380597343774798968, expected: 24533135371380597343774798968, comp: eq) | |||||||||||||||||||||||||||||||
Match with packet('common_remote_index') | |||||||||||||||||||||||||||||||
(I) (R) NUT TN1 | | |<--------------| IKE_SA_INIT response (HDR, SAr1, KEr, Nr) | | V V | |||||||||||||||||||||||||||||||
23:27:42 |
Clear Buffer done |
||||||||||||||||||||||||||||||
23:27:42 |
Send done sent to SocketID:4 send 2nd packet |
||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||
(I) (R) NUT TN1 | | |-------------->| IKE_AUTH request (HDR, SK {IDi, AUTH, N(USE_TRANSPORT_MODE), SAi2, TSi, TSr}) | | V V | |||||||||||||||||||||||||||||||
23:27:42 |
Receive SrcAddr:2001:db8:1:1::1234 SrcPort:500 DstAddr:2001:db8:f:1::1 DstPort:500 done received from SocketID:4 receive 3rd packet |
||||||||||||||||||||||||||||||
Authentication Success. expected(9debb6a4a66b5d7b02f07f4bd9b82d07b83b6780) received(9debb6a4a66b5d7b02f07f4bd9b82d07b83b6780) | |||||||||||||||||||||||||||||||
compare the received packet with packets('common_remote_index') | |||||||||||||||||||||||||||||||
23:27:42 | Checking Payload Order ... | ||||||||||||||||||||||||||||||
OK: Payload Order ('HDR', 'E', 'IDi', 'AUTH', 'SA', 'TSi', 'TSr') | |||||||||||||||||||||||||||||||
23:27:42 | Preparing Expected Packet ... | ||||||||||||||||||||||||||||||
OK: No Added PayloadOK: No Modified Payload | |||||||||||||||||||||||||||||||
23:27:42 | Checking Fields ... | ||||||||||||||||||||||||||||||
IKE Header OK initSPI: (received: e73345debbc7945e, expected: e73345debbc7945e, comp: eq) OK respSPI: (received: 8058b2b3751a64dc, expected: 8058b2b3751a64dc, comp: eq) OK nexttype: (received: E, expected: E, comp: eq) OK major: (received: 2, expected: 2, comp: eq) OK minor: (received: 0, expected: 0, comp: eq) OK exchType: (received: IKE_AUTH, expected: IKE_AUTH, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) OK initiator: (received: 1, expected: 1, comp: eq) OK higher: (received: 0, expected: 0, comp: eq) OK response: (received: 0, expected: 0, comp: eq) OK reserved2: (received: 0, expected: 0, comp: eq) OK messID: (received: 1, expected: 1, comp: eq) OK length: (received: 364, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
Encrypted Payload OK innerType: (received: IDi, expected: IDi, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 32, expected: any, comp: eq) OK iv: (received: 7CF4E1F3 90172DC6, expected: any, comp: eq) OK checksum: (received: ADC1D14B 6B9D95C6 45D383F7, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
Identification Payload - Initiator OK nexttype: (received: AUTH, expected: AUTH, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 24, expected: 24, comp: eq) OK type: (received: IPV6_ADDR, expected: IPV6_ADDR, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) OK value: (received: 20010DB8 00010001 00000000 00001234, expected: 20010DB8 00010001 00000000 00001234, comp: eq) | |||||||||||||||||||||||||||||||
Authentication Payload OK nexttype: (received: SA, expected: SA, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 28, expected: any, comp: eq) OK method: (received: SK_MIC, expected: SK_MIC, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) OK data: (received: 9debb6a4a66b5d7b02f07f4bd9b82d07b83b6780, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
SA Proposal Comparison OK ENCR: (received:ENCR_3DES, expected:ENCR_3DES) OK PRF: (received:, expected:) OK INTEG: (received:INTEG_HMAC_SHA1_96, expected:INTEG_HMAC_SHA1_96) OK D-H: (received:, expected:) OK ESN: (received:ESN_No ESN, expected:ESN_No ESN) | |||||||||||||||||||||||||||||||
Security Association Payload OK nexttype: (received:TSi, expected:TSi, comp: ne) OK reserved: (received:0, expected:0, comp: eq) OK critical: (received:0, expected:0, comp: eq) OK length: (received:156, expected:156, comp: eq) | |||||||||||||||||||||||||||||||
Proposal Substructure OK nexttype: (received:2, expected:2, comp: eq) OK reserved: (received:0, expected:0, comp: eq) OK number: (received:1, expected:1, comp: eq) OK id: (received:ESP, expected:ESP, comp: eq) OK proposalLen: (received:40, expected:40, comp: eq) OK transformCount: (received:3, expected:3, comp: eq) OK spiSize: (received:4, expected:4, comp: eq) OK spi: (received:7d905c30, expected:any, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:12, expected:12, comp: eq) OK type: (received:ENCR, expected:ENCR, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:AES_CBC, expected:AES_CBC, comp: eq) | |||||||||||||||||||||||||||||||
