| No. | Title |
Result | Log | Script | Packet | Dump (bin) |
| Initialize |
|
|
|
|
|
| 1 | Initialization | PASS | X | X | X | Link0 |
| Initiator Test |
|
|
|
|
|
| 1 Phase I |
|
|
|
|
|
| 1.1 Aggressive mode |
|
|
|
|
|
| 1.1.1 pre-shared key |
|
|
|
|
|
| 1.1.1.1 Sending the first message |
|
|
|
|
|
| 1.1.1.1.1 Position of payload |
|
|
|
|
|
| 2 | Position of payload *** | PASS | X | X | X | Link0 |
| 1.1.1.1.2 ISAKMP Header |
|
|
|
|
|
| 3 | ISAKMP Header Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.3 Security Association Payload |
|
|
|
|
|
| 4 | SA Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.4 Proposal Payload |
|
|
|
|
|
| 5 | Proposal Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.5 Transform Payload |
|
|
|
|
|
| 1.1.1.1.5.1 Transform Payload Format check |
|
|
|
|
|
| 6 | Transform Payload Format *** | PASS | X | X | X | Link0 |
| 7 | Transform Payload Format(Multiple Transform Payload) *** | Not yet supported | X | X | X | Link0 |
| 1.1.1.1.5.2 Transform Payload SA Attributes check |
|
|
|
|
|
| 8 | Attributes include MD5 *** | Not yet supported | X | X | X | Link0 |
| 9 | Attributes include SHA *** | PASS | X | X | X | Link0 |
| 10 | Attributes include DES ** | Not yet supported | X | X | X | Link0 |
| 11 | Attributes include 3DES ** | PASS | X | X | X | Link0 |
| 12 | Attributes include AES ** | Not yet supported | X | X | X | Link0 |
| 13 | Attributes include PSK *** | PASS | X | X | X | Link0 |
| 14 | Attributes include RSA sign ** | Not yet supported | X | X | X | Link0 |
| 15 | Attributes include DH1 *** | Not yet supported | X | X | X | Link0 |
| 16 | Attributes include DH2 ** | PASS | X | X | X | Link0 |
| 17 | Attributes include DH5 | Not yet supported | X | X | X | Link0 |
| 18 | Attributes include DH14 | Not yet supported | X | X | X | Link0 |
| 1.1.1.1.6 Key Exchange Payload. |
|
|
|
|
|
| 19 | Key Exchange Payload Format + DH1 *** | Not yet supported | X | X | X | Link0 |
| 20 | Key Exchange Payload Format + DH2 ** | PASS | X | X | X | Link0 |
| 21 | Key Exchange Payload Format + DH5 | Not yet supported | X | X | X | Link0 |
| 22 | Key Exchange Payload Format + DH14 | Not yet supported | X | X | X | Link0 |
| 1.1.1.1.7 Nonce Payload |
|
|
|
|
|
| 23 | Nonce Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.8 Identification Payload |
|
|
|
|
|
| 24 | Identification Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.2 Sending the third message |
|
|
|
|
|
| 1.1.1.2.1 HASH Payload |
|
|
|
|
|
| 25 | HASH Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.3 Implementation of Aggressive mode with pre-shared key |
|
|
|
|
|
| 26 | Implementation of Aggressive mode with pre-shared key ** | PASS | X | X | X | Link0 |
| 1.1.2 RSA signature |
|
|
|
|
|
| 1.1.2.1 Sending the first message |
|
|
|
|
|
| 1.1.2.1.1 Certificate Request Payload |
|
|
|
|
|
| 27 | Certificate Request Payload Format *** | Not yet supported | X | X | X | Link0 |
| 1.1.2.2 Sending the third message |
|
|
|
|
|
| 1.1.2.2.1 Signature Payload |
|
|
|
|
|
| 28 | Signature Payload Format *** | Not yet supported | X | X | X | Link0 |
| 1.1.2.2.2 Certificate Payload |
|
|
|
|
|
| 29 | Certificate Payload Format *** | Not yet supported | X | X | X | Link0 |
| 1.1.2.3 Implementation of Aggressive Mode with RSA signatures |
|
|
|
|
|
| 30 | Implementation of Aggressive Mode with RSA signatures ** | Not yet supported | X | X | X | Link0 |
