No.
Title
Result
Log
Script
Dump
Section EN-I. End Node - Initiator
Sub-Section 1. Endpoint-to-Endpoint Transport
1
Global Setup
PASS
X
X
Link0
Group 1. The Initial Exchanges
Sub-Group 1. Header and Payload Formats
2
Test IKEv2.EN.I.1.1.1.1: Sending IKE_SA_INIT request
PASS
X
X
Link0
3
Test IKEv2.EN.I.1.1.1.2: Sending IKE_AUTH request
PASS
X
X
Link0
4
Test IKEv2.EN.I.1.1.1.3: Use of CHILD_SA
FAIL
X
X
Link0
Sub-Group 2. Use of Retransmission Timers
5
Test IKEv2.EN.I.1.1.2.1: Retransmission of IKE_SA_INIT request
SKIP
-
X
-
6
Test IKEv2.EN.I.1.1.2.2: Stop of retransmission of IKE_SA_INIT request
SKIP
-
X
-
7
Test IKEv2.EN.I.1.1.2.3: Retransmission of IKE_AUTH request
SKIP
-
X
-
8
Test IKEv2.EN.I.1.1.2.4: Stop of retransmission of IKE_AUTH request
SKIP
-
X
-
Sub-Group 3. State Synchronization and Connection Timeouts
9
Test IKEv2.EN.I.1.1.3.1: State Synchronization with ICMP message
SKIP
-
X
-
10
Test IKEv2.EN.I.1.1.3.2: State Synchronization with IKE message
SKIP
-
X
-
11
Test IKEv2.EN.I.1.1.3.3: Close Connection when repeated attempts fail
SKIP
-
X
-
12
Test IKEv2.EN.I.1.1.3.4: Close Connection when receiving INITIAL_CONTACT
SKIP
-
X
-
13
Test IKEv2.EN.I.1.1.3.5: Sending Liveness check
SKIP
-
X
-
14
Test IKEv2.EN.I.1.1.3.6: Sending Delete Payload for IKE_SA
SKIP
-
X
-
15
Test IKEv2.EN.I.1.1.3.7: Sending Delete Payload for CHILD_SA
SKIP
-
X
-
16
Test IKEv2.EN.I.1.1.3.8: Sending Liveness check with unprotected messages
SKIP
-
X
-
Sub-Group 4. Version Numbers and Forward Compatibility
Test IKEv2.EN.I.1.1.4.1: Unrecognized payload types and critical bit is not set
17
Test IKEv2.EN.I.1.1.4.1 Part A: Invalid payload type 1
SKIP
-
X
-
18
Test IKEv2.EN.I.1.1.4.1 Part B: Invalid payload type 32
SKIP
-
X
-
19
Test IKEv2.EN.I.1.1.4.1 Part C: Invalid payload type 49
SKIP
-
X
-
20
Test IKEv2.EN.I.1.1.4.1 Part D: Invalid payload type 255
SKIP
-
X
-
Test IKEv2.EN.I.1.1.4.2: Unrecognized payload types and critical bit is set
21
Test IKEv2.EN.I.1.1.4.2 Part A: Invalid payload type 1
SKIP
-
X
-
22
Test IKEv2.EN.I.1.1.4.2 Part B: Invalid payload type 32
SKIP
-
X
-
23
Test IKEv2.EN.I.1.1.4.2 Part C: Invalid payload type 49
SKIP
-
X
-
24
Test IKEv2.EN.I.1.1.4.2 Part D: Invalid payload type 255
SKIP
-
X
-
Sub-Group 5. Cookies
25
Test IKEv2.EN.I.1.1.5.1: Retrying IKE_SA_INIT request with a Notify payload of type COOKIE
SKIP
-
X
-
26
Test IKEv2.EN.I.1.1.5.2: Interaction of COOKIE and INVALID_KE_PAYLOAD
SKIP
-
X
-
27
Test IKEv2.EN.I.1.1.5.3: Interaction of COOKIE and INVALID_KE_PAYLOAD with unoptimized Responder
SKIP
-
X
-
Sub-Group 6. Cryptographic Algorithm Negotiation
Test IKEv2.EN.I.1.1.6.1: Cryptographic Algorithm Negotiation for IKE_SA
28
Test IKEv2.EN.I.1.1.6.1 Part A: Encryption Algorithm ENCR_AES_CBC
