Test Information

TitleAccept both old and new SA for incoming traffic **
CommandLine./ENODE/I_RFC2408_5_3_2_2.seq -pkt ./ENODE/I_RFC2408_5_3_2_2.def test_phase=2 test_type=BASIC -log 111.html -ti Accept both old and new SA for incoming traffic **
TestVersionundefined
ToolVersionREL_3_0_8
Start2006/03/16 15:12:05
Tn/usr/local/v6eval//etc//tn.def
Nu/usr/local/v6eval//etc//nut.def
Pkt./ENODE/I_RFC2408_5_3_2_2.def
Systemfreebsd-i386
TargetNamefreebsd5.4
HostNameracoon
Typehost

Test Sequence Execution Log

15:12:06Start

*** Target IKE initialization phase ***
Target: Reset IKE SA entries: saddump
15:12:06 vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 saddump ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
dump;
flush;
EOD

? dump;
? flush;
? EOD
No SAD entries.
dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODdump;flush;EOD
echo $status
0
dell# kill -TERM `head -1 /var/run/racoon.pid`
head: /var/run/racoon.pid: No such file or directory

dell# 
echo $status
dell# echo $status
1
dell# /bin/rm -f /var/run/racoon.pid

dell# 
echo $status
dell# echo $status
0~
[EOT]

Target: Clear SPD entries: spddump
15:12:13 vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 spddump ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
spddump;
spdflush;
? spddump;
? spdflush;
EOD

? EOD
No SPD entries.

dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspddump;spdflush;EOD
echo $status
0~
[EOT]

Target: Set SPD entries: src=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dst=3ffe:501:ffff:101::11 upperspec=any direction=out protocol=PROTO_IPSEC_ESP mode=Transport
15:12:21 vRemote(ipsecSetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecSetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 src=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dst=3ffe:501:ffff:101::11 upperspec=any direction=out protocol=PROTO_IPSEC_ESP mode=Transport ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
spdadd 3ffe:501:ffff:100:290:99ff:fe7e:3e52 3ffe:501:ffff:101::11
       any
       -P out ipsec
       esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
;
spddump;
EOD

? spdadd 3ffe:501:ffff:100:290:99ff:fe7e:3e52 3ffe:501:ffff:101::11
       any
       -P out ipsec
       esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
;
spddump;
EOD

?        any
?        -P out ipsec
?        esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::1 1/require
? ;
? spddump;
? EOD
3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] 3ffe:501:ffff:101::11[any] any
        out ipsec
        esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
        created: Mar 16 06:19:36 2006  lastused: Mar 16 06:19:36 2006
        lifetime: 0(s) validtime: 0(s)
        spid=17815 seq=0 pid=1587
        refcnt=1
dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspdadd 3ffe:501:ffff:100:290:99ff:fe7e:3e52 3ffe:501:ffff:101::11       any       -P out ipsec       esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require;spddump;EOD
echo $status
0~
[EOT]

Target: Set SPD entries: dst=3ffe:501:ffff:100:290:99ff:fe7e:3e52 src=3ffe:501:ffff:101::11 upperspec=any direction=in protocol=PROTO_IPSEC_ESP mode=Transport
15:12:29 vRemote(ipsecSetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecSetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 dst=3ffe:501:ffff:100:290:99ff:fe7e:3e52 src=3ffe:501:ffff:101::11 upperspec=any direction=in protocol=PROTO_IPSEC_ESP mode=Transport ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
spdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52
       any
       -P in ipsec
       esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
;
spddump;
EOD

? spdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52
       any
       -P in ipsec
       esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
;
spddump;
EOD

?        any
?        -P in ipsec
?        esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e5 2/require
? ;
? spddump;
? EOD
3ffe:501:ffff:101::11[any] 3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] any
        in ipsec
        esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
        created: Mar 16 06:19:44 2006  lastused: Mar 16 06:19:44 2006
        lifetime: 0(s) validtime: 0(s)
        spid=17816 seq=1 pid=1588
        refcnt=1
3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] 3ffe:501:ffff:101::11[any] any
        out ipsec
        esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
        created: Mar 16 06:19:36 2006  lastused: Mar 16 06:19:36 2006
        lifetime: 0(s) validtime: 0(s)
        spid=17815 seq=0 pid=1588
        refcnt=1
dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspdadd 3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52       any       -P in ipsec       esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require;spddump;EOD
echo $status
0~
[EOT]

Target: Set IKE SA entries: dst=3ffe:501:ffff:101::11 dst_port=500 exchange_mode=main doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:101::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 ph2_dst_id=3ffe:501:ffff:101::11 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=60 ph2_p1_t1_lt_unit=seconds ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA
15:12:36 vRemote(ikeSetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeSetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 dst=