Test Information

TitleImplementation of Aggressive mode with pre-shared key ***
CommandLine./ENODE/R_A_RFC2409_5_5.seq -pkt ./ENODE/R_A_RFC2409_5_5.def test_type=BASIC -log 165.html -ti Implementation of Aggressive mode with pre-shared key ***
TestVersionundefined
ToolVersionREL_3_0_8
Start2006/03/18 00:49:43
Tn/usr/local/v6eval//etc//tn.def
Nu/usr/local/v6eval//etc//nut.def
Pkt./ENODE/R_A_RFC2409_5_5.def
Systemfreebsd-i386
TargetNamefreebsd5.4
HostNameracoon
Typehost

Test Sequence Execution Log

00:49:43Start

*** Target IKE initialization phase ***
Target: Reset IKE SA entries: saddump
00:49:43 vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 saddump ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
dump;
flush;
EOD

? dump;
? flush;
? EOD
No SAD entries.
dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODdump;flush;EOD
echo $status
0
dell# kill -TERM `head -1 /var/run/racoon.pid`
head: /var/run/racoon.pid: No such file or directory

dell# 
echo $status
dell# echo $status
1
dell# 
/bin/rm -f /var/run/racoon.pid

dell# /bin/rm -f /var/run/racoon.pid

dell# 
echo $status
dell# echo $status
0~
[EOT]

Target: Clear SPD entries: spddump
00:49:52 vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 spddump ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
spddump;
spdflush;
? spddump;
? spdflush;
EOD

? EOD
No SPD entries.

dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspddump;spdflush;EOD
echo $status
0~
[EOT]

Target: Set SPD entries: src=3ffe:501:ffff:101::11 dst=3ffe:501:ffff:100:290:99ff:fe7e:3e52 upperspec=any direction=in protocol=PROTO_IPSEC_ESP mode=Transport
00:49:59 vRemote(ipsecSetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecSetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 src=3ffe:501:ffff:101::11 dst=3ffe:501:ffff:100:290:99ff:fe7e:3e52 upperspec=any direction=in protocol=PROTO_IPSEC_ESP mode=Transport ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
spdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52
       any
       -P in ipsec
       esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
;
spddump;
EOD

? spdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52
       any
       -P in ipsec
       esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
;
spddump;
EOD

?        any
?        -P in ipsec
?        esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e5 2/require
? ;
? spddump;
? EOD
3ffe:501:ffff:101::11[any] 3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] any
        in ipsec
        esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
        created: Mar 17 15:57:17 2006  lastused: Mar 17 15:57:17 2006
        lifetime: 0(s) validtime: 0(s)
        spid=18385 seq=0 pid=2362
        refcnt=1
dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52       any       -P in ipsec       esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require;spddump;EOD
echo $status
0~
[EOT]

Target: Set IKE SA entries: dst=3ffe:501:ffff:101::11 dst_port=500 exchange_mode=aggressive doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:101::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 ph2_dst_id=3ffe:501:ffff:101::11 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA
00:50:06 vRemote(ikeSetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeSetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 dst=3ffe:501:ffff:101::11 dst_port=500 exchange_mode=aggressive doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:101::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 ph2_dst_id=3ffe:501:ffff:101::11 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA ''
Connected

dell# 
dell# ~[set] echocheck

dell# 
dell# ~[put] freebsd-i386.psk.txt /tmp/psk.txt
Ddell# 
dell# 
dell# /bin/chmod 600 /tmp/psk.txt
dell# echo $status
0
dell# ~[set] echocheck

dell# 
dell# ~[put] freebsd-i386.ike.conf /tmp/ike.conf
Ddell# 
dell# 
dell# test -f /var/run/racoon.pid &&kill -TERM `head -1 /var/run/racoon.pid`

dell# 
echo $status
dell# echo $status
1
dell# /usr/local/sbin/racoon -f /tmp/ike.conf

dell# 
echo $status
dell# echo $status
0~
[EOT]
00:50:20 vRemote(ikeEnable.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeEnable.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 ''


*** Target initialization phase ***
00:50:20Start Capturing Packets (Link0)
00:50:20 vRecv(Link0,rs_from_nut rs_from_nut_wsll) timeout:15 cntLimit:0 seektime:0
vRecv() return status=1

*** Target testing phase ***
*** Phase-1 1st message send ***
00:50:35Clear Captured Packets (Link0)
00:50:35 vSend(Link0,isakmp_phase1_send_1st_agg)
Send 1st message from HOST2(TN)

*** Phase-1 2nd message receive ***
00:50:35 vRecv(Link0,isakmp_phase1_recv_2nd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0
Receive Neighbor Solicitation from HOST-1(NUT)
00:50:35 vSend(Link0,na_llt)
Send Neighbor Advertisement(TN)
00:50:36 vRecv(Link0,isakmp_phase1_recv_2nd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0
Recv 2nd message from HOST1(NUT)

****OK payload_check payload_check_Proposal
****OK payload_check payload_check_Transform
****OK payload_check payload_check_KE
****OK payload_check payload_check_Nonce
****OK payload_check payload_check_ID
****OK payload_check payload_check_Hash
OK payload_check
OK calcHashPhase1 hash value is correct
*** Phase-1 3rd message send ***
00:50:36Clear Captured Packets (Link0)
00:50:36 vSend(Link0,isakmp_phase1_send_3rd_agg_enc)
Send 3rd message from HOST2(TN)

*** Phase-2 1st message send ***
00:50:36Clear Captured Packets (Link0)
00:50:36 vSend(Link0,isakmp_phase2_send)
Send Phase-2 1st message (HDR*, HASH(1), SA, Ni) from HOST2(TN)

*** Phase-2 2nd message recv ***
00:50:36 vRecv(Link0,isakmp_phase2_recv_2nd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0
Recv Phase-2 2nd message (HDR*, HASH(2), SA, Ni) from HOST1(NUT)

OK payload_check
Implementation of Aggressive Mode with pre-shared key check is correct
*** Target test finish ***
00:50:36Stop Capturing Packets (Link0)

Target: Reset IKE SA entries: saddump
00:50:36 vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 saddump ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
dump;
flush;
EOD

? dump;
? flush;
? EOD
3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52 
        esp mode=transport spi=74149047(0x046b6cb7) reqid=0(0x00000000)
        seq=0x00000000 replay=0 flags=0x00000000 state=larval 
        sadb_seq=0 pid=2369 refcnt=1
dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODdump;flush;EOD
echo $status
0
dell# kill -TERM `head -1 /var/run/racoon.pid`

dell# 
echo $status
dell# echo $status
0
dell# /bin/rm -f /var/run/racoon.pid

dell# 
echo $status
dell# echo $status
0~
[EOT]

Target: Clear SPD entries: spddump
00:50:44 vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 spddump ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
spddump;
spdflush;
? spddump;
? spdflush;
EOD

? EOD
3ffe:501:ffff:101::11[any] 3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] any
        in ipsec
        esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
        created: Mar 17 15:57:17 2006  lastused: Mar 17 15:57:17 2006
        lifetime: 0(s) validtime: 0(s)
        spid=18385 seq=0 pid=2372
        refcnt=1

dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspddump;spdflush;EOD
echo $status
0~
[EOT]

OK
00:50:52End

Packet Reverse Log