SKIP
-
X
-
29
Test IKEv2.EN.I.1.1.6.1 Part B: Encryption Algorithm ENCR_AES_CTR
SKIP
-
X
-
30
Test IKEv2.EN.I.1.1.6.1 Part C: Pseudo-random Function PRF_AES128_XCBC
SKIP
-
X
-
31
Test IKEv2.EN.I.1.1.6.1 Part D: Integrity Algorithm AUTH_AES_XCBC_96
SKIP
-
X
-
32
Test IKEv2.EN.I.1.1.6.1 Part E: D-H Group Group 14
SKIP
-
X
-
Test IKEv2.EN.I.1.1.6.2: Cryptographic Algorithm Negotiation for CHILD_SA
33
Test IKEv2.EN.I.1.1.6.2 Part A: Encryption Algorithm ENCR_AES_CBC
SKIP
-
X
-
34
Test IKEv2.EN.I.1.1.6.2 Part B: Encryption Algorithm ENCR_AES_CTR
SKIP
-
X
-
35
Test IKEv2.EN.I.1.1.6.2 Part C: Encryption Algorithm ENCR_NULL
SKIP
-
X
-
36
Test IKEv2.EN.I.1.1.6.2 Part D: Integrity Algorithm AUTH_AES_XCBC_96
SKIP
-
X
-
37
Test IKEv2.EN.I.1.1.6.2 Part E: Integrity Algorithm NONE
SKIP
-
X
-
38
Test IKEv2.EN.I.1.1.6.2 Part F: Extended Sequence Numbers
SKIP
-
X
-
Test IKEv2.EN.I.1.1.6.3: Sending Multiple Transforms for IKE_SA
39
Test IKEv2.EN.I.1.1.6.3 Part A: Multiple Encryption Algorithms
SKIP
-
X
-
40
Test IKEv2.EN.I.1.1.6.3 Part B: Multiple Pseudo-random Functions
SKIP
-
X
-
41
Test IKEv2.EN.I.1.1.6.3 Part C: Multiple Integrity Algorithms
SKIP
-
X
-
42
Test IKEv2.EN.I.1.1.6.3 Part D: Multiple D-H Groups
SKIP
-
X
-
43
Test IKEv2.EN.I.1.1.6.4: Multiple Proposals for IKE_SA
SKIP
-
X
-
Test IKEv2.EN.I.1.1.6.5: Sending Multiple Transforms for CHILD_SA
44
Test IKEv2.EN.I.1.1.6.5 Part A: Multiple Encryption Algorithms
SKIP
-
X
-
45
Test IKEv2.EN.I.1.1.6.5 Part B: Multiple Integrity Algorithms
SKIP
-
X
-
46
Test IKEv2.EN.I.1.1.6.5 Part C: Multiple Extended Sequence Numbers
SKIP
-
X
-
47
Test IKEv2.EN.I.1.1.6.6: Sending Multiple Proposals
SKIP
-
X
-
48
Test IKEv2.EN.I.1.1.6.7: Receipt of INVALID_KE_PAYLOAD
SKIP
-
X
-
49
Test IKEv2.EN.I.1.1.6.8: Receipt of NO_PROPOSAL_CHOSEN
SKIP
-
X
-
50
Test IKEv2.EN.I.1.1.6.9: Response with inconsistent SA Proposal for IKE_SA
SKIP
-
X
-
51
Test IKEv2.EN.I.1.1.6.10: Response with inconsistent SA Proposal for CHILD_SA
SKIP
-
X
-
52
Test IKEv2.EN.I.1.1.6.11 Part A: Receiving IKE_SA_INIT response with INVALID_KE_PAYLOAD
SKIP
-
X
-
53
Test IKEv2.EN.I.1.1.6.11 Part B: Receiving IKE_SA_INIT response with INVALID_KE_PAYLOAD
SKIP
-
X
-
54
Test IKEv2.EN.I.1.1.6.12: Creating an IKE_SA without a CHILD_SA
SKIP
-
X
-
Sub-Group 7. Traffic Selector Negotiation
55
Test IKEv2.EN.I.1.1.7.1: Narrowing the range of members of the set of traffic selectors
SKIP
-
X
-
Sub-Group 8. Error Handling
56
Test IKEv2.EN.I.1.1.8.1 Part A: INVALID_IKE_SPI Different IKE_SA Initiator's SPI
SKIP
-
X
-
57
Test IKEv2.EN.I.1.1.8.1 Part B: INVALID_IKE_SPI Different IKE_SA Responder's SPI
SKIP
-
X
-
58
Test IKEv2.EN.I.1.1.8.2: INVALID_SELECTORS
SKIP
