Title | Test IKEv2.EN.I.1.1.1.1: Sending IKE_SA_INIT request |
CommandLine | ./1-EN-I/IKEv2-EN-I-1-1-1-1.seq -log 2.html -ti Test IKEv2.EN.I.1.1.1.1: Sending IKE_SA_INIT request |
TestVersion | REL_1_0_3 |
ToolVersion | REL_2_1_6 |
Start | 2010/02/02 23:25:17 |
Tn | /usr/local/koi//etc//tn.def |
Nu | /usr/local/koi//etc//nut.def |
23:25:17 | Start | ||||||||||||||||||||||||||||||
TEST SETUP | |||||||||||||||||||||||||||||||
initializing IKEv2 module ... | |||||||||||||||||||||||||||||||
configuring Common Topology for End-Node: End-Node to End-Node ... | |||||||||||||||||||||||||||||||
parsing ./config.pl ... | |||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||
setting up TN ... | |||||||||||||||||||||||||||||||
23:25:18 |
ikev2Local("/sbin/sysctl -w net.inet6.ip6.forwarding=1")net.inet6.ip6.forwarding: 0 -> 1 |
||||||||||||||||||||||||||||||
23:25:18 |
ikev2Local("/sbin/ifconfig -a")re0: flags=8943<UP,BROADCAST,RUNNING,PROMISC,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=9b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM> ether 54:52:00:34:8a:3a inet 192.168.122.71 netmask 0xffffff00 broadcast 192.168.122.255 media: Ethernet autoselect (100baseTX <full-duplex>) status: active lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 |
||||||||||||||||||||||||||||||
23:25:18 |
ikev2Local("/sbin/ifconfig re0 inet6 fe80::f%re0/64") |
||||||||||||||||||||||||||||||
23:25:18 |
ikev2Local("/sbin/ifconfig re0 inet6 2001:0db8:0001:0001::f/64") |
||||||||||||||||||||||||||||||
23:25:18 |
ikev2Local("/sbin/ifconfig lo1 create") |
||||||||||||||||||||||||||||||
23:25:18 |
ikev2Local("/sbin/ifconfig lo1 up") |
||||||||||||||||||||||||||||||
23:25:18 |
ikev2Local("/sbin/ifconfig lo1 inet6 2001:0db8:000f:0001::1/64") |
||||||||||||||||||||||||||||||
23:25:21 |
ikev2Local("/sbin/ifconfig -a")re0: flags=8943<UP,BROADCAST,RUNNING,PROMISC,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=9b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM> ether 54:52:00:34:8a:3a inet 192.168.122.71 netmask 0xffffff00 broadcast 192.168.122.255 inet6 fe80::f%re0 prefixlen 64 scopeid 0x1 inet6 2001:db8:1:1::f prefixlen 64 media: Ethernet autoselect (100baseTX <full-duplex>) status: active lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 lo1: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 2001:db8:f:1::1 prefixlen 64 |
||||||||||||||||||||||||||||||
23:25:21 |
ikev2Local("/sbin/setkey -D")No SAD entries. |
||||||||||||||||||||||||||||||
23:25:21 |
ikev2Local("/sbin/setkey -F") |
||||||||||||||||||||||||||||||
23:25:24 |
ikev2Local("/sbin/setkey -D")No SAD entries. |
||||||||||||||||||||||||||||||
23:25:24 |
ikev2Local("/sbin/setkey -DP")No SPD entries. |
||||||||||||||||||||||||||||||
23:25:24 |
ikev2Local("/sbin/setkey -FP") |
||||||||||||||||||||||||||||||
23:25:27 |
ikev2Local("/sbin/setkey -DP")No SPD entries. |
||||||||||||||||||||||||||||||
setting up NUT ... | |||||||||||||||||||||||||||||||
23:25:27 |
kRemote(ifconfig.rmt) ``/usr/local/koi/bin/remotes/manual//ifconfig.rmt ifconfig.address=2001:0db8:0001:0001::1234/64 ifconfig.address_family=inet6 ifconfig.interface=eth0'' kRemote()... /usr/local/koi/bin/remotes/manual//ifconfig.rmt ifconfig.address=2001:0db8:0001:0001::1234/64 ifconfig.address_family=inet6 ifconfig.interface=eth0 ifconfig> ifconfig> ifconfig.address: 2001:0db8:0001:0001::1234/64 ifconfig> ifconfig.address_family: inet6 ifconfig> ifconfig.interface: eth0 ifconfig> ifconfig> Press Enter key for continue. ifconfig> | ||||||||||||||||||||||||||||||