Transform Attribute OK type: (received:Key Length, expected:Key Length, comp: eq) OK value: (received:128, expected:128, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:INTEG, expected:INTEG, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:HMAC_SHA1_96, expected:HMAC_SHA1_96, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:ESN, expected:ESN, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:No ESN, expected:No ESN, comp: eq) | |||||||||||||||||||||||||||||||
Proposal Substructure OK nexttype: (received:2, expected:2, comp: eq) OK reserved: (received:0, expected:0, comp: eq) OK number: (received:2, expected:0, comp: ne) OK id: (received:ESP, expected:ESP, comp: eq) OK proposalLen: (received:40, expected:40, comp: eq) OK transformCount: (received:3, expected:3, comp: eq) OK spiSize: (received:4, expected:4, comp: eq) OK spi: (received:7d905c30, expected:any, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:12, expected:12, comp: eq) OK type: (received:ENCR, expected:ENCR, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:AES_CBC, expected:AES_CBC, comp: eq) | |||||||||||||||||||||||||||||||
Transform Attribute OK type: (received:Key Length, expected:Key Length, comp: eq) OK value: (received:128, expected:128, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:INTEG, expected:INTEG, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:HMAC_MD5_96, expected:HMAC_MD5_96, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:ESN, expected:ESN, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:No ESN, expected:No ESN, comp: eq) | |||||||||||||||||||||||||||||||
Proposal Substructure OK nexttype: (received:2, expected:2, comp: eq) OK reserved: (received:0, expected:0, comp: eq) OK number: (received:3, expected:0, comp: ne) OK id: (received:ESP, expected:ESP, comp: eq) OK proposalLen: (received:36, expected:36, comp: eq) OK transformCount: (received:3, expected:3, comp: eq) OK spiSize: (received:4, expected:4, comp: eq) OK spi: (received:7d905c30, expected:any, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:ENCR, expected:ENCR, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:3DES, expected:3DES, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:INTEG, expected:INTEG, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:HMAC_SHA1_96, expected:HMAC_SHA1_96, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:ESN, expected:ESN, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:No ESN, expected:No ESN, comp: eq) | |||||||||||||||||||||||||||||||
Proposal Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved: (received:0, expected:0, comp: eq) OK number: (received:4, expected:0, comp: ne) OK id: (received:ESP, expected:ESP, comp: eq) OK proposalLen: (received:36, expected:36, comp: eq) OK transformCount: (received:3, expected:3, comp: eq) OK spiSize: (received:4, expected:4, comp: eq) OK spi: (received:7d905c30, expected:any, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:ENCR, expected:ENCR, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:3DES, expected:3DES, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:INTEG, expected:INTEG, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:HMAC_MD5_96, expected:HMAC_MD5_96, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:ESN, expected:ESN, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:No ESN, expected:No ESN, comp: eq) | |||||||||||||||||||||||||||||||
Traffic Selector Payload - Initiator OK nexttype: (received: TSr, expected: TSr, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 48, expected: 48, comp: eq) OK count: (received: 1, expected: 1, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) | |||||||||||||||||||||||||||||||