-
X
-
Sub-Group 10. Authentication of the IKE_SA
59
Test IKEv2.EN.I.1.1.10.1: Sending Certificate Payload
SKIP
-
X
-
60
Test IKEv2.EN.I.1.1.10.2: Sending Certificate Request Payload
SKIP
-
X
-
61
Test IKEv2.EN.I.1.1.10.3: RSA Digital Signature
SKIP
-
X
-
62
Test IKEv2.EN.I.1.1.10.4: HEX string PSK
SKIP
-
X
-
Sub-Group 11. Invalid Values
63
Test IKEv2.EN.I.1.1.11.1: Non zero RESERVED fields in IKE_SA_INIT response
SKIP
-
X
-
64
Test IKEv2.EN.I.1.1.11.2: Non zero RESERVED fields in IKE_AUTH response
SKIP
-
X
-
65
Test IKEv2.EN.I.1.1.11.3: Version bit is set
SKIP
-
X
-
66
Test IKEv2.EN.I.1.1.11.4: Unrecognized Notify Message Type of Error
SKIP
-
X
-
67
Test IKEv2.EN.I.1.1.11.5: Unrecognized Notify Message Type of Status
SKIP
-
X
-
Group 2. The CREATE_CHILD_SA Exchange
Sub-Group 1. Header and Payload Formats
68
Test IKEv2.EN.I.1.2.1.1: Sending CREATE_CHILD_SA request
SKIP
-
X
-
Sub-Group 2. Use of Retransmission Timers
69
Test IKEv2.EN.I.1.2.2.1: Retransmission of CREATE_CHILD_SA request
SKIP
-
X
-
70
Test IKEv2.EN.I.1.2.2.2: Stop of retransmission of CREATE_CHILD_SA request
SKIP
-
X
-
Sub-Group 3. Rekeying
71
Test IKEv2.EN.I.1.2.3.1: Close the replaced CHILD_SA
SKIP
-
X
-
72
Test IKEv2.EN.I.1.2.3.2: Receipt of cryptographically valid message on the new SA
SKIP
-
X
-
73
Test IKEv2.EN.I.1.2.3.3: Lifetime of CHILD_SA expires
SKIP
-
X
-
74
Test IKEv2.EN.I.1.2.3.4 Part A: Sending Multiple Transform for Rekeying CHILD_SA
SKIP
-
X
-
75
Test IKEv2.EN.I.1.2.3.4 Part B: Sending Multiple Transform for Rekeying CHILD_SA
SKIP
-
X
-
76
Test IKEv2.EN.I.1.2.3.4 Part C: Sending Multiple Transform for Rekeying CHILD_SA
SKIP
-
X
-
77
Test IKEv2.EN.I.1.2.3.5: Sending Multiple Proposal for Rekeying CHILD_SA
SKIP
-
X
-
78
Test IKEv2.EN.I.1.2.3.6: Rekeying Failure
SKIP
-
X
-
79
Test IKEv2.EN.I.1.2.3.7: Perfect Forward Secrecy
SKIP
-
X
-
80
Test IKEv2.EN.I.1.2.3.8: Use of the old CHILD_SA
SKIP
-
X
-
Sub-Group 4. Rekeying IKE_SAs Using a CREATE_CHILD_SA exchange
81
Test IKEv2.EN.I.1.2.4.1: Close the replaced IKE_SA
SKIP
-
X
-
82
Test IKEv2.EN.I.1.2.4.2: Receipt of cryptographically valid message on the new IKE_SA
SKIP
-
X
-
83
Test IKEv2.EN.I.1.2.4.3: Lifetime of IKE_SA expires
SKIP
-
X
-
84
Test IKEv2.EN.I.1.2.4.4 Part A: Sending Multiple Transform for Rekeying IKE_SA
SKIP
-
X
-
85
Test IKEv2.EN.I.1.2.4.4 Part B: Sending Multiple Transform for Rekeying IKE_SA
SKIP
-
X
-
86
Test IKEv2.EN.I.1.2.4.4 Part C: Sending Multiple Transform for Rekeying IKE_SA
SKIP
-
X
-
87
Test IKEv2.EN.I.1.2.4.4 Part D: Sending Multiple Transform for Rekeying IKE_SA
SKIP
-
X
-
88
Test IKEv2.EN.I.1.2.4.5: Sending Multiple Proposal for Rekeying IKE_SA
SKIP
-
X
-
89
Test IKEv2.EN.I.1.2.4.6: Use of the old IKE_SA