| 1.2 Payload Processing |
|
|
|
|
|
| 1.2.1 General Message Processing |
|
|
|
|
|
| 31 | Processing invalid ISAKMP Payload Length * | PASS | X | X | X | Link0 |
| 1.2.2 ISKAMP Header Processing |
|
|
|
|
|
| 32 | Processing invalid Responder Cookie field * | PASS | X | X | X | Link0 |
| 33 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 34 | Processing invalid Major Version field(major 15, minor 0) * | FAIL | X | X | X | Link0 |
| 35 | Processing invalid Minor Version field(major 1, minor 15) * | FAIL | X | X | X | Link0 |
| 36 | Processing invalid Exchange Type field * | PASS | X | X | X | Link0 |
| 37 | Processing invalid Flags field * | PASS | X | X | X | Link0 |
| 38 | Processing invalid Message ID field * | PASS | X | X | X | Link0 |
| 1.2.3 Generic Payload Header Processing |
|
|
|
|
|
| 39 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 40 | Processing invalid RESERVED field * | FAIL | X | X | X | Link0 |
| 1.2.4 Security Association Payload Processing |
|
|
|
|
|
| 41 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 42 | Processing invalid DOI field * | PASS | X | X | X | Link0 |
| 43 | Processing invalid Situation field * | PASS | X | X | X | Link0 |
| 44 | Processing invalid proposal(Encryption Algorithm) * | PASS | X | X | X | Link0 |
| 45 | Processing invalid proposal(Hash Algorithm) * | PASS | X | X | X | Link0 |
| 46 | Processing invalid proposal(Authentication method) * | PASS | X | X | X | Link0 |
| 47 | Processing invalid proposal(Diffie-Hellman Group) * | PASS | X | X | X | Link0 |
| 48 | Processing invalid proposal(Life Type) * | PASS | X | X | X | Link0 |
| 1.2.5 Proposal Payload Processing |
|
|
|
|
|
| 49 | Processing invalid Protocol-ID field * | PASS | X | X | X | Link0 |
| 50 | Processing invalid SPI field * | FAIL | X | X | X | Link0 |
| 51 | Processing invalid proposal * | FAIL | X | X | X | Link0 |
| 1.2.6 Transform Payload Processing |
|
|
|
|
|
| 52 | Processing invalid Transform-ID field * | PASS | X | X | X | Link0 |
| 53 | Processing invalid Transform Payload * | PASS | X | X | X | Link0 |
| 54 | Multiple Transform Payloads check(modify proposal) * | PASS | X | X | X | Link0 |
| 1.2.7 Key Exchange Payload Processing |
|
|
|
|
|
| 55 | Processing invalid Key Exchange Data field * | FAIL | X | X | X | Link0 |
| 1.2.8 Identification Payload Processing |
|
|
|
|
|
| 56 | Processing invalid ID type field * | PASS | X | X | X | Link0 |
| 57 | Not include Identification Payload * | PASS | X | X | X | Link0 |
| 58 | Invalid Identification Payload recieve * | PASS | X | X | X | Link0 |
| 1.2.9 Hash Payload Processing |
|
|
|
|
|
| 59 | Processing invalid Hash Payload * | PASS | X | X | X | Link0 |
| 60 | Processing invalid Hash Data field * | PASS | X | X | X | Link0 |
| 1.2.10 Signature Payload Processing |
|
|
|
|
|
| 61 | Processing invalid Signature Payload * | Not yet supported | X | X | X | Link0 |
| 62 | Processing invalid Signature Data field * | Not yet supported | X | X | X | Link0 |
| 1.2.11 Certificate Request Payload Processing |
|
|
|
|
|
| 63 | Processing invalid Certificate Encoding field * | Not yet supported | X | X | X | Link0 |
| 64 | Processing invalid Certificate Authority field * | Not yet supported | X | X | X | Link0 |
| 65 | Processing invalid Certificate Type with Certificate Authority * | Not yet supported | X | X | X | Link0 |