Traffic Selector (expected #0) OK type: (received: IPV6_ADDR_RANGE, expected: IPV6_ADDR_RANGE, comp: eq) OK protocol: (received: 0, expected: 0, comp: eq) OK selectorLen: (received: 40, expected: 40, comp: eq) OK sport: (received: 0, expected: 0, comp: eq) OK eport: (received: 65535, expected: 65535, comp: eq) OK saddr: (received: 20010DB8 00010001 00000000 00001234, expected: 20010DB8 00010001 00000000 00001234, comp: eq) OK eaddr: (received: 20010DB8 00010001 00000000 00001234, expected: 20010DB8 00010001 00000000 00001234, comp: eq) | |||||||||||||||||||||||||||||||
Traffic Selector Payload - Responder OK nexttype: (received: 0, expected: 0, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 48, expected: 48, comp: eq) OK count: (received: 1, expected: 1, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) | |||||||||||||||||||||||||||||||
Traffic Selector (expected #0) OK type: (received: IPV6_ADDR_RANGE, expected: IPV6_ADDR_RANGE, comp: eq) OK protocol: (received: 0, expected: 0, comp: eq) OK selectorLen: (received: 40, expected: 40, comp: eq) OK sport: (received: 0, expected: 0, comp: eq) OK eport: (received: 65535, expected: 65535, comp: eq) OK saddr: (received: 20010DB8 000F0001 00000000 00000001, expected: 20010DB8 000F0001 00000000 00000001, comp: eq) OK eaddr: (received: 20010DB8 000F0001 00000000 00000001, expected: 20010DB8 000F0001 00000000 00000001, comp: eq) | |||||||||||||||||||||||||||||||
Match with packet('common_remote_index') | |||||||||||||||||||||||||||||||
(I) (R) NUT TN1 | | |<--------------| IKE_AUTH response (HDR, SK {IDr, AUTH, N(USE_TRANSPORT_MODE), SAr2, TSi, TSr}) | | V V | |||||||||||||||||||||||||||||||
23:27:43 |
Clear Buffer done |
||||||||||||||||||||||||||||||
23:27:43 |
Send done sent to SocketID:4 send 4th packet |
||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||
23:27:43 |
ikev2Local("/usr/local/sbin/setkey -c << EOF
add 2001:0db8:000f:0001::1 2001:0db8:0001:0001::1234 esp 0x7d905c30
-E 3des-cbc 0xa72ae8c8d171edd06f0b097a08fdf0d80cfc85e65ff8f80b
-A hmac-sha1 0xbe930943adc9a9ab919359449379ad74cc6b77ad;
add 2001:0db8:0001:0001::1234 2001:0db8:000f:0001::1 esp 0xcae30502
-E 3des-cbc 0x8cc2210d907360571a250227807b1d94f111c943316d2a58
-A hmac-sha1 0x87d205eba83c485b01fbe784e167d1eb33a5e959;
spdadd 2001:0db8:0001:0001::1234[any] 2001:0db8:000f:0001::1[any] any
-P in ipsec esp/transport//require;
spdadd 2001:0db8:000f:0001::1[any] 2001:0db8:0001:0001::1234[any] any
-P out ipsec esp/transport//require;
EOF
")add 2001:0db8:000f:0001::1 2001:0db8:0001:0001::1234 esp 0x7d905c30 -E 3des-cbc 0xa72ae8c8d171edd06f0b097a08fdf0d80cfc85e65ff8f80b -A hmac-sha1 0xbe930943adc9a9ab919359449379ad74cc6b77ad; add 2001:0db8:0001:0001::1234 2001:0db8:000f:0001::1 esp 0xcae30502 -E 3des-cbc 0x8cc2210d907360571a250227807b1d94f111c943316d2a58 -A hmac-sha1 0x87d205eba83c485b01fbe784e167d1eb33a5e959; spdadd 2001:0db8:0001:0001::1234[any] 2001:0db8:000f:0001::1[any] any -P in ipsec esp/transport//require; spdadd 2001:0db8:000f:0001::1[any] 2001:0db8:0001:0001::1234[any] any -P out ipsec esp/transport//require; |
||||||||||||||||||||||||||||||
23:27:43 |
ikev2Local("/usr/local/sbin/setkey -DP")2001:db8:1:1::1234[any] 2001:db8:f:1::1[any] any in ipsec esp/transport//require spid=3 seq=1 pid=1994 refcnt=1 2001:db8:f:1::1[any] 2001:db8:1:1::1234[any] any out ipsec esp/transport//require spid=4 seq=0 pid=1994 refcnt=1 |
||||||||||||||||||||||||||||||
23:27:43 |
ikev2Local("/usr/local/sbin/setkey -D")2001:db8:1:1::1234 2001:db8:f:1::1 esp mode=any spi=3403875586(0xcae30502) reqid=0(0x00000000) E: 3des-cbc 8cc2210d 90736057 1a250227 807b1d94 f111c943 316d2a58 A: hmac-sha1 87d205eb a83c485b 01fbe784 e167d1eb 33a5e959 seq=0x00000000 replay=0 flags=0x00000040 state=mature created: Feb 2 23:27:43 2010 current: Feb 2 23:27:43 2010 diff: 0(s) hard: 0(s) soft: 0(s) last: hard: 0(s) soft: 0(s) current: 0(bytes) hard: 0(bytes) soft: 0(bytes) allocated: 0 hard: 0 soft: 0 sadb_seq=1 pid=1995 refcnt=1 2001:db8:f:1::1 2001:db8:1:1::1234 esp mode=any spi=2106612784(0x7d905c30) reqid=0(0x00000000) E: 3des-cbc a72ae8c8 d171edd0 6f0b097a 08fdf0d8 0cfc85e6 5ff8f80b A: hmac-sha1 be930943 adc9a9ab 91935944 9379ad74 cc6b77ad seq=0x00000000 replay=0 flags=0x00000040 state=mature created: Feb 2 23:27:43 2010 current: Feb 2 23:27:43 2010 diff: 0(s) hard: 0(s) soft: 0(s) last: hard: 0(s) soft: 0(s) current: 0(bytes) hard: 0(bytes) soft: 0(bytes) allocated: 0 hard: 0 soft: 0 sadb_seq=0 pid=1995 refcnt=1 |