SKIP
-
X
-
90
Test IKEv2.EN.I.1.2.4.7: Changing PRFs when rekeying IKE_SA
SKIP
-
X
-
Sub-Group 5. Creating New CHILD_SAs with the CREATE_CHILD_SA Exchange
91
Test IKEv2.EN.I.1.2.5.1: Sending CREATE_CHILD_SA request
SKIP
-
X
-
92
Test IKEv2.EN.I.1.2.5.2: Receipt of cryptographically valid message on the new SA
SKIP
-
X
-
Sub-Group 6. Exchange Collisions
93
Test IKEv2.EN.I.1.2.6.1: Simulataneous CHILD_SA Close
SKIP
-
X
-
94
Test IKEv2.EN.I.1.2.6.2: Simulataneous IKE_SA Close
SKIP
-
X
-
95
Test IKEv2.EN.I.1.2.6.3: Simulataneous CHILD_SA Rekeying
SKIP
-
X
-
96
Test IKEv2.EN.I.1.2.6.4: Simulataneous CHILD_SA Rekeying with retransmission
SKIP
-
X
-
97
Test IKEv2.EN.I.1.2.6.5: Simulataneous IKE_SA Rekeying
SKIP
-
X
-
98
Test IKEv2.EN.I.1.2.6.6: Simulataneous IKE_SA Rekeying with retransmission
SKIP
-
X
-
99
Test IKEv2.EN.I.1.2.6.7: Closing and Rekeying CHILD_SA
SKIP
-
X
-
100
Test IKEv2.EN.I.1.2.6.8: Closing a new CHILD_SA
SKIP
-
X
-
101
Test IKEv2.EN.I.1.2.6.9: Rekeying a new CHILD_SA
SKIP
-
X
-
102
Test IKEv2.EN.I.1.2.6.10: Rekeying an IKE_SA with half-open CHILD_SAs
SKIP
-
X
-
103
Test IKEv2.EN.I.1.2.6.11: Rekeying a CHILD_SA while rekeying an IKE_SA
SKIP
-
X
-
104
Test IKEv2.EN.I.1.2.6.12: Rekeying an IKE_SA with half-closed CHILD_SAs
SKIP
-
X
-
105
Test IKEv2.EN.I.1.2.6.13: Closing a CHILD_SA while rekeying an IKE_SA
SKIP
-
X
-
106
Test IKEv2.EN.I.1.2.6.14: Closing an IKE_SA while rekeying an IKE_SA
SKIP
-
X
-
107
Test IKEv2.EN.I.1.2.6.15: Rekeying an IKE_SA while closing the IKE_SA
SKIP
-
X
-
Sub-Group 7. Non zero RESERVED fields
108
Test IKEv2.EN.I.1.2.7.1: Non zero RESERVED fields in CREATE_CHILD_SA response
SKIP
-
X
-
Group 3. The INFORMATIONAL Exchange
Sub-Group 1. Header and Payload Formats
109
Test IKEv2.EN.I.1.3.1.1: Sending INFORMATIONAL request
SKIP
-
X
-
Sub-Group 2. Use of Retransmission Timers
110
Test IKEv2.EN.I.1.3.2.1: Retransmission of INFORMATIONAL request
SKIP
-
X
-
111
Test IKEv2.EN.I.1.3.2.2: Stop of retransmission of INFORMATIONAL request
SKIP
-
X
-
Sub-Group 3. Non zero RESERVED fields
112
Test IKEv2.EN.I.1.3.3.1: Non zero RESERVED fields in INFORMATIONAL response
SKIP
-
X
-
Sub-Group 4. Error Handling
113
Test IKEv2.EN.I.1.3.4.1: INVALID_SPI
SKIP
-
X
-
114
Global Cleanup
SKIP
-
X
-
Sub-Section 2. Endpoint to Security Gateway Tunnel
115
Global Setup
SKIP
-
X
-
Group 1. The Initial Exchanges
Sub-Group 1. Header and Payload Formats
116
Test IKEv2.EN.I.2.1.1.1: Sending IKE_AUTH request
SKIP
-
X
-
117
Test IKEv2.EN.I.2.1.1.2: Use of CHILD_SA
SKIP
-
X
-
Sub-Group 2. Requesting an Internal Address on a Remote Network
118
Test IKEv2.EN.I.2.1.2.1: Sending CFG_REQUEST
SKIP
-
X
-
119
Test IKEv2.EN.I.2.1.2.2: Receipt of CFG_REPLY
SKIP