23:25:30 |
kRemote(route.rmt) ``/usr/local/koi/bin/remotes/manual//route.rmt route.0.address_family=inet6 route.0.gateway=fe80::f%eth0 route.0.interface=eth0 route.0.network=2001:0db8:000f:0001::/64 route.num=1'' kRemote()... /usr/local/koi/bin/remotes/manual//route.rmt route.0.address_family=inet6 route.0.gateway=fe80::f%eth0 route.0.interface=eth0 route.0.network=2001:0db8:000f:0001::/64 route.num=1 route> route> route.0.address_family: inet6 route> route.0.gateway: fe80::f%eth0 route> route.0.interface: eth0 route> route.0.network: 2001:0db8:000f:0001::/64 route> route.num: 1 route> route> Press Enter key for continue. route> | ||||||||||||||||||||||||||||||
23:25:32 |
kRemote(ikev2.rmt) ``/usr/local/koi/bin/remotes/manual//ikev2.rmt operation=stop'' kRemote()... /usr/local/koi/bin/remotes/manual//ikev2.rmt operation=stop ikev2> ikev2> operation: stop ikev2> ikev2> Press Enter key for continue. ikev2> | ||||||||||||||||||||||||||||||
23:25:33 |
kRemote(ikev2.rmt) ``/usr/local/koi/bin/remotes/manual//ikev2.rmt ikev2.addresspool.0.eaddr= ikev2.addresspool.0.saddr= ikev2.addresspool.num=1 ikev2.interface.ike.0.address=2001:0db8:0001:0001::1234 ikev2.interface.ike.0.port=500 ikev2.interface.ike.num=1 ikev2.ipsec.0.ext_sequence=off ikev2.ipsec.0.ipsec_index=common_ipsec_index ikev2.ipsec.0.ipsec_sa_lifetime_time=128 ikev2.ipsec.0.sa_index.0=common_sa_index ikev2.ipsec.0.sa_index.num=1 ikev2.ipsec.num=1 ikev2.policy.0.ipsec_index.0=common_ipsec_index ikev2.policy.0.ipsec_index.num=1 ikev2.policy.0.ipsec_mode=transport ikev2.policy.0.policy_index=common_policy_index ikev2.policy.0.remote_index=common_remote_index ikev2.policy.num=1 ikev2.remote.0.ikev2.initial_contact.initial_contact=off ikev2.remote.0.ikev2.kmp_auth_method.0=psk ikev2.remote.0.ikev2.kmp_auth_method.num=1 ikev2.remote.0.ikev2.kmp_dh_group.0=modp1024 ikev2.remote.0.ikev2.kmp_dh_group.num=1 ikev2.remote.0.ikev2.kmp_enc_alg.0=3des_cbc ikev2.remote.0.ikev2.kmp_enc_alg.num=1 ikev2.remote.0.ikev2.kmp_hash_alg.0=hmac_sha1 ikev2.remote.0.ikev2.kmp_hash_alg.num=1 ikev2.remote.0.ikev2.kmp_prf_alg.0=hmac_sha1 ikev2.remote.0.ikev2.kmp_prf_alg.num=1 ikev2.remote.0.ikev2.kmp_sa_lifetime_time=64 ikev2.remote.0.ikev2.my_id.fqdn.num=0 ikev2.remote.0.ikev2.my_id.ipaddr.0=2001:0db8:0001:0001::1234 ikev2.remote.0.ikev2.my_id.ipaddr.num=1 ikev2.remote.0.ikev2.my_id.keyid.num=0 ikev2.remote.0.ikev2.my_id.rfc822addr.num=0 ikev2.remote.0.ikev2.need_pfs=off ikev2.remote.0.ikev2.peers_id.fqdn.num=0 ikev2.remote.0.ikev2.peers_id.ipaddr.0=2001:0db8:000f:0001::1 ikev2.remote.0.ikev2.peers_id.ipaddr.num=1 ikev2.remote.0.ikev2.peers_id.keyid.num=0 ikev2.remote.0.ikev2.peers_id.rfc822addr.num=0 ikev2.remote.0.ikev2.peers_ipaddr.address=2001:0db8:000f:0001::1 ikev2.remote.0.ikev2.peers_ipaddr.port=500 ikev2.remote.0.ikev2.pre_shared_key.local=IKETEST12345678! ikev2.remote.0.ikev2.pre_shared_key.remote=IKETEST12345678! ikev2.remote.0.ikev2.send_cert_req.send_cert_req=on ikev2.remote.0.remote_index=common_remote_index ikev2.remote.num=1 ikev2.sa.0.esp_auth_alg.0=hmac_sha1 ikev2.sa.0.esp_auth_alg.num=1 ikev2.sa.0.esp_enc_alg.0=3des_cbc ikev2.sa.0.esp_enc_alg.num=1 ikev2.sa.0.sa_index=common_sa_index ikev2.sa.0.sa_protocol=esp ikev2.sa.num=1 ikev2.selector.0.direction=outbound