||||||||||||||||||||||||||||||
23:27:43 |
Connect SrcAddr:2001:0db8:000f:0001::1 SrcPort:0 DstAddr:2001:0db8:0001:0001::1234 DstPort:0 done connected to SocketID:5 |
||||||||||||||||||||||||||||||
23:27:43 |
Receive Can't receive any packets at SrcAddr:2001:db8:f:1::1 SrcPort:0 | ||||||||||||||||||||||||||||||
23:27:44 |
Send done sent to SocketID:5 send 5th packet |
||||||||||||||||||||||||||||||
23:27:44 |
Receive Can't receive any packets at SrcAddr:2001:db8:f:1::1 SrcPort:0 | ||||||||||||||||||||||||||||||
Can't observe ICMP packet. | |||||||||||||||||||||||||||||||
TEST CLEANUP | |||||||||||||||||||||||||||||||
23:27:56 |
kRemoteAsyncWait()
Link to remote control start point ikev2> ikev2> operation: initiate ikev2> selector.direction: outbound ikev2> selector.dst.address: 2001:0db8:000f:0001::1 ikev2> selector.dst.address_family: inet6 ikev2> selector.policy_index: common_policy_index ikev2> selector.selector_index: common_selector_index_outbound ikev2> selector.src.address: 2001:0db8:0001:0001::1234 ikev2> selector.src.address_family: inet6 ikev2> selector.upper_layer_protocol.protocol: any ikev2> target: 2001:0db8:000f:0001::1 ikev2> ikev2> Press Enter key for continue. ikev2> | ||||||||||||||||||||||||||||||
cleaning up NUT ... | |||||||||||||||||||||||||||||||
23:28:04 |
kRemote(ikev2.rmt) ``/usr/local/koi/bin/remotes/manual//ikev2.rmt operation=stop'' kRemote()... /usr/local/koi/bin/remotes/manual//ikev2.rmt operation=stop ikev2> ikev2> operation: stop ikev2> ikev2> Press Enter key for continue. ikev2> | ||||||||||||||||||||||||||||||
23:28:06 |
kRemote(route.rmt) ``/usr/local/koi/bin/remotes/manual//route.rmt operation=delete route.0.address_family=inet6 route.0.gateway=fe80::f%eth0 route.0.interface=eth0 route.0.network=2001:0db8:000f:0001::/64 route.num=1'' kRemote()... /usr/local/koi/bin/remotes/manual//route.rmt operation=delete route.0.address_family=inet6 route.0.gateway=fe80::f%eth0 route.0.interface=eth0 route.0.network=2001:0db8:000f:0001::/64 route.num=1 route> route> operation: delete route> route.0.address_family: inet6 route> route.0.gateway: fe80::f%eth0 route> route.0.interface: eth0 route> route.0.network: 2001:0db8:000f:0001::/64 route> route.num: 1 route> route> Press Enter key for continue. route> | ||||||||||||||||||||||||||||||
23:28:07 |
kRemote(ifconfig.rmt) ``/usr/local/koi/bin/remotes/manual//ifconfig.rmt operation=delete ifconfig.address=2001:0db8:0001:0001::1234/64 ifconfig.address_family=inet6 ifconfig.interface=eth0'' kRemote()... /usr/local/koi/bin/remotes/manual//ifconfig.rmt operation=delete ifconfig.address=2001:0db8:0001:0001::1234/64 ifconfig.address_family=inet6 ifconfig.interface=eth0 ifconfig> ifconfig> ifconfig.address: 2001:0db8:0001:0001::1234/64 ifconfig> ifconfig.address_family: inet6 ifconfig> ifconfig.interface: eth0 ifconfig> operation: delete ifconfig> ifconfig> Press Enter key for continue. ifconfig> | ||||||||||||||||||||||||||||||
cleaning up TN ... | |||||||||||||||||||||||||||||||
23:28:08 |
ikev2Local("/sbin/setkey -D")2001:db8:1:1::1234 2001:db8:f:1::1 esp mode=any spi=3403875586(0xcae30502) reqid=0(0x00000000) E: 3des-cbc 8cc2210d 90736057 1a250227 807b1d94 f111c943 316d2a58 A: hmac-sha1 87d205eb a83c485b 01fbe784 e167d1eb 33a5e959 seq=0x00000000 replay=0 flags=0x00000040 state=mature created: Feb 2 23:27:43 2010 current: Feb 2 23:28:08 2010 diff: 25(s) hard: 0(s) soft: 0(s) last: hard: 0(s) soft: 0(s) current: 0(bytes) hard: 0(bytes) soft: 0(bytes) allocated: 0 hard: 0 soft: 0 sadb_seq=1 pid=1999 refcnt=1 2001:db8:f:1::1 2001:db8:1:1::1234 esp mode=any spi=2106612784(0x7d905c30) reqid=0(0x00000000) E: 3des-cbc a72ae8c8 d171edd0 6f0b097a 08fdf0d8 0cfc85e6 5ff8f80b A: hmac-sha1 be930943 adc9a9ab 91935944 9379ad74 cc6b77ad seq=0x00000001 replay=0 flags=0x00000040 state=mature created: Feb 2 23:27:43 2010 current: Feb 2 23:28:08 2010 diff: 25(s) hard: 0(s) soft: 0(s) last: Feb 2 23:27:44 2010 hard: 0(s) soft: 0(s) current: 116(bytes) hard: 0(bytes) soft: 0(bytes) allocated: 1 hard: 0 soft: 0 sadb_seq=0 pid=1999 refcnt=2 |
||||||||||||||||||||||||||||||
23:28:08 |
ikev2Local("/sbin/setkey -F") |
||||||||||||||||||||||||||||||
23:28:11 |
ikev2Local("/sbin/setkey -D") |