-
X
-
120
Test IKEv2.EN.I.2.1.2.3: Non zero RESERVED fileds in Configuration Payload
SKIP
-
X
-
121
Test IKEv2.EN.I.2.1.2.4: Receiving IKE_AUTH response without CFG_REPLY
SKIP
-
X
-
122
Test IKEv2.EN.I.2.1.2.5: Receiving unrecognized Configuration Attributes
SKIP
-
X
-
123
Global Cleanup
SKIP
-
X
-
Section EN-R. End Node - Responder
Sub-Section 1. Endpoint-to-Endpoint Transport
124
Global Setup
SKIP
-
X
-
Group 1. The Initial Exchanges
Sub-Group 1. Header and Payload Formats
125
Test IKEv2.EN.R.1.1.1.1: Sending IKE_SA_INIT response
SKIP
-
X
-
126
Test IKEv2.EN.R.1.1.1.2: Sending IKE_AUTH response
SKIP
-
X
-
127
Test IKEv2.EN.R.1.1.1.3: Use of CHILD_SA
SKIP
-
X
-
Sub-Group 2. Use of Retransmission Timers
128
Test IKEv2.EN.R.1.1.2.1: Receipt of retransmitted IKE_SA_INIT request
SKIP
-
X
-
129
Test IKEv2.EN.R.1.1.2.2: Receipt of retransmitted of IKE_AUTH request
SKIP
-
X
-
Sub-Group 3. State Synchronization and Connection Timeouts
130
Test IKEv2.EN.R.1.1.3.1: State Synchronization with ICMP Message
SKIP
-
X
-
131
Test IKEv2.EN.R.1.1.3.2: State Synchronization with IKE Message
SKIP
-
X
-
132
Test IKEv2.EN.R.1.1.3.3: Close Connections when receiving INITIAL_CONTACT
SKIP
-
X
-
133
Test IKEv2.EN.R.1.1.3.4: Receiving Liveness check
SKIP
-
X
-
134
Test IKEv2.EN.R.1.1.3.5: Receiving Delete Payload for IKE_SA
SKIP
-
X
-
135
Test IKEv2.EN.R.1.1.3.6: Receiving Delete Payload for CHILD_SA
SKIP
-
X
-
Sub-Group 4. Version Numbers and Forward Compatibility
136
Test IKEv2.EN.R.1.1.4.1: Receipt of a larger minor version number
SKIP
-
X
-
137
Test IKEv2.EN.R.1.1.4.2: Receipt of a higher major version number
SKIP
-
X
-
Test IKEv2.EN.R.1.1.4.3: Unrecognized payload types and critical bit is not set
138
Test IKEv2.EN.R.1.1.4.3 Part A: Invalid payload type 1
SKIP
-
X
-
139
Test IKEv2.EN.R.1.1.4.3 Part B: Invalid payload type 32
SKIP
-
X
-
140
Test IKEv2.EN.R.1.1.4.3 Part C: Invalid payload type 49
SKIP
-
X
-
141
Test IKEv2.EN.R.1.1.4.3 Part D: Invalid payload type 255
SKIP
-
X
-
Test IKEv2.EN.R.1.1.4.4: Unrecognized payload types and critical bit is set
142
Test IKEv2.EN.R.1.1.4.4 Part A: Invalid payload type 1
SKIP
-
X
-
143
Test IKEv2.EN.R.1.1.4.4 Part B: Invalid payload type 32
SKIP
-
X
-
144
Test IKEv2.EN.R.1.1.4.4 Part C: Invalid payload type 49
SKIP
-
X
-
145
Test IKEv2.EN.R.1.1.4.4 Part D: Invalid payload type 255
SKIP
-
X
-
146
Test IKEv2.EN.R.1.1.4.5: Invalid Payload Order
SKIP
-
X
-
Sub-Group 5. Cookies
£´
147
Test IKEv2.EN.R.1.1.5.1: Cookies
SKIP
-
X
-
148
Test IKEv2.EN.R.1.1.5.2: Invalid Cookies
SKIP
-
X
-
149
Test IKEv2.EN.R.1.1.5.3: Interaction of COOKIE and INVALID_KE_PAYLOAD
SKIP
-
X
-
150
Test IKEv2.EN.R.1.1.5.4: Interaction of COOKIE and INVALID_KE_PAYLOAD with unoptimized Initiator