ikev2.selector.0.dst.address=2001:0db8:000f:0001::1 ikev2.selector.0.dst.address_family=inet6 ikev2.selector.0.policy_index=common_policy_index ikev2.selector.0.selector_index=common_selector_index_outbound ikev2.selector.0.src.address=2001:0db8:0001:0001::1234 ikev2.selector.0.src.address_family=inet6 ikev2.selector.0.upper_layer_protocol.protocol=any ikev2.selector.1.direction=inbound ikev2.selector.1.dst.address=2001:0db8:0001:0001::1234 ikev2.selector.1.dst.address_family=inet6 ikev2.selector.1.policy_index=common_policy_index ikev2.selector.1.selector_index=common_selector_index_inbound ikev2.selector.1.src.address=2001:0db8:000f:0001::1 ikev2.selector.1.src.address_family=inet6 ikev2.selector.1.upper_layer_protocol.protocol=any ikev2.selector.num=2'' kRemote()... /usr/local/koi/bin/remotes/manual//ikev2.rmt ikev2.addresspool.0.eaddr= ikev2.addresspool.0.saddr= ikev2.addresspool.num=1 ikev2.interface.ike.0.address=2001:0db8:0001:0001::1234 ikev2.interface.ike.0.port=500 ikev2.interface.ike.num=1 ikev2.ipsec.0.ext_sequence=off ikev2.ipsec.0.ipsec_index=common_ipsec_index ikev2.ipsec.0.ipsec_sa_lifetime_time=128 ikev2.ipsec.0.sa_index.0=common_sa_index ikev2.ipsec.0.sa_index.num=1 ikev2.ipsec.num=1 ikev2.policy.0.ipsec_index.0=common_ipsec_index ikev2.policy.0.ipsec_index.num=1 ikev2.policy.0.ipsec_mode=transport ikev2.policy.0.policy_index=common_policy_index ikev2.policy.0.remote_index=common_remote_index ikev2.policy.num=1 ikev2.remote.0.ikev2.initial_contact.initial_contact=off ikev2.remote.0.ikev2.kmp_auth_method.0=psk ikev2.remote.0.ikev2.kmp_auth_method.num=1 ikev2.remote.0.ikev2.kmp_dh_group.0=modp1024 ikev2.remote.0.ikev2.kmp_dh_group.num=1 ikev2.remote.0.ikev2.kmp_enc_alg.0=3des_cbc ikev2.remote.0.ikev2.kmp_enc_alg.num=1 ikev2.remote.0.ikev2.kmp_hash_alg.0=hmac_sha1 ikev2.remote.0.ikev2.kmp_hash_alg.num=1 ikev2.remote.0.ikev2.kmp_prf_alg.0=hmac_sha1 ikev2.remote.0.ikev2.kmp_prf_alg.num=1 ikev2.remote.0.ikev2.kmp_sa_lifetime_time=64 ikev2.remote.0.ikev2.my_id.fqdn.num=0 ikev2.remote.0.ikev2.my_id.ipaddr.0=2001:0db8:0001:0001::1234 ikev2.remote.0.ikev2.my_id.ipaddr.num=1 ikev2.remote.0.ikev2.my_id.keyid.num=0 ikev2.remote.0.ikev2.my_id.rfc822addr.num=0 ikev2.remote.0.ikev2.need_pfs=off ikev2.remote.0.ikev2.peers_id.fqdn.num=0 ikev2.remote.0.ikev2.peers_id.ipaddr.0=2001:0db8:000f:0001::1 ikev2.remote.0.ikev2.peers_id.ipaddr.num=1 ikev2.remote.0.ikev2.peers_id.keyid.num=0 ikev2.remote.0.ikev2.peers_id.rfc822addr.num=0 ikev2.remote.0.ikev2.peers_ipaddr.address=2001:0db8:000f:0001::1 ikev2.remote.0.ikev2.peers_ipaddr.port=500 ikev2.remote.0.ikev2.pre_shared_key.local=IKETEST12345678! ikev2.remote.0.ikev2.pre_shared_key.remote=IKETEST12345678! ikev2.remote.0.ikev2.send_cert_req.send_cert_req=on ikev2.remote.0.remote_index=common_remote_index ikev2.remote.num=1 ikev2.sa.0.esp_auth_alg.0=hmac_sha1 ikev2.sa.0.esp_auth_alg.num=1 ikev2.sa.0.esp_enc_alg.0=3des_cbc ikev2.sa.0.esp_enc_alg.num=1 ikev2.sa.0.sa_index=common_sa_index ikev2.sa.0.sa_protocol=esp ikev2.sa.num=1 ikev2.selector.0.direction=outbound ikev2.selector.0.dst.address=2001:0db8:000f:0001::1 ikev2.selector.0.dst.address_family=inet6 ikev2.selector.0.policy_index=common_policy_index ikev2.selector.0.selector_index=common_selector_index_outbound ikev2.selector.0.src.address=2001:0db8:0001:0001::1234 ikev2.selector.0.src.address_family=inet6 ikev2.selector.0.upper_layer_protocol.protocol=any