| 1.2.12 Certificate Payload Processing |
|
|
|
|
|
| 66 | Processing invalid Certificate Encoding field * | Not yet supported | X | X | X | Link0 |
| 67 | Processing invalid Certificate Data field * | Not yet supported | X | X | X | Link0 |
| 2 Phase II |
|
|
|
|
|
| 2.1 quick mode |
|
|
|
|
|
| 2.1.1 Sending the first message |
|
|
|
|
|
| 2.1.1.1 Encryption of payload |
|
|
|
|
|
| 68 | Encryption of ISAKMP payload *** | PASS | X | X | X | Link0 |
| 2.1.1.2 Position of payload |
|
|
|
|
|
| 69 | Position of payload *** | PASS | X | X | X | Link0 |
| 2.1.1.3 ISAKMP Header |
|
|
|
|
|
| 70 | ISAKMP Header Format *** | PASS | X | X | X | Link0 |
| 2.1.1.4 HASH(1) Payload |
|
|
|
|
|
| 71 | HASH Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.5 Security Association Payload |
|
|
|
|
|
| 72 | SA Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.6 Proposal Payload |
|
|
|
|
|
| 73 | Proposal Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.7 Transform Payload |
|
|
|
|
|
| 2.1.1.7.1 Transform Payload Format check |
|
|
|
|
|
| 74 | Transform Payload Format *** | PASS | X | X | X | Link0 |
| 75 | Transform Payload Format(Multiple Transform) *** | Not yet supported | X | X | X | Link0 |
| 2.1.1.7.2 Transform Payload SA Attributes check |
|
|
|
|
|
| 76 | ESP_DES,HMAC-MD5 *** | Not yet supported | X | X | X | Link0 |
| 77 | ESP_3DES,HMAC-MD5 ** | Not yet supported | X | X | X | Link0 |
| 78 | ESP_3DES,HMAC-SHA | PASS | X | X | X | Link0 |
| 79 | ESP_3DES,AES-XCBC-MAC | Not yet supported | X | X | X | Link0 |
| 80 | ESP_AES,HMAC-SHA | Not yet supported | X | X | X | Link0 |
| 81 | ESP_NULL,HMAC-MD5 *** | Not yet supported | X | X | X | Link0 |
| 82 | ESP_NULL,HMAC-SHA *** | Not yet supported | X | X | X | Link0 |
| 83 | ESP_NULL,AES-XCBC-MAC | Not yet supported | X | X | X | Link0 |
| 84 | ESP without Authentication Algorithm(ESP_DES) *** | Not yet supported | X | X | X | Link0 |
| 85 | ESP without Authentication Algorithm(ESP_3DES) *** | Not yet supported | X | X | X | Link0 |
| 86 | ESP without Authentication Algorithm(ESP_AES) | Not yet supported | X | X | X | Link0 |
| 2.1.1.8 Transform Payload w/ PFS |
|
|
|
|
|
| 2.1.1.8.1 PFS with DH |
|
|
|
|
|
| 87 | enable PFS with DH1 *** | Not yet supported | X | X | X | Link0 |
| 88 | enable PFS with DH2 ** | Not yet supported | X | X | X | Link0 |
| 89 | enable PFS with DH5 | Not yet supported | X | X | X | Link0 |
| 90 | enable PFS with DH14 | Not yet supported | X | X | X | Link0 |
| 2.1.1.8.2 consistent of multiple proposal |
|
|
|
|
|
| 91 | consistent of proposal(Diffie-Hellman Group(Transform Payload)) *** | Not yet supported | X | X | X | Link0 |
| 2.1.1.9 Key Exchange Payload w/ PFS |
|
|
|
|
|
| 92 | Key Exchange Payload Format +DH1 *** | Not yet supported | X | X | X | Link0 |
| 93 | Key Exchange Payload Format +DH2 ** | Not yet supported | X | X | X | Link0 |
| 94 | Key Exchange Payload Format +DH5 | Not yet supported | X | X | X | Link0 |
| 95 | Key Exchange Payload Format +DH14 | Not yet supported | X | X | X | Link0 |
| 2.1.1.10 Nonce Payload |
|
|
|
|
|
| 96 | Nonce Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.11 Key Exchange Payload w/o PFS |
|
|
|
|
|
| 97 | Key Exchange Payload w/o PFS | PASS | X | X | X | Link0 |
| 2.1.1.12 Identification Payload |
|
|
|
|
|
| 98 | Identification Payload Format(Transport mode) *** | PASS | X | X | X | Link0 |