SKIP
-
X
-
Sub-Group 6. Cryptographic Algorithm Negotiation
Test IKEv2.EN.R.1.1.6.1: Cryptographic Algorithm Negotiation for IKE_SA
151
Test IKEv2.EN.R.1.1.6.1 Part A: Encryption Algorithm ENCR_AES_CBC
SKIP
-
X
-
152
Test IKEv2.EN.R.1.1.6.1 Part B: Encryption Algorithm ENCR_AES_CTR
SKIP
-
X
-
153
Test IKEv2.EN.R.1.1.6.1 Part C: Pseudo-random Function PRF_AES128_XCBC
SKIP
-
X
-
154
Test IKEv2.EN.R.1.1.6.1 Part D: Integrity Algorithm AUTH_AES_XCBC_96
SKIP
-
X
-
155
Test IKEv2.EN.R.1.1.6.1 Part E: D-H Group Group 14
SKIP
-
X
-
Test IKEv2.EN.R.1.1.6.2: Cryptographic Algorithm Negotiation for CHILD_SA
156
Test IKEv2.EN.R.1.1.6.2 Part A: Encryption Algorithm ENCR_AES_CBC
SKIP
-
X
-
157
Test IKEv2.EN.R.1.1.6.2 Part B: Encryption Algorithm ENCR_AES_CTR
SKIP
-
X
-
158
Test IKEv2.EN.R.1.1.6.2 Part C: Encryption Algorithm ENCR_NULL
SKIP
-
X
-
159
Test IKEv2.EN.R.1.1.6.2 Part D: Integrity Algorithm AUTH_AES_XCBC_96
SKIP
-
X
-
160
Test IKEv2.EN.R.1.1.6.2 Part E: Integrity Algorithm NONE
SKIP
-
X
-
161
Test IKEv2.EN.R.1.1.6.2 Part F: Extended Sequence Number
SKIP
-
X
-
Test IKEv2.EN.R.1.1.6.3: Receiving Multiple Transforms for IKE_SA
162
Test IKEv2.EN.R.1.1.6.3 Part A: Multiple Encryption Algorithms
SKIP
-
X
-
163
Test IKEv2.EN.R.1.1.6.3 Part B: Multiple Pseudo-Random Functions
SKIP
-
X
-
164
Test IKEv2.EN.R.1.1.6.3 Part C: Multiple Integrity Algorithms
SKIP
-
X
-
165
Test IKEv2.EN.R.1.1.6.3 Part D: Multiple D-H Groups
SKIP
-
X
-
Test IKEv2.EN.R.1.1.6.4: Receiving Multiple Proposals for IKE_SA
166
Test IKEv2.EN.R.1.1.6.4 Part A: Multiple Proposals for IKE_SA
SKIP
-
X
-
167
Test IKEv2.EN.R.1.1.6.4 Part B: Multiple Proposals for IKE_SA
SKIP
-
X
-
168
Test IKEv2.EN.R.1.1.6.4 Part C: Multiple Proposals for IKE_SA
SKIP
-
X
-
169
Test IKEv2.EN.R.1.1.6.4 Part D: Multiple Proposals for IKE_SA
SKIP
-
X
-
Test IKEv2.EN.R.1.1.6.5: Receiving Multiple Transforms for CHILD_SA
170
Test IKEv2.EN.R.1.1.6.5 Part A: Multiple Encryption Algorithms
SKIP
-
X
-
171
Test IKEv2.EN.R.1.1.6.5 Part B: Multiple Integrity Algorithms
SKIP
-
X
-
172
Test IKEv2.EN.R.1.1.6.5 Part C: Multiple Extended Sequence Numbers
SKIP
-
X
-
Test IKEv2.EN.R.1.1.6.6: Receiving Multiple Proposals for CHILD_SA
173
Test IKEv2.EN.R.1.1.6.6 Part A: Receiving Multiple Proposals
SKIP
-
X
-
174
Test IKEv2.EN.R.1.1.6.6 Part B: Receiving Multiple Proposals
SKIP
-
X
-
175
Test IKEv2.EN.R.1.1.6.6 Part C: Receiving Multiple Proposals
SKIP
-
X
-
176
Test IKEv2.EN.R.1.1.6.7: Sending of INVALID_KE_PAYLOAD
SKIP
-
X
-
177
Test IKEv2.EN.R.1.1.6.8: INVALID_KE_PAYLOAD in the Initial Exchange
SKIP
-
X
-
178
Test IKEv2.EN.R.1.1.6.9: Creating an IKE_SA without a CHILD_SA
SKIP
-
X
-
Sub-Group 7. Traffic Selector Negotiation