ikev2.selector.1.direction=inbound ikev2.selector.1.dst.address=2001:0db8:0001:0001::1234 ikev2.selector.1.dst.address_family=inet6 ikev2.selector.1.policy_index=common_policy_index ikev2.selector.1.selector_index=common_selector_index_inbound ikev2.selector.1.src.address=2001:0db8:000f:0001::1 ikev2.selector.1.src.address_family=inet6 ikev2.selector.1.upper_layer_protocol.protocol=any ikev2.selector.num=2 ikev2> ikev2> ikev2.addresspool.0.eaddr: 1 ikev2> ikev2.addresspool.0.saddr: 1 ikev2> ikev2.addresspool.num: 1 ikev2> ikev2.interface.ike.0.address: 2001:0db8:0001:0001::1234 ikev2> ikev2.interface.ike.0.port: 500 ikev2> ikev2.interface.ike.num: 1 ikev2> ikev2.ipsec.0.ext_sequence: off ikev2> ikev2.ipsec.0.ipsec_index: common_ipsec_index ikev2> ikev2.ipsec.0.ipsec_sa_lifetime_time: 128 ikev2> ikev2.ipsec.0.sa_index.0: common_sa_index ikev2> ikev2.ipsec.0.sa_index.num: 1 ikev2> ikev2.ipsec.num: 1 ikev2> ikev2.policy.0.ipsec_index.0: common_ipsec_index ikev2> ikev2.policy.0.ipsec_index.num: 1 ikev2> ikev2.policy.0.ipsec_mode: transport ikev2> ikev2.policy.0.policy_index: common_policy_index ikev2> ikev2.policy.0.remote_index: common_remote_index ikev2> ikev2.policy.num: 1 ikev2> ikev2.remote.0.ikev2.initial_contact.initial_contact: off ikev2> ikev2.remote.0.ikev2.kmp_auth_method.0: psk ikev2> ikev2.remote.0.ikev2.kmp_auth_method.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_dh_group.0: modp1024 ikev2> ikev2.remote.0.ikev2.kmp_dh_group.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_enc_alg.0: 3des_cbc ikev2> ikev2.remote.0.ikev2.kmp_enc_alg.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_hash_alg.0: hmac_sha1 ikev2> ikev2.remote.0.ikev2.kmp_hash_alg.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_prf_alg.0: hmac_sha1 ikev2> ikev2.remote.0.ikev2.kmp_prf_alg.num: 1 ikev2> ikev2.remote.0.ikev2.kmp_sa_lifetime_time: 64 ikev2> ikev2.remote.0.ikev2.my_id.fqdn.num: 0 ikev2> ikev2.remote.0.ikev2.my_id.ipaddr.0: 2001:0db8:0001:0001::1234 ikev2> ikev2.remote.0.ikev2.my_id.ipaddr.num: 1 ikev2> ikev2.remote.0.ikev2.my_id.keyid.num: 0 ikev2> ikev2.remote.0.ikev2.my_id.rfc822addr.num: 0 ikev2> ikev2.remote.0.ikev2.need_pfs: off ikev2> ikev2.remote.0.ikev2.peers_id.fqdn.num: 0 ikev2> ikev2.remote.0.ikev2.peers_id.ipaddr.0: 2001:0db8:000f:0001::1 ikev2> ikev2.remote.0.ikev2.peers_id.ipaddr.num: 1 ikev2> ikev2.remote.0.ikev2.peers_id.keyid.num: 0 ikev2> ikev2.remote.0.ikev2.peers_id.rfc822addr.num: 0 ikev2> ikev2.remote.0.ikev2.peers_ipaddr.address: 2001:0db8:000f:0001::1 ikev2> ikev2.remote.0.ikev2.peers_ipaddr.port: 500 ikev2> ikev2.remote.0.ikev2.pre_shared_key.local: IKETEST12345678! ikev2> ikev2.remote.0.ikev2.pre_shared_key.remote: IKETEST12345678! ikev2> ikev2.remote.0.ikev2.send_cert_req.send_cert_req: on ikev2> ikev2.remote.0.remote_index: common_remote_index ikev2> ikev2.remote.num: 1 ikev2> ikev2.sa.0.esp_auth_alg.0: hmac_sha1 ikev2> ikev2.sa.0.esp_auth_alg.num: 1 ikev2> ikev2.sa.0.esp_enc_alg.0: 3des_cbc ikev2> ikev2.sa.0.esp_enc_alg.num: 1 ikev2> ikev2.sa.0.sa_index: common_sa_index ikev2> ikev2.sa.0.sa_protocol: esp ikev2> ikev2.sa.num: 1 ikev2> ikev2.selector.0.direction: outbound ikev2> ikev2.selector.0.dst.address: 2001:0db8:000f:0001::1 ikev2> ikev2.selector.0.dst.address_family: inet6 ikev2> ikev2.selector.0.policy_index: common_policy_index ikev2> ikev2.selector.0.selector_index: common_selector_index_outbound