||||||||||||||||||||||||||||||
23:28:11 |
ikev2Local("/sbin/setkey -DP")2001:db8:1:1::1234[any] 2001:db8:f:1::1[any] any in ipsec esp/transport//require spid=3 seq=1 pid=2002 refcnt=1 2001:db8:f:1::1[any] 2001:db8:1:1::1234[any] any out ipsec esp/transport//require spid=4 seq=0 pid=2002 refcnt=1 |
||||||||||||||||||||||||||||||
23:28:12 |
ikev2Local("/sbin/setkey -FP") |
||||||||||||||||||||||||||||||
23:28:15 |
ikev2Local("/sbin/setkey -DP")No SPD entries. |
||||||||||||||||||||||||||||||
23:28:15 |
ikev2Local("/sbin/sysctl -w net.inet6.ip6.forwarding=0")net.inet6.ip6.forwarding: 1 -> 0 |
||||||||||||||||||||||||||||||
23:28:15 |
ikev2Local("/sbin/ifconfig -a")re0: flags=8943<UP,BROADCAST,RUNNING,PROMISC,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=9b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM> ether 54:52:00:34:8a:3a inet 192.168.122.71 netmask 0xffffff00 broadcast 192.168.122.255 inet6 fe80::f%re0 prefixlen 64 scopeid 0x1 inet6 2001:db8:1:1::f prefixlen 64 media: Ethernet autoselect (100baseTX <full-duplex>) status: active lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 lo1: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 2001:db8:f:1::1 prefixlen 64 |
||||||||||||||||||||||||||||||
23:28:15 |
ikev2Local("/sbin/ifconfig lo1 inet6 2001:0db8:000f:0001::1/64 delete") |
||||||||||||||||||||||||||||||
23:28:15 |
ikev2Local("/sbin/ifconfig lo1 down") |
||||||||||||||||||||||||||||||
23:28:15 |
ikev2Local("/sbin/ifconfig lo1 destroy") |
||||||||||||||||||||||||||||||
23:28:15 |
ikev2Local("/sbin/ifconfig re0 inet6 2001:0db8:0001:0001::f/64 delete") |
||||||||||||||||||||||||||||||
23:28:15 |
ikev2Local("/sbin/ifconfig re0 inet6 fe80::f%re0/64 delete") |
||||||||||||||||||||||||||||||
23:28:18 |
ikev2Local("/sbin/ifconfig -a")re0: flags=8943<UP,BROADCAST,RUNNING,PROMISC,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=9b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM> ether 54:52:00:34:8a:3a inet 192.168.122.71 netmask 0xffffff00 broadcast 192.168.122.255 media: Ethernet autoselect (100baseTX <full-duplex>) status: active lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 |
||||||||||||||||||||||||||||||
FAIL |
IP Packet | IP Header | | Version = 6 | | Source Address = 2001:db8:1:1::1234 | | Destination Address = 2001:db8:f:1::1 | UDP Header | | Source Port = 500 | | Destination Port = 500 | Internet Security Association and Key Management Protocol Payload | | IKE Header | | | IKE_SA Initiator's SPI = e73345debbc7945e | | | IKE_SA Responder's SPI = 0000000000000000 | | | Next Payload = 33 (SA) | | | Major Version = 2 | | | Minor Version = 0 | | | Exchange Type = 34 (IKE_SA_INIT) | | | Flags = 8 (0b00001000) | | | | Reserved (XX000000) = 0 | | | | Response (00R00000) = 0 | | | | Version (000V0000) = 0 | | | | Initiator (0000I000) = 1 | | | | Reserved (00000XXX) = 0 | | | Message ID = 0 (0x0) | | | Length = 244 (0xf4) | | | SA Payload | | | | Next Payload = 34 (KE) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 44 (0x2c) | | | | Proposal #1 | | | | | Next Payload = 0 (last) | | | | | RESERVED = 0 | | | | | Proposal Length = 40 | | | | | Proposal # = 1 | | | | | Proposal ID = IKE | | | | | SPI Size = 0 | | | | | # of Transforms = 4 | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 1 (ENCR) | | | | | | RESERVED = 0 | | | | | | Transform ID = 3 (3DES) | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 3 (INTEG) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (HMAC_SHA1_96) | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 2 (PRF) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (HMAC_SHA1) | | | | | Transfrom | | | | | | Next Payload = 0 (last) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 4 (D-H) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (1024 MODP Group) | | | KE Payload | | | | Next Payload = 40 (Ni, Nr) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 136 (0x88) | | | | DH Group # = 2 | | | | RESERVED = 0 | | | | Key Exchange Data = 0x31206b9e52a2696c85bb9e831a899ca69ea910f857343a0fc614e24aa349c08118acd3098dfcd93acab3c984efb5f7989b1c2df5a0f81762559a4d9d968db95ec29532c92005ccf226b9b1c52f04bdb609c8038a6f07741be1edd4d05db879c008ef7df554c1d0110bc7653850a6d99f7dfd67c2abc35c6d29083677fe8bee65 | | | Ni, Nr Payload | | | | Next Payload = 43 (V) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 20 (0x14) | | | | Nonce Data = 86acfed20825b87ad147fe6c4dae90aa | | | UNDEFINED Payload (type(V)) | | | | Next Payload = 0 (0) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 16 (0x10)