179
Test IKEv2.EN.R.1.1.7.1: Narrowing the range of members of the set of traffic selectors
SKIP
-
X
-
180
Test IKEv2.EN.R.1.1.7.2: TS_UNACCEPTABLE
SKIP
-
X
-
181
Test IKEv2.EN.R.1.1.7.3: Narrowing multiple traffic selector
SKIP
-
X
-
Sub-Group 8. Error Handling
Test IKEv2.EN.R.1.1.8.1: INVALID_IKE_SPI
182
Test IKEv2.EN.R.1.1.8.1 Part A: Different IKE_SA Initiator's SPI
SKIP
-
X
-
183
Test IKEv2.EN.R.1.1.8.1 Part B: Different IKE_SA Responder's SPI
SKIP
-
X
-
184
Test IKEv2.EN.R.1.1.8.2: INVALID_SYNTAX
SKIP
-
X
-
185
Test IKEv2.EN.R.1.1.8.3: INVALID_SELECTORS
SKIP
-
X
-
Sub-Group 10. Authentication of the IKE_SA
186
Test IKEv2.EN.R.1.1.10.1: Sending Certificate Payload
SKIP
-
X
-
187
Test IKEv2.EN.R.1.1.10.2: Sending Certificate Request Payload
SKIP
-
X
-
188
Test IKEv2.EN.R.1.1.10.3: RSA Digital Signature
SKIP
-
X
-
189
Test IKEv2.EN.R.1.1.10.4: HEX string PSK
SKIP
-
X
-
Sub-Group 11. Invalid Values
190
Test IKEv2.EN.R.1.1.11.1: Non zero RESERVED fields in IKE_SA_INIT response
SKIP
-
X
-
191
Test IKEv2.EN.R.1.1.11.2: Non zero RESERVED fields in IKE_AUTH response
SKIP
-
X
-
192
Test IKEv2.EN.R.1.1.11.3: Version bit is set
SKIP
-
X
-
193
Test IKEv2.EN.R.1.1.11.4: Response bit is set
SKIP
-
X
-
194
Test IKEv2.EN.R.1.1.11.5 Part A: Unrecognized Notify Message Type
SKIP
-
X
-
195
Test IKEv2.EN.R.1.1.11.5 Part B: Unrecognized Notify Message Type
SKIP
-
X
-
Group 2. The CREATE_CHILD_SA Exchange
Sub-Group 1. Header and Payload Formats
196
Test IKEv2.EN.R.1.2.1.1: Receipt of CREATE_CHILD_SA request
SKIP
-
X
-
Sub-Group 2. Use of Retransmission Timers
197
Test IKEv2.EN.R.1.2.2.1: Receipt of retransmitted CREATE_CHILD_SA request
SKIP
-
X
-
Sub-Group 3. State Synchronization and Connection Timeouts
198
Test IKEv2.EN.R.1.2.3.1: Receiving Delete Payload for Multiple CHILD_SA
SKIP
-
X
-
Sub-Group 4. Cryptographic Algorithm Negotiation
199
Test IKEv2.EN.R.1.2.4.1: Sending NO_PROPOSAL_CHOSEN for CREATE_CHILD_SA
SKIP
-
X
-
Sub-Group 5. Rekeying
200
Test IKEv2.EN.R.1.2.5.1: Close the replaced CHILD_SA
SKIP
-
X
-
201
Test IKEv2.EN.R.1.2.5.2: Receipt of cryptographically protected message on the old SA and the new SA
SKIP
-
X
-
202
Test IKEv2.EN.R.1.2.5.3 Part A: Receiving Multiple Transform for Rekeying CHILD_SA
SKIP
-
X
-
203
Test IKEv2.EN.R.1.2.5.3 Part B: Receiving Multiple Transform for Rekeying CHILD_SA
SKIP
-
X
-
204
Test IKEv2.EN.R.1.2.5.3 Part C: Receiving Multiple Transform for Rekeying CHILD_SA
SKIP
-
X
-
205
Test IKEv2.EN.R.1.2.5.4 Part A: Receiving Multiple Proposal for Rekeying CHILD_SA
SKIP
-
X
-
206
Test IKEv2.EN.R.1.2.5.4 Part B: Receiving Multiple Proposal for Rekeying CHILD_SA
SKIP
-
X
-
207
Test IKEv2.EN.R.1.2.5.4 Part C: Receiving Multiple Proposal for Rekeying CHILD_SA