ikev2> ikev2.selector.0.src.address: 2001:0db8:0001:0001::1234 ikev2> ikev2.selector.0.src.address_family: inet6 ikev2> ikev2.selector.0.upper_layer_protocol.protocol: any ikev2> ikev2.selector.1.direction: inbound ikev2> ikev2.selector.1.dst.address: 2001:0db8:0001:0001::1234 ikev2> ikev2.selector.1.dst.address_family: inet6 ikev2> ikev2.selector.1.policy_index: common_policy_index ikev2> ikev2.selector.1.selector_index: common_selector_index_inbound ikev2> ikev2.selector.1.src.address: 2001:0db8:000f:0001::1 ikev2> ikev2.selector.1.src.address_family: inet6 ikev2> ikev2.selector.1.upper_layer_protocol.protocol: any ikev2> ikev2.selector.num: 2 ikev2> ikev2> Press Enter key for continue. ikev2> | ||||||||||||||||||||||||||||||
TEST PROCEDURE | |||||||||||||||||||||||||||||||
(I) (R) NUT TN1 | | |-------------->| IKE_SA_INIT request (HDR, SAi1, KEi, Ni) | | V V | |||||||||||||||||||||||||||||||
23:25:43 |
Clear Buffer done |
||||||||||||||||||||||||||||||
23:25:43 |
kRemoteAsync(ikev2.rmt) ``/usr/local/koi/bin/remotes/manual//ikev2.rmt selector.direction=outbound selector.dst.address=2001:0db8:000f:0001::1 selector.dst.address_family=inet6 selector.policy_index=common_policy_index selector.selector_index=common_selector_index_outbound selector.src.address=2001:0db8:0001:0001::1234 selector.src.address_family=inet6 selector.upper_layer_protocol.protocol=any target=2001:0db8:000f:0001::1 operation=initiate'' kRemoteAsync()... /usr/local/koi/bin/remotes/manual//ikev2.rmt selector.direction=outbound selector.dst.address=2001:0db8:000f:0001::1 selector.dst.address_family=inet6 selector.policy_index=common_policy_index selector.selector_index=common_selector_index_outbound selector.src.address=2001:0db8:0001:0001::1234 selector.src.address_family=inet6 selector.upper_layer_protocol.protocol=any target=2001:0db8:000f:0001::1 operation=initiate Link to remote control log |
||||||||||||||||||||||||||||||
23:25:43 |
Listen SrcAddr:2001:0db8:000f:0001::1 SrcPort:500 done listening at SocketID:3 |
||||||||||||||||||||||||||||||
23:25:43 |
Receive SrcAddr:2001:db8:1:1::1234 SrcPort:500 DstAddr:2001:db8:f:1::1 DstPort:500 done received from SocketID:4 receive 1st packet |
||||||||||||||||||||||||||||||
compare the received packet with packets('common_remote_index') | |||||||||||||||||||||||||||||||
23:25:45 | Checking Payload Order ... | ||||||||||||||||||||||||||||||
OK: Payload Order ('HDR', 'SA', 'KE', 'Ni, Nr', 'V') | |||||||||||||||||||||||||||||||
23:25:45 | Preparing Expected Packet ... | ||||||||||||||||||||||||||||||
OK: Added Payloads:Added#0 vendorID = 24533135371380597343774798968 inserted = 4 added = 1 self = V critical = 0 length = 16 nexttype = 0 reserved = 0 offset = 228OK: Modified Payloads: Modified#0 critical = 0 length = ARRAY(0x8a70524) length_comparator = range nexttype = V self = Ni, Nr nonce = NaN reserved = 0 modified = nexttype(0 -> V) | |||||||||||||||||||||||||||||||
23:25:45 | Checking Fields ... | ||||||||||||||||||||||||||||||
IKE Header OK initSPI: (received: c0c0670477c5801d, expected: 0000000000000000, comp: ne) OK respSPI: (received: 0000000000000000, expected: 0000000000000000, comp: eq) OK nexttype: (received: SA, expected: SA, comp: eq) OK major: (received: 2, expected: 2, comp: eq) OK minor: (received: 0, expected: 0, comp: eq) OK exchType: (received: IKE_SA_INIT, expected: IKE_SA_INIT, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) OK initiator: (received: 1, expected: 1, comp: eq) OK higher: (received: 0, expected: 0, comp: eq) OK response: (received: 0, expected: 0, comp: eq) OK reserved2: (received: 0, expected: 0, comp: eq) OK messID: (received: 0, expected: 0, comp: eq) OK length: (received: 244, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