IP Packet | IP Header | | Version = 6 | | Source Address = 2001:db8:f:1::1 | | Destination Address = 2001:db8:1:1::1234 | UDP Header | | Source Port = 500 | | Destination Port = 500 | Internet Security Association and Key Management Protocol Payload | | IKE Header | | | IKE_SA Initiator's SPI = e73345debbc7945e | | | IKE_SA Responder's SPI = 8058b2b3751a64dc | | | Next Payload = 33 (SA) | | | Major Version = 2 | | | Minor Version = 0 | | | Exchange Type = 34 (IKE_SA_INIT) | | | Flags = 32 (0b00100000) | | | | Reserved (XX000000) = 0 | | | | Response (00R00000) = 1 | | | | Version (000V0000) = 0 | | | | Initiator (0000I000) = 0 | | | | Reserved (00000XXX) = 0 | | | Message ID = 0 (0x0) | | | Length = 390 (0x186) | | | SA Payload | | | | Next Payload = 34 (KE) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 44 (0x2c) | | | | Proposal #1 | | | | | Next Payload = 0 (last) | | | | | RESERVED = 0 | | | | | Proposal Length = 40 | | | | | Proposal # = 1 | | | | | Proposal ID = IKE | | | | | SPI Size = 0 | | | | | # of Transforms = 4 | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 1 (ENCR) | | | | | | RESERVED = 0 | | | | | | Transform ID = 3 (3DES) | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 2 (PRF) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (HMAC_SHA1) | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 3 (INTEG) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (HMAC_SHA1_96) | | | | | Transfrom | | | | | | Next Payload = 0 (last) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 4 (D-H) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (1024 MODP Group) | | | KE Payload | | | | Next Payload = 40 (Ni, Nr) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 136 (0x88) | | | | DH Group # = 2 | | | | RESERVED = 0 | | | | Key Exchange Data = 0xa3b9432500a24f0426624e4c4acc6e1367265efa12f0641757a584a0c1fc43a98ee7dce2de220b5bc96c54fc6428a185ce793d3102725f1473210e6028140df82feab02f14ddc94e05532b5ddaed3ffe019551e7496be993eb03475b257bbe5c213634b4b9eb5afc99208014e55083439ec23ccad7126268539e32ae42c78856 | | | Ni, Nr Payload | | | | Next Payload = 0 (0) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 182 (0xb6) | | | | Nonce Data = 996e420cb40539231d3e4b3e924681247a7fc0b17fb03abca2ac45fb56442254f6af3c7a37bcd09e1e4909912e4ca9593d0699cf669106103d6fe7c17b2c277ad51b55f89eb2024ad027ed71361271cbc34a01750d95e0bda1f66621dfc76e1a7ac5323b017e2386282058d13ed5d112c542190397f5c6259fa97bf20f868c150647305c94d432104937b8f61f000f2e9969e941dfc34782c3dcd8ed13fb2159f8eec4a517adfa25d2e2de87aa24aa88f240
IP Packet | IP Header | | Version = 6 | | Source Address = 2001:db8:1:1::1234 | | Destination Address = 2001:db8:f:1::1 | UDP Header | | Source Port = 500 | | Destination Port = 500 | Internet Security Association and Key Management Protocol Payload | | IKE Header | | | IKE_SA Initiator's SPI = e73345debbc7945e | | | IKE_SA Responder's SPI = 8058b2b3751a64dc | | | Next Payload = 46 (E) | | | Major Version = 2 | | | Minor Version = 0 | | | Exchange Type = 35 (IKE_AUTH) | | | Flags = 8 (0b00001000) | | | | Reserved (XX000000) = 0 | | | | Response (00R00000) = 0 | | | | Version (000V0000) = 0 | | | | Initiator (0000I000) = 1 | | | | Reserved (00000XXX) = 0 | | | Message ID = 1 (0x1) | | | Length = 364 (0x16c) | | | E Payload | | | | Next Payload = 35 (IDi) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 336 (0x150) | | | | Initialization Vector = 7cf4e1f390172dc6 | | | | Encrypted IKE Payloads | | | | | IDi Payload | | | | | | Next Payload = 39 (AUTH) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 24 (0x18) | | | | | | ID Type = 5 (IPV6_ADDR) | | | | | | RESERVED = 0 | | | | | | Identification Data = 20010db8000100010000000000001234 (2001:db8:1:1::1234) | | | | | AUTH Payload | | | | | | Next Payload = 33 (SA) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 28 (0x1c) | | | | | | Auth Method = 2 (SK_MIC) | | | | | | RESERVED = 0 | | | | | | Authentication Data = 3964656262366134613636623564376230326630 | | | | | SA Payload | | | | | | Next Payload = 44 (TSi) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 156 (0x9c) | | | | | | Proposal #1 | | | | | | | Next Payload = 2 (Proposal) | | | | | | | RESERVED = 0 | | | | | | | Proposal Length = 40 | | | | | | | Proposal # = 1 | | | | | | | Proposal ID = ESP | | | | | | | SPI Size = 4 | | | | | | | # of Transforms = 3 | | | | | | | SPI = 7d905c30 | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 12 | | | | | | | | Transform Type = 1 (ENCR) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 12 (AES_CBC) | | | | | | | | | Attribute | | | | | | | | | | Attribute Type = Key Length | | | | | | | | | | Attribute Value = 128 | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 3 (INTEG) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 2 (HMAC_SHA1_96) | | | | | | | Transfrom | | | | | | | | Next Payload = 0 (last) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 5 (ESN) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 0 (No ESN) | | | | | | Proposal #2 | | | | | | | Next Payload = 2 (Proposal) | | | | | | | RESERVED = 0 | | | | | | | Proposal Length = 40 | | | | | | | Proposal # = 2 | | | | | | | Proposal ID = ESP | | | | | | | SPI Size = 4 | | | | | | | # of Transforms = 3 | | | | | | | SPI = 7d905c30 | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 12 | | | | | | | | Transform Type = 1 (ENCR) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 12 (AES_CBC) | | | | | | | | | Attribute | | | | | | | | | | Attribute Type = Key Length | | | | | | | | | | Attribute Value = 128 | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 3 (INTEG) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 1 (HMAC_MD5_96) | | | | | | | Transfrom | | | | | | | | Next Payload = 0 (last) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 5 (ESN) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 0 (No ESN) | | | | | | Proposal #3 | | | | | | | Next Payload = 2 (Proposal) | | | | | | | RESERVED = 0 | | | | | | | Proposal Length = 36 | | | | | | | Proposal # = 3 | | | | | | | Proposal ID = ESP | | | | | | | SPI Size = 4 | | | | | | | # of Transforms = 3 | | | | | | | SPI = 7d905c30 | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 1 (ENCR) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 3 (3DES) | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 3 (INTEG) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 2 (HMAC_SHA1_96) | | | | | | | Transfrom | | | | | | | | Next Payload = 0 (last) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 5 (ESN) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 0 (No ESN) | | | | | | Proposal #4 | | | | | | | Next Payload = 0 (last) | | | | | | | RESERVED = 0 | | | | | | | Proposal Length = 36 | | | | | | | Proposal # = 4 | | | | | | | Proposal ID = ESP | | | | | | | SPI Size = 4 | | | | | | | # of Transforms = 3 | | | | | | | SPI = 7d905c30 | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 1 (ENCR) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 3 (3DES) | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 3 (INTEG) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 1 (HMAC_MD5_96) | | | | | | | Transfrom | | | | | | | | Next Payload = 0 (last) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 5 (ESN) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 0 (No ESN) | | | | | TSi Payload | | | | | | Next Payload = 45 (TSr) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 48 (0x30) | | | | | | Number of TSs = 1 | | | | | | RESERVED = 0 | | | | | | Traffic Selector | | | | | | | TS Type = 8 (IPV6_ADDR_RANGE) | | | | | | | IP Protocol ID = 0 (any) | | | | | | | Selector Length = 40 | | | | | | | Start Port = 0 | | | | | | | End Port = 65535 | | | | | | | Starting Address = 20010db8000100010000000000001234 | | | | | | | Ending Address = 20010db8000100010000000000001234 | | | | | TSr Payload | | | | | | Next Payload = 0 (0) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 48 (0x30) | | | | | | Number of TSs = 1 | | | | | | RESERVED = 0 | | | | | | Traffic Selector | | | | | | | TS Type = 8 (IPV6_ADDR_RANGE) | | | | | | | IP Protocol ID = 0 (any) | | | | | | | Selector Length = 40 | | | | | | | Start Port = 0 | | | | | | | End Port = 65535 | | | | | | | Starting Address = 20010db8000f00010000000000000001 | | | | | | | Ending Address = 20010db8000f00010000000000000001 | | | | Integrity Checksum Data = adc1d14b6b9d95c645d383f7