SKIP
-
X
-
208
Test IKEv2.EN.R.1.2.5.5: Perfect Forward Secrecy
SKIP
-
X
-
209
Test IKEv2.EN.R.1.2.5.6: Use of the old CHILD_SA
SKIP
-
X
-
Sub-Group 6. Rekeying IKE_SAs Using a CREATE_CHILD_SA exchange
210
Test IKEv2.EN.R.1.2.6.1: Sending CREATE_CHILD_SA response
SKIP
-
X
-
211
Test IKEv2.EN.R.1.2.6.2: Receipt of cryptographically valid message on the old IKE_SA
SKIP
-
X
-
212
Test IKEv2.EN.R.1.2.6.3: Use of the old IKE_SA
SKIP
-
X
-
213
Test IKEv2.EN.R.1.2.6.4: Close the replaced IKE_SA
SKIP
-
X
-
214
Test IKEv2.EN.R.1.2.6.5 Part A: Receiving Multiple Transform for Rekeying IKE_SA
SKIP
-
X
-
215
Test IKEv2.EN.R.1.2.6.5 Part B: Receiving Multiple Transform for Rekeying IKE_SA
SKIP
-
X
-
216
Test IKEv2.EN.R.1.2.6.5 Part C: Receiving Multiple Transform for Rekeying IKE_SA
SKIP
-
X
-
217
Test IKEv2.EN.R.1.2.6.5 Part D: Receiving Multiple Transform for Rekeying IKE_SA
SKIP
-
X
-
218
Test IKEv2.EN.R.1.2.6.6 Part A: Receiving Multiple Proposal for Rekeying IKE_SA
SKIP
-
X
-
219
Test IKEv2.EN.R.1.2.6.6 Part B: Receiving Multiple Proposal for Rekeying IKE_SA
SKIP
-
X
-
220
Test IKEv2.EN.R.1.2.6.6 Part C: Receiving Multiple Proposal for Rekeying IKE_SA
SKIP
-
X
-
221
Test IKEv2.EN.R.1.2.6.6 Part D: Receiving Multiple Proposal for Rekeying IKE_SA
SKIP
-
X
-
222
Test IKEv2.EN.R.1.2.6.7: Changing PRFs when rekeying the IKE_SA
SKIP
-
X
-
223
Test IKEv2.EN.R.1.2.6.8: D-H Transform NONE when rekeying the iKE_SA
SKIP
-
X
-
Sub-Group 7. Creating new CHILD_SAs using CREATE_CHILD_SA exchange
224
Test IKEv2.EN.R.1.2.7.1: Receipt of cryptographically valid message on the new CHILD_SA
SKIP
-
X
-
Sub-Group 8. Error Handling
Test IKEv2.EN.R.1.2.8.1: AUTHENTICATION_FAILED
225
Test IKEv2.EN.R.1.2.8.1 Part A: Authentication Data
SKIP
-
X
-
226
Test IKEv2.EN.R.1.2.8.1 Part B: Authentication Method
SKIP
-
X
-
Sub-Group 9. Non zero RESERVED fields
227
Test IKEv2.EN.R.1.2.9.1: Non zero RESERVED fields in CREATE_CHILD_SA response
SKIP
-
X
-
Group 3. The INFORMATIONAL Exchange
Sub-Group 1. Header and Payload Formats
228
Test IKEv2.EN.R.1.3.1.1: Sending INFORMATIONAL request
SKIP
-
X
-
Sub-Group 2. Use of Retransmission Timers
229
Test IKEv2.EN.R.1.3.2.1: Retransmission of INFORMATIONAL request
SKIP
-
X
-
Sub-Group 3. Non zero RESERVED fields
230
Test IKEv2.EN.R.1.3.3.1: Non zero RESERVED fields in INFORMATIONAL response
SKIP
-
X
-
231
Global Cleanup
SKIP
-
X
-
Sub-Section 2. Endpoint to Security Gateway Tunnel
232
Global Setup
SKIP
-
X
-
Group 1. The Initial Exchanges
Sub-Group 1. Header and Payload Formats
233
Test IKEv2.EN.R.2.1.1.1: Receipt of IKE_AUTH request
SKIP
-
X
-
234
Test IKEv2.EN.R.2.1.1.2: Use of CHILD_SA
SKIP
-
X
-
235
Global Cleanup
SKIP
-
X
-