SA Proposal Comparison OK ENCR: (received:ENCR_3DES, expected:ENCR_3DES) OK PRF: (received:PRF_HMAC_SHA1, expected:PRF_HMAC_SHA1) OK INTEG: (received:INTEG_HMAC_SHA1_96, expected:INTEG_HMAC_SHA1_96) OK D-H: (received:D-H_1024 MODP Group, expected:D-H_1024 MODP Group) OK ESN: (received:, expected:) | |||||||||||||||||||||||||||||||
Security Association Payload OK nexttype: (received:KE, expected:KE, comp: ne) OK reserved: (received:0, expected:0, comp: eq) OK critical: (received:0, expected:0, comp: eq) OK length: (received:44, expected:44, comp: eq) | |||||||||||||||||||||||||||||||
Proposal Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved: (received:0, expected:0, comp: eq) OK number: (received:1, expected:1, comp: eq) OK proposalLen: (received:40, expected:40, comp: eq) OK transformCount: (received:4, expected:4, comp: eq) OK id: (received:IKE, expected:IKE, comp: eq) OK spiSize: (received:0, expected:0, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:ENCR, expected:ENCR, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:3DES, expected:3DES, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:INTEG, expected:INTEG, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:HMAC_SHA1_96, expected:HMAC_SHA1_96, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:3, expected:3, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:PRF, expected:PRF, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:HMAC_SHA1, expected:HMAC_SHA1, comp: eq) | |||||||||||||||||||||||||||||||
Transform Substructure OK nexttype: (received:0, expected:0, comp: eq) OK reserved1: (received:0, expected:0, comp: eq) OK transformLen: (received:8, expected:8, comp: eq) OK type: (received:D-H, expected:D-H, comp: eq) OK reserved2: (received:0, expected:0, comp: eq) OK id: (received:1024 MODP Group, expected:1024 MODP Group, comp: eq) | |||||||||||||||||||||||||||||||
Key Exchange Payload OK nexttype: (received: Ni, Nr, expected: Ni, Nr, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 136, expected: 136, comp: eq) OK group: (received: 2, expected: 2, comp: eq) OK reserved1: (received: 0, expected: 0, comp: eq) OK publicKey: (received: 0x85b5f72f708bee0f61d756352ec024589f0454dabd7225735ba5ebb3fc81af65e4b644db24368bc45508c78a4b58e9b60b610741d44ba4d6f7787b1fd2ff8c49e3b36467a3facc6e56d84ed3a4a33fb44e194e996f0a2c1088cb0b041b52e6330adef188a60b7a40d38fafbc1b74a53cd36bc112646e7bdb3b4f30172bf244ad, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
Nonce Payload OK nexttype: (received: V, expected: V, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 20, expected: [20-260], comp: range) OK nonce: (received: 0xa3c49702e41b8fe4f47863f43de58120, expected: any, comp: eq) | |||||||||||||||||||||||||||||||
Vendor Payload OK nexttype: (received: 0, expected: 0, comp: eq) OK critical: (received: 0, expected: 0, comp: eq) OK reserved: (received: 0, expected: 0, comp: eq) OK length: (received: 16, expected: 16, comp: eq) OK vendorID: (received: 24533135371380597343774798968, expected: 24533135371380597343774798968, comp: eq) | |||||||||||||||||||||||||||||||