| 99 | Identification Payload Format(Tunnel mode vs SGW) *** | Not yet supported | X | X | X | Link0 |
| 100 | Identification Payload Format(Tunnel mode vs HOST) *** | Not yet supported | X | X | X | Link0 |
| 2.1.2 Sending the third message |
|
|
|
|
|
| 2.1.2.1 HASH(3) Payload |
|
|
|
|
|
| 101 | HASH Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.3 Receiving the fourth message(Informational Exchange) |
|
|
|
|
|
| 102 | set Commit Bit(CONNECTED Notify Message) *** | Not yet supported | X | X | X | Link0 |
| 2.1.4 Implementation of Quick Mode |
|
|
|
|
|
| 103 | ESP_3DES(Transport mode) | Not yet supported | X | X | X | Link0 |
| 104 | ESP_3DES and HMAC-SHA(Transport mode) *** | PASS | X | X | X | Link0 |
| 105 | ESP_3DES and HMAC-SHA with PFS *** | Not yet supported | X | X | X | Link0 |
| 106 | ESP_3DES(Tunnel mode vs SGW) | Not yet supported | X | X | X | Link0 |
| 107 | ESP_3DES and HMAC-SHA(Tunnel mode vs SGW) *** | Not yet supported | X | X | X | Link0 |
| 108 | ESP_3DES(Tunnel mode vs HOST) | Not yet supported | X | X | X | Link0 |
| 109 | ESP_3DES and HMAC-SHA(Tunnel mode vs HOST) *** | Not yet supported | X | X | X | Link0 |
| 2.1.5 Modification of IPsec SA |
|
|
|
|
|
| 110 | Re-keying of IPsec SA | PASS | X | X | X | Link0 |
| 111 | Using new SA for outbound traffic ** | FAIL | X | X | X | Link0 |
| 112 | Accept both old and new SA for incoming traffic ** | FAIL | X | X | X | Link0 |
| 2.1.6 Anti-replay |
|
|
|
|
|
| 113 | Increasing Sequence Number | PASS | X | X | X | Link0 |
| 114 | Sequence Number Verification | Not yet supported | X | X | X | Link0 |
| 2.2 Payload Processing |
|
|
|
|
|
| 2.2.1 General Message Processing |
|
|
|
|
|
| 115 | Processing invalid ISAKMP Payload Length * | PASS | X | X | X | Link0 |
| 2.2.2 ISKAMP Header Processing |
|
|
|
|
|
| 116 | Processing invalid Responder Cookie field * | PASS | X | X | X | Link0 |
| 117 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 118 | Processing invalid Major Version field(major 15, minor 0)* | FAIL | X | X | X | Link0 |
| 119 | Processing invalid Minor Version field(major 1, minor 15) * | FAIL | X | X | X | Link0 |
| 120 | Processing invalid Exchange Type field * | PASS | X | X | X | Link0 |
| 121 | Processing invalid Flags field * | PASS | X | X | X | Link0 |
| 122 | Processing invalid Message ID field * | PASS | X | X | X | Link0 |
| 2.2.3 Generic Payload Header Processing |
|
|
|
|
|
| 123 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 124 | Processing invalid RESERVED field * | FAIL | X | X | X | Link0 |
| 2.2.4 Hash Payload Processing |
|
|
|
|
|
| 125 | Processing invalid Hash Payload * | PASS | X | X | X | Link0 |
| 126 | Processing invalid Hash Data field * | PASS | X | X | X | Link0 |
| 2.2.5 Security Association Payload Processing |
|
|
|
|
|
| 127 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 128 | Processing invalid DOI field * | PASS | X | X | X | Link0 |
| 129 | Processing invalid Situation field * | PASS | X | X | X | Link0 |
| 130 | Processing invalid proposal(ESP Authentication) * | PASS | X | X | X | Link0 |
| 131 | Processing invalid proposal(Diffie-Hellman Group) * | PASS | X | X | X | Link0 |
| 132 | Processing invalid proposal(Life Type) * | PASS | X | X | X | Link0 |
| 133 | Processing invalid proposal(Encapsulation Mode) * | PASS | X | X | X | Link0 |
| 2.2.6 Proposal Payload Processing |
