| Title | IPSEC Situation Definition(SIT_SECRECY) * |
| CommandLine | ./ENODE/R_A_RFC2407_4_2_2_1.seq -pkt ./ENODE/R_A_RFC2407_4_2_2_1.def test_type=BASIC -log 189.html -ti IPSEC Situation Definition(SIT_SECRECY) * |
| TestVersion | undefined |
| ToolVersion | REL_3_0_8 |
| Start | 2006/03/18 01:14:49 |
| Tn | /usr/local/v6eval//etc//tn.def |
| Nu | /usr/local/v6eval//etc//nut.def |
| Pkt | ./ENODE/R_A_RFC2407_4_2_2_1.def |
| System | freebsd-i386 |
| TargetName | freebsd5.4 |
| HostName | racoon |
| Type | host |
| 01:14:50 | Start |
|
*** Target IKE initialization phase *** Target: Reset IKE SA entries: saddump |
|
| 01:14:50 |
vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 saddump ''
Connected dell# dell# /usr/local/sbin/setkey -c <<EOD dump; flush; EOD ? dump; ? flush; ? EOD No SAD entries. dell# dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODdump;flush;EOD echo $status 0 dell# kill -TERM `head -1 /var/run/racoon.pid` head: /var/run/racoon.pid: No such file or directory dell# echo $status dell# echo $status 1 dell# /bin/rm -f /var/run/racoon.pid dell# echo $status dell# echo $status 0~ [EOT] |
| Target: Clear SPD entries: spddump | |
| 01:14:57 |
vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 spddump ''
Connected dell# dell# /usr/local/sbin/setkey -c <<EOD spddump; spdflush;? spddump; EOD ? spdflush; EOD ? EOD No SPD entries. dell# dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspddump;spdflush;EOD echo $status 0~ [EOT] |
| Target: Set SPD entries: src=3ffe:501:ffff:101::11 dst=3ffe:501:ffff:100:290:99ff:fe7e:3e52 upperspec=any direction=in protocol=PROTO_IPSEC_ESP mode=Transport | |
| 01:15:05 |
vRemote(ipsecSetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecSetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 src=3ffe:501:ffff:101::11 dst=3ffe:501:ffff:100:290:99ff:fe7e:3e52 upperspec=any direction=in protocol=PROTO_IPSEC_ESP mode=Transport ''
Connected
dell#
dell# /usr/local/sbin/setkey -c <<EOD
spdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52
any
-P in ipsec
esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
;
spddump;
EOD
? spdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52
any
-P in ipsec
esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
;
spddump;
EOD
? any
? -P in ipsec
? esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e5 2/require
? ;
? spddump;
? EOD
3ffe:501:ffff:101::11[any] 3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] any
in ipsec
esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
created: Mar 17 16:22:23 2006 lastused: Mar 17 16:22:23 2006
lifetime: 0(s) validtime: 0(s)
spid=18657 seq=0 pid=2720
refcnt=1
dell#
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52 any -P in ipsec esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require;spddump;EOD
echo $status
0~
[EOT]
|
| Target: Set IKE SA entries: dst=3ffe:501:ffff:101::11 dst_port=500 exchange_mode=aggressive doi=ipsec_doi situation=secrecy isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:101::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 ph2_dst_id=3ffe:501:ffff:101::11 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA | |
| 01:15:13 |
vRemote(ikeSetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeSetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 dst=3ffe:501:ffff:101::11 dst_port=500 exchange_mode=aggressive doi=ipsec_doi situation=secrecy isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:101::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 ph2_dst_id=3ffe:501:ffff:101::11 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA ''
Connected dell# dell# ~[set] echocheck dell# dell# ~[put] freebsd-i386.psk.txt /tmp/psk.txt D dell# dell# dell# /bin/chmod 600 /tmp/psk.txt dell# echo $status 0 dell# ~[set] echocheck dell# dell# ~[put] freebsd-i386.ike.conf /tmp/ike.conf Ddell# dell# dell# test -f /var/run/racoon.pid &&kill -TERM `head -1 /var/run/racoon.pid` dell# dell# echo $status 1 dell# /usr/local/sbin/racoon -f /tmp/ike.conf dell# dell# echo $status 0~ [EOT] |