Match with packet('common_remote_index') | |||||||||||||||||||||||||||||||
TEST CLEANUP | |||||||||||||||||||||||||||||||
23:25:45 |
kRemoteAsyncWait()
Link to remote control start point ikev2> ikev2> operation: initiate ikev2> selector.direction: outbound ikev2> selector.dst.address: 2001:0db8:000f:0001::1 ikev2> selector.dst.address_family: inet6 ikev2> selector.policy_index: common_policy_index ikev2> selector.selector_index: common_selector_index_outbound ikev2> selector.src.address: 2001:0db8:0001:0001::1234 ikev2> selector.src.address_family: inet6 ikev2> selector.upper_layer_protocol.protocol: any ikev2> target: 2001:0db8:000f:0001::1 ikev2> ikev2> Press Enter key for continue. ikev2> | ||||||||||||||||||||||||||||||
cleaning up NUT ... | |||||||||||||||||||||||||||||||
23:25:50 |
kRemote(ikev2.rmt) ``/usr/local/koi/bin/remotes/manual//ikev2.rmt operation=stop'' kRemote()... /usr/local/koi/bin/remotes/manual//ikev2.rmt operation=stop ikev2> ikev2> operation: stop ikev2> ikev2> Press Enter key for continue. ikev2> | ||||||||||||||||||||||||||||||
23:25:56 |
kRemote(route.rmt) ``/usr/local/koi/bin/remotes/manual//route.rmt operation=delete route.0.address_family=inet6 route.0.gateway=fe80::f%eth0 route.0.interface=eth0 route.0.network=2001:0db8:000f:0001::/64 route.num=1'' kRemote()... /usr/local/koi/bin/remotes/manual//route.rmt operation=delete route.0.address_family=inet6 route.0.gateway=fe80::f%eth0 route.0.interface=eth0 route.0.network=2001:0db8:000f:0001::/64 route.num=1 route> route> operation: delete route> route.0.address_family: inet6 route> route.0.gateway: fe80::f%eth0 route> route.0.interface: eth0 route> route.0.network: 2001:0db8:000f:0001::/64 route> route.num: 1 route> route> Press Enter key for continue. route> | ||||||||||||||||||||||||||||||
23:25:59 |
kRemote(ifconfig.rmt) ``/usr/local/koi/bin/remotes/manual//ifconfig.rmt operation=delete ifconfig.address=2001:0db8:0001:0001::1234/64 ifconfig.address_family=inet6 ifconfig.interface=eth0'' kRemote()... /usr/local/koi/bin/remotes/manual//ifconfig.rmt operation=delete ifconfig.address=2001:0db8:0001:0001::1234/64 ifconfig.address_family=inet6 ifconfig.interface=eth0 ifconfig> ifconfig> ifconfig.address: 2001:0db8:0001:0001::1234/64 ifconfig> ifconfig.address_family: inet6 ifconfig> ifconfig.interface: eth0 ifconfig> operation: delete ifconfig> ifconfig> Press Enter key for continue. ifconfig> | ||||||||||||||||||||||||||||||
cleaning up TN ... | |||||||||||||||||||||||||||||||
23:26:02 |
ikev2Local("/sbin/sysctl -w net.inet6.ip6.forwarding=0")net.inet6.ip6.forwarding: 1 -> 0 |
||||||||||||||||||||||||||||||
23:26:02 |
ikev2Local("/sbin/ifconfig -a")re0: flags=8943<UP,BROADCAST,RUNNING,PROMISC,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=9b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM> ether 54:52:00:34:8a:3a inet 192.168.122.71 netmask 0xffffff00 broadcast 192.168.122.255 inet6 fe80::f%re0 prefixlen 64 scopeid 0x1 inet6 2001:db8:1:1::f prefixlen 64 media: Ethernet autoselect (100baseTX <full-duplex>) status: active lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 lo1: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 2001:db8:f:1::1 prefixlen 64 |
||||||||||||||||||||||||||||||
23:26:02 |
ikev2Local("/sbin/ifconfig lo1 inet6 2001:0db8:000f:0001::1/64 delete") |
||||||||||||||||||||||||||||||
23:26:02 |