|
|
|
|
|
| 134 | Processing invalid Protocol-ID field * | PASS | X | X | X | Link0 |
| 135 | Processing invalid SPI field * | FAIL | X | X | X | Link0 |
| 136 | Processing invalid proposal * | FAIL | X | X | X | Link0 |
| 2.2.7 Transform Payload Processing |
|
|
|
|
|
| 137 | Processing invalid Transform-ID field * | PASS | X | X | X | Link0 |
| 138 | Processing invalid Transform Payload * | PASS | X | X | X | Link0 |
| 139 | Multiple Transform Payloads check(modify proposal) * | PASS | X | X | X | Link0 |
| 2.2.8 Key Exchange Payload Processing |
|
|
|
|
|
| 140 | Processing invalid Key Exchange Data field * | FAIL | X | X | X | Link0 |
| 2.2.9 Identification Payload Processing |
|
|
|
|
|
| 141 | Processing invalid ID type field * | PASS | X | X | X | Link0 |
| 142 | Invalid Identification Payload * | PASS | X | X | X | Link0 |
| Responder Test |
|
|
|
|
|
| 1 Phase I |
|
|
|
|
|
| 1.1 Aggressive mode |
|
|
|
|
|
| 1.1.1 pre-shared key |
|
|
|
|
|
| 1.1.1.1 Sending the second message |
|
|
|
|
|
| 1.1.1.1.1 Position of payload |
|
|
|
|
|
| 143 | Position of payload *** | PASS | X | X | X | Link0 |
| 1.1.1.1.2 ISAKMP Header |
|
|
|
|
|
| 144 | ISAKMP Header Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.3 Security Association Payload |
|
|
|
|
|
| 145 | SA Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.4 Proposal Payload |
|
|
|
|
|
| 146 | Proposal Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.5 Transform Payload |
|
|
|
|
|
| 1.1.1.1.5.1 Transform Payload Format check |
|
|
|
|
|
| 147 | Transform Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.5.2 Transform Payload SA Attributes check |
|
|
|
|
|
| 148 | DES,MD5,PSK,DH1 *** | Not yet supported | X | X | X | Link0 |
| 149 | DES,SHA,PSK,DH2 ** | Not yet supported | X | X | X | Link0 |
| 150 | AES,SHA,PSK,DH2 | Not yet supported | X | X | X | Link0 |
| 151 | 3DES,MD5,PSK,DH2 ** | Not yet supported | X | X | X | Link0 |
| 152 | 3DES,SHA,PSK,DH2 | PASS | X | X | X | Link0 |
| 153 | 3DES,SHA,RSA sign,DH2 ** | Not yet supported | X | X | X | Link0 |
| 154 | 3DES,SHA,PSK,DH1 ** | Not yet supported | X | X | X | Link0 |
| 155 | 3DES,SHA,PSK,DH5 | Not yet supported | X | X | X | Link0 |
| 156 | 3DES,SHA,PSK,DH14 | Not yet supported | X | X | X | Link0 |
| 1.1.1.1.5.3 Select proposal |
|
|
|
|
|
| 157 | Multiple Transform Payloads(Select proposal) *** | PASS | X | X | X | Link0 |
| 1.1.1.1.6 Key Exchange Payload |
|
|
|
|
|
| 158 | Key Exchange Payload Format + DH1 *** | Not yet supported | X | X | X | Link0 |
| 159 | Key Exchange Payload Format + DH2 ** | PASS | X | X | X | Link0 |
| 160 | Key Exchange Payload Format + DH5 | Not yet supported | X | X | X | Link0 |
| 161 | Key Exchange Payload Format + DH14 | Not yet supported | X | X | X | Link0 |
| 1.1.1.1.7 Nonce Payload |
|
|
|
|
|
| 162 | Nonce Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.8 Identification Payload |
|
|
|
|
|
| 163 | Identification Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.1.9 HASH Payload |
|
|
|
|
|
| 164 | HASH Payload Format *** | PASS | X | X | X | Link0 |
| 1.1.1.2 Implementation of Aggressive mode with pre-shared key |
|
|
|
|
|
| 165 | Implementation of Aggressive mode with pre-shared key *** | PASS | X | X | X | Link0 |
| 1.1.1.3 Modification of ISAKMP SA |
|
|
|
|
|
| 166 | cookie field ** | PASS | X | X | X | Link0 |
| 1.1.2 RSA signature |
|
|
|
|
|