IP Packet | IP Header | | Version = 6 | | Source Address = 2001:db8:f:1::1 | | Destination Address = 2001:db8:1:1::1234 | UDP Header | | Source Port = 500 | | Destination Port = 500 | Internet Security Association and Key Management Protocol Payload | | IKE Header | | | IKE_SA Initiator's SPI = e73345debbc7945e | | | IKE_SA Responder's SPI = 8058b2b3751a64dc | | | Next Payload = 46 (E) | | | Major Version = 2 | | | Minor Version = 0 | | | Exchange Type = 35 (IKE_AUTH) | | | Flags = 32 (0b00100000) | | | | Reserved (XX000000) = 0 | | | | Response (00R00000) = 1 | | | | Version (000V0000) = 0 | | | | Initiator (0000I000) = 0 | | | | Reserved (00000XXX) = 0 | | | Message ID = 1 (0x1) | | | Length = 252 (0xfc) | | | E Payload | | | | Next Payload = 36 (IDr) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 224 (0xe0) | | | | Initialization Vector = e6f24db310a8de2d | | | | Encrypted IKE Payloads | | | | | IDr Payload | | | | | | Next Payload = 39 (AUTH) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 24 (0x18) | | | | | | ID Type = 5 (IPV6_ADDR) | | | | | | RESERVED = 0 | | | | | | Identification Data = 20010db8000f00010000000000000001 (2001:db8:f:1::1) | | | | | AUTH Payload | | | | | | Next Payload = 41 (N) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 28 (0x1c) | | | | | | Auth Method = 2 (SK_MIC) | | | | | | RESERVED = 0 | | | | | | Authentication Data = 3432636130373139336532393035643664653334 | | | | | N Payload | | | | | | Next Payload = 33 (SA) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 8 (0x8) | | | | | | Protocol ID = 0 (no relation) | | | | | | SPI Size = 0 | | | | | | Notify Message Type = 16391 (USE_TRANSPORT_MODE) | | | | | SA Payload | | | | | | Next Payload = 44 (TSi) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 40 (0x28) | | | | | | Proposal #1 | | | | | | | Next Payload = 0 (last) | | | | | | | RESERVED = 0 | | | | | | | Proposal Length = 36 | | | | | | | Proposal # = 1 | | | | | | | Proposal ID = ESP | | | | | | | SPI Size = 4 | | | | | | | # of Transforms = 3 | | | | | | | SPI = cae30502 | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 1 (ENCR) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 3 (3DES) | | | | | | | Transfrom | | | | | | | | Next Payload = 3 (Transform) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 3 (INTEG) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 2 (HMAC_SHA1_96) | | | | | | | Transfrom | | | | | | | | Next Payload = 0 (last) | | | | | | | | RESERVED = 0 | | | | | | | | Transform Length = 8 | | | | | | | | Transform Type = 5 (ESN) | | | | | | | | RESERVED = 0 | | | | | | | | Transform ID = 0 (No ESN) | | | | | TSi Payload | | | | | | Next Payload = 45 (TSr) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 48 (0x30) | | | | | | Number of TSs = 1 | | | | | | RESERVED = 0 | | | | | | Traffic Selector | | | | | | | TS Type = 8 (IPV6_ADDR_RANGE) | | | | | | | IP Protocol ID = 0 (any) | | | | | | | Selector Length = 40 | | | | | | | Start Port = 0 | | | | | | | End Port = 65535 | | | | | | | Starting Address = 20010db8000100010000000000001234 | | | | | | | Ending Address = 20010db8000100010000000000001234 | | | | | TSr Payload | | | | | | Next Payload = 0 (0) | | | | | | Critical = 0 | | | | | | Reserved = 0 | | | | | | Payload Length = 48 (0x30) | | | | | | Number of TSs = 1 | | | | | | RESERVED = 0 | | | | | | Traffic Selector | | | | | | | TS Type = 8 (IPV6_ADDR_RANGE) | | | | | | | IP Protocol ID = 0 (any) | | | | | | | Selector Length = 40 | | | | | | | Start Port = 0 | | | | | | | End Port = 65535 | | | | | | | Starting Address = 20010db8000f00010000000000000001 | | | | | | | Ending Address = 20010db8000f00010000000000000001 | | | | Integrity Checksum Data = d1c4d50e7139a4eedbf325d2
IP Packet | IP Header | | Version = 6 | | Source Address = 2001:db8:f:1::1 | | Destination Address = 2001:db8:1:1::1234 | ICMP Header | | Type = 128 (Echo Request) | | Code = 0 | | Checksum = 0x0000