ikev2Local("/sbin/ifconfig lo1 down") |
||||||||||||||||||||||||||||||
23:26:02 |
ikev2Local("/sbin/ifconfig lo1 destroy") |
||||||||||||||||||||||||||||||
23:26:02 |
ikev2Local("/sbin/ifconfig re0 inet6 2001:0db8:0001:0001::f/64 delete") |
||||||||||||||||||||||||||||||
23:26:02 |
ikev2Local("/sbin/ifconfig re0 inet6 fe80::f%re0/64 delete") |
||||||||||||||||||||||||||||||
23:26:05 |
ikev2Local("/sbin/ifconfig -a")re0: flags=8943<UP,BROADCAST,RUNNING,PROMISC,SIMPLEX,MULTICAST> metric 0 mtu 1500 options=9b<RXCSUM,TXCSUM,VLAN_MTU,VLAN_HWTAGGING,VLAN_HWCSUM> ether 54:52:00:34:8a:3a inet 192.168.122.71 netmask 0xffffff00 broadcast 192.168.122.255 media: Ethernet autoselect (100baseTX <full-duplex>) status: active lo0: flags=8049<UP,LOOPBACK,RUNNING,MULTICAST> metric 0 mtu 16384 options=3<RXCSUM,TXCSUM> inet6 fe80::1%lo0 prefixlen 64 scopeid 0x2 inet6 ::1 prefixlen 128 inet 127.0.0.1 netmask 0xff000000 |
||||||||||||||||||||||||||||||
PASS |
IP Packet | IP Header | | Version = 6 | | Source Address = 2001:db8:1:1::1234 | | Destination Address = 2001:db8:f:1::1 | UDP Header | | Source Port = 500 | | Destination Port = 500 | Internet Security Association and Key Management Protocol Payload | | IKE Header | | | IKE_SA Initiator's SPI = c0c0670477c5801d | | | IKE_SA Responder's SPI = 0000000000000000 | | | Next Payload = 33 (SA) | | | Major Version = 2 | | | Minor Version = 0 | | | Exchange Type = 34 (IKE_SA_INIT) | | | Flags = 8 (0b00001000) | | | | Reserved (XX000000) = 0 | | | | Response (00R00000) = 0 | | | | Version (000V0000) = 0 | | | | Initiator (0000I000) = 1 | | | | Reserved (00000XXX) = 0 | | | Message ID = 0 (0x0) | | | Length = 244 (0xf4) | | | SA Payload | | | | Next Payload = 34 (KE) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 44 (0x2c) | | | | Proposal #1 | | | | | Next Payload = 0 (last) | | | | | RESERVED = 0 | | | | | Proposal Length = 40 | | | | | Proposal # = 1 | | | | | Proposal ID = IKE | | | | | SPI Size = 0 | | | | | # of Transforms = 4 | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 1 (ENCR) | | | | | | RESERVED = 0 | | | | | | Transform ID = 3 (3DES) | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 3 (INTEG) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (HMAC_SHA1_96) | | | | | Transfrom | | | | | | Next Payload = 3 (Transform) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 2 (PRF) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (HMAC_SHA1) | | | | | Transfrom | | | | | | Next Payload = 0 (last) | | | | | | RESERVED = 0 | | | | | | Transform Length = 8 | | | | | | Transform Type = 4 (D-H) | | | | | | RESERVED = 0 | | | | | | Transform ID = 2 (1024 MODP Group) | | | KE Payload | | | | Next Payload = 40 (Ni, Nr) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 136 (0x88) | | | | DH Group # = 2 | | | | RESERVED = 0 | | | | Key Exchange Data = 0x85b5f72f708bee0f61d756352ec024589f0454dabd7225735ba5ebb3fc81af65e4b644db24368bc45508c78a4b58e9b60b610741d44ba4d6f7787b1fd2ff8c49e3b36467a3facc6e56d84ed3a4a33fb44e194e996f0a2c1088cb0b041b52e6330adef188a60b7a40d38fafbc1b74a53cd36bc112646e7bdb3b4f30172bf244ad | | | Ni, Nr Payload | | | | Next Payload = 43 (V) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 20 (0x14) | | | | Nonce Data = a3c49702e41b8fe4f47863f43de58120 | | | UNDEFINED Payload (type(V)) | | | | Next Payload = 0 (0) | | | | Critical = 0 | | | | Reserved = 0 | | | | Payload Length = 16 (0x10)