| 1.1.2.1 Sending the second message |
|
|
|
|
|
| 1.1.2.1.1 Signature Payload |
|
|
|
|
|
| 167 | Signature Payload Format *** | Not yet supported | X | X | X | Link0 |
| 1.1.2.1.2 Certificate Request Payload |
|
|
|
|
|
| 168 | Certificate Request Payload Format *** | Not yet supported | X | X | X | Link0 |
| 1.1.2.1.3 Certificate Payload |
|
|
|
|
|
| 169 | Certificate Payload Format *** | Not yet supported | X | X | X | Link0 |
| 1.1.2.2 Implementation of Aggressive mode with RSA signatures |
|
|
|
|
|
| 170 | Implementation of Aggressive Mode with RSA signatures ** | Not yet supported | X | X | X | Link0 |
| 1.2 Payload Processing |
|
|
|
|
|
| 1.2.1 General Message Processing |
|
|
|
|
|
| 171 | Processing invalid ISAKMP Payload Length * | PASS | X | X | X | Link0 |
| 1.2.2 ISKAMP Header Processing |
|
|
|
|
|
| 172 | Processing invalid Initiator Cookie field * | PASS | X | X | X | Link0 |
| 173 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 174 | Processing invalid Major Version field(major 15, minor 0) * | PASS | X | X | X | Link0 |
| 175 | Processing invalid Minor Version field(major 1, minor 15) * | PASS | X | X | X | Link0 |
| 176 | Processing invalid Exchange Type field * | PASS | X | X | X | Link0 |
| 177 | Processing invalid Flags field * | PASS | X | X | X | Link0 |
| 178 | Processing invalid Message ID field * | PASS | X | X | X | Link0 |
| 1.2.3 Generic Payload Header Processing |
|
|
|
|
|
| 179 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 180 | Processing invalid RESERVED field * | FAIL | X | X | X | Link0 |
| 1.2.4 Security Association Payload Processing |
|
|
|
|
|
| 181 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 182 | Processing invalid DOI field * | PASS | X | X | X | Link0 |
| 183 | Processing invalid Situation field * | PASS | X | X | X | Link0 |
| 184 | Processing invalid proposal(Encryption Algorithm) * | PASS | X | X | X | Link0 |
| 185 | Processing invalid proposal(Hash Algorithm) * | PASS | X | X | X | Link0 |
| 186 | Processing invalid proposal(Authentication method) * | PASS | X | X | X | Link0 |
| 187 | Processing invalid proposal(Diffie-Hellman Group) * | PASS | X | X | X | Link0 |
| 188 | Processing invalid proposal(Life Type) * | PASS | X | X | X | Link0 |
| 189 | IPSEC Situation Definition(SIT_SECRECY) * | PASS | X | X | X | Link0 |
| 190 | IPSEC Situation Definition(SIT_INTEGRITY) * | PASS | X | X | X | Link0 |
| 1.2.5 Proposal Payload Processing |
|
|
|
|
|
| 191 | Processing invalid Protocol-ID field * | PASS | X | X | X | Link0 |
| 192 | Processing invalid SPI field * | PASS | X | X | X | Link0 |
| 193 | Processing invalid proposal * | FAIL | X | X | X | Link0 |
| 1.2.6 Transform Payload Processing |
|
|
|
|
|
| 194 | Processing invalid Transform-ID field * | PASS | X | X | X | Link0 |
| 195 | Processing invalid Transform Payload * | PASS | X | X | X | Link0 |
| 196 | Multiple Transform Payloads check(reject proposal) * | PASS | X | X | X | Link0 |
| 1.2.7 Key Exchange Payload Processing |
|
|
|
|
|
| 197 | Processing invalid Key Exchange Data field * | FAIL | X | X | X | Link0 |
| 1.2.8 Identification Payload Processing |
|
|
|
|
|
| 198 | Processing invalid ID type field * | FAIL | X | X | X | Link0 |
| 199 | Not include Identification Payload * | PASS | X | X | X | Link0 |
| 200 | invalid Identification Payload recieve * | FAIL | X | X | X | Link0 |