| 01:15:26 | vRemote(ikeEnable.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeEnable.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 '' |
|
*** Target initialization phase *** |
|
| 01:15:26 | Start Capturing Packets (Link0) |
| 01:15:26 | vRecv(Link0,rs_from_nut rs_from_nut_wsll) timeout:15 cntLimit:0 seektime:0 vRecv() return status=1 |
|
*** Target testing phase *** |
|
| 01:15:41 | Clear Captured Packets (Link0) |
|
*** Phase-1 1st message send *** |
|
| 01:15:41 |
vSend(Link0,isakmp_phase1_send_1st_agg) Send 1st message from HOST2(TN) |
|
Proposal Payload doesn't exist after SA. *** Phase-1 2nd message receive *** |
|
| 01:15:41 | vRecv(Link0,isakmp_phase1_recv_2nd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0 vRecv() return status=1 |
|
NG:Receive no packets OK:Phase-1 2nd message is not returned. Checking whether SIT_SECRECY is supported is correct. *** Target test finish *** |
|
| 01:15:46 | Stop Capturing Packets (Link0) |
| Target: Reset IKE SA entries: saddump | |
| 01:15:46 |
vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 saddump ''
Connected dell# dell# /usr/local/sbin/setkey -c <<EOD dump; flush; EOD ? dump; ? flush; ? EOD No SAD entries. dell# dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODdump;flush;EOD echo $status 0 dell# kill -TERM `head -1 /var/run/racoon.pid` dell# echo $status dell# echo $status 0 dell# /bin/rm -f /var/run/racoon.pid dell# dell# echo $status 0~ [EOT] |
| Target: Clear SPD entries: spddump | |
| 01:15:54 |
vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 spddump ''
Connected
dell#
dell# /usr/local/sbin/setkey -c <<EOD
spddump;
spdflush;
? spddump;
? spdflush;
EOD
? EOD
3ffe:501:ffff:101::11[any] 3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] any
in ipsec
esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
created: Mar 17 16:22:23 2006 lastused: Mar 17 16:22:23 2006
lifetime: 0(s) validtime: 0(s)
spid=18657 seq=0 pid=2730
refcnt=1
dell#
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspddump;spdflush;EOD
echo $status
0~
[EOT]
|
|
OK |
|
| 01:16:02 | End |
Frame_Ether (length:322) | Hdr_Ether (length:14) | | DestinationAddress = 00:90:99:7e:3e:52 | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:308) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 268 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:101::11 | | | DestinationAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52 | | Upp_UDP (length:268) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 268 | | | | Checksum = 3608 calc(3608) | | | Udp_ISAKMP (length:260) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = a0297a8d26656deb | | | | | ResponderCookie = 0000000000000000 | | | | | NextPayload = 1 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 4 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 260 | | | | Pld_ISAKMP_SA_IPsec_ANY (length:56) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 56 | | | | | DOI = 1 | | | | | Situation = 2 | | | | | data = | | | | | 0000002c 01010001 00000024 01010000 80010005 80020002 80030001 80040002 | | | | | 800b0001 000c0004 00007080 | | | | [Needless] (length:176) | | | | | data = | | | | | 0a000084 b8ce559b 296b481b e9ff3217 6bae442a ba01c867 be6aedcc 27cc36c4 | | | | | 6a696ac6 d5f69991 6414f92f c1f453b1 f240372e 30cd0373 5bc6b251 c3d48c42 | | | | | ea7d1211 83726c7a cf2ae1e5 cd1e8d14 80f616ee 4af30501 4021dec1 0aa04746 | | | | | 8bf7ed06 ca8e211e 48ed23b6 c9bb23b8 adc80df1 d9913c83 cd5ec100 483785eb | | | | | aab84c80 05000014 00000000 00000000 00000000 00000000 00000018 051101f4 | | | | | 3ffe0501 ffff0101 00000000 00000011