| 1.2.9 Hash Payload Processing |
|
|
|
|
|
| 201 | Processing invalid Hash Payload * | PASS | X | X | X | Link0 |
| 202 | Processing invalid Hash Data field * | PASS | X | X | X | Link0 |
| 1.2.10 Signature Payload Processing |
|
|
|
|
|
| 203 | Processing invalid Signature Payload * | Not yet supported | X | X | X | Link0 |
| 204 | Processing invalid Signature Data field * | Not yet supported | X | X | X | Link0 |
| 1.2.11 Certificate Request Payload Processing |
|
|
|
|
|
| 205 | Processing invalid Certificate Encoding field * | Not yet supported | X | X | X | Link0 |
| 206 | Processing invalid Certificate Authority field * | Not yet supported | X | X | X | Link0 |
| 207 | Processing invalid Certificate Type with Certificate Authority * | Not yet supported | X | X | X | Link0 |
| 1.2.12 Certificate Payload Processing |
|
|
|
|
|
| 208 | Processing invalid Certificate Encoding field * | Not yet supported | X | X | X | Link0 |
| 209 | Processing invalid Certificate Data field * | Not yet supported | X | X | X | Link0 |
| 2 Phase II |
|
|
|
|
|
| 2.1 quick mode |
|
|
|
|
|
| 2.1.1 Sendign the second message |
|
|
|
|
|
| 2.1.1.1 Encryption of payload |
|
|
|
|
|
| 210 | Encryption of ISAKMP payload *** | PASS | X | X | X | Link0 |
| 2.1.1.2 Position of payload |
|
|
|
|
|
| 211 | Position of payload *** | PASS | X | X | X | Link0 |
| 2.1.1.3 ISAKMP Header |
|
|
|
|
|
| 212 | ISAKMP Header Format *** | PASS | X | X | X | Link0 |
| 2.1.1.4 HASH(2) Payload |
|
|
|
|
|
| 213 | HASH Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.5 Security Association Payload |
|
|
|
|
|
| 214 | SA Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.6 Proposal Payload |
|
|
|
|
|
| 215 | Proposal Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.7 Transform Payload |
|
|
|
|
|
| 2.1.1.7.1 Transform Payload Format check |
|
|
|
|
|
| 216 | Transform Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.7.2 Transform Payload SA Attributes check |
|
|
|
|
|
| 217 | ESP_DES,HMAC-MD5 *** | Not yet supported | X | X | X | Link0 |
| 218 | ESP_3DES,HMAC-MD5 ** | Not yet supported | X | X | X | Link0 |
| 219 | ESP_3DES,HMAC-SHA | PASS | X | X | X | Link0 |
| 220 | ESP_3DES,AES-XCBC-MAC | Not yet supported | X | X | X | Link0 |
| 221 | ESP_AES,HMAC-SHA | Not yet supported | X | X | X | Link0 |
| 222 | ESP_NULL,HMAC-MD5 *** | Not yet supported | X | X | X | Link0 |
| 223 | ESP_NULL,HMAC-SHA *** | Not yet supported | X | X | X | Link0 |
| 224 | ESP_NULL,AES-XCBC-MAC | Not yet supported | X | X | X | Link0 |
| 225 | ESP without Authentication Algorithm(ESP_DES) *** | Not yet supported | X | X | X | Link0 |
| 226 | ESP without Authentication Algorithm(ESP_3DES) *** | Not yet supported | X | X | X | Link0 |
| 227 | ESP without Authentication Algorithm(ESP_AES) | Not yet supported | X | X | X | Link0 |
| 2.1.1.7.3 Select proposal |
|
|
|
|
|
| 228 | Multiple Proposal and Transform Payloads (select proposal) *** | PASS | X | X | X | Link0 |
| 2.1.1.8 Transform Payload w/ PFS |
|
|
|
|
|
| 229 | enable PFS with DH1 *** | Not yet supported | X | X | X | Link0 |
| 230 | enable PFS with DH2 ** | Not yet supported | X | X | X | Link0 |
| 231 | enable PFS with DH5 | Not yet supported | X | X | X | Link0 |
| 232 | enable PFS with DH14 | Not yet supported | X | X | X | Link0 |
| 2.1.1.9 Key Exchange Payload w/ PFS |
|
|
|
|
|
| 233 | Key Exchange Payload Format + DH1 *** | Not yet supported | X | X | X | Link0 |
| 234 | Key Exchange Payload Format +DH2 ** | Not yet supported | X | X | X | Link0 |
| 235 | Key Exchange Payload Format +DH5 | Not yet supported | X | X | X | Link0 |
| 236 | Key Exchange Payload Format +DH14 | Not yet supported | X | X | X | Link0 |
| 2.1.1.10 Nonce Payload |
|
|
|
|
|
| 237 | Nonce Payload Format *** | PASS | X | X | X | Link0 |
| 2.1.1.11 Key Exchange Payload w/o PFS |
|
|
|
|
|
| 238 | Key Exchange Payload w/o PFS | PASS | X | X | X | Link0 |
| 2.1.1.12 Identification Payload |
|
|
|
|
|
| 239 | Identification Payload Format(Transport mode) *** | PASS | X | X | X | Link0 |
| 240 | Identification Payload Format(Tunnel mode vs SGW) *** | Not yet supported | X | X | X | Link0 |
| 241 | Identification Payload Format(Tunnel mode vs HOST) *** | Not yet supported | X | X | X | Link0 |
| 2.1.2 Receiving the fourth message(Informational Exchange) |
|
|
|
|
|
| 242 | set Commit Bit(CONNECTED Notify Message) *** | Not yet supported | X | X | X | Link0 |
| 2.1.3 Implementation of Quick Mode |
|
|
|
|
|
| 243 | ESP_3DES(Transport mode) | Not yet supported | X | X | X | Link0 |
| 244 | ESP_3DES and HMAC-SHA(Transport mode) *** | PASS | X | X | X | Link0 |
| 245 | ESP_3DES and HMAC-SHA with PFS *** | Not yet supported | X | X | X | Link0 |
| 246 | ESP_3DES(Tunnel mode vs SGW) | Not yet supported | X | X | X | Link0 |
| 247 | ESP_3DES and HMAC-SHA(Tunnel mode vs SGW) *** | Not yet supported | X | X | X | Link0 |
| 248 | ESP_3DES(Tunnel mode vs HOST) | Not yet supported | X | X | X | Link0 |
| 249 | ESP_3DES and HMAC-SHA(Tunnel mode vs HOST) *** | Not yet supported | X | X | X | Link0 |
| 2.1.4 Modification of IPsec SA |
|
|
|
|
|
| 250 | Using new SA for outbound traffic ** | FAIL | X | X | X | Link0 |
| 251 | Accept both old and new SA for incoming traffic ** | FAIL | X | X | X | Link0 |
| 2.1.5 Anti-replay |
|
|
|
|
|
| 252 | Increasing Sequence Number | PASS | X | X | X | Link0 |
| 253 | Sequence Number Verification | Not yet supported | X | X | X | Link0 |
| 2.2 Payload Processing |
|
|
|
|
|
| 2.2.1 General Message Processing |
|
|
|
|
|
| 254 | Processing invalid ISAKMP Payload Length * | PASS | X | X | X | Link0 |
| 2.2.2 ISKAMP Header Processing |
|
|
|
|
|
| 255 | Processing invalid Initiator Cookie field * | PASS | X | X | X | Link0 |
| 256 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 257 | Processing invalid Major Version field(major 15, minor 0) * | FAIL | X | X | X | Link0 |
| 258 | Processing invalid Minor Version field(major 1, minor 15) * | FAIL | X | X | X | Link0 |
| 259 | Processing invalid Exchange Type field * | PASS | X | X | X | Link0 |
| 260 | Processing invalid Flags field * | PASS | X | X | X | Link0 |
| 261 | Processing invalid Message ID field * | PASS | X | X | X | Link0 |
| 2.2.3 Generic Payload Header Processing |
|
|
|
|
|
| 262 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 263 | Processing invalid RESERVED field * | FAIL | X | X | X | Link0 |
| 2.2.4 Hash Payload Processing |
|
|
|
|
|
| 264 | Processing invalid Hash Payload * | PASS | X | X | X | Link0 |
| 265 | Processing invalid Hash Data field * | PASS | X | X | X | Link0 |
| 2.2.5 Security Association Payload Processing |
|
|
|
|
|
| 266 | Processing invalid Next Payload field * | PASS | X | X | X | Link0 |
| 267 | Processing invalid DOI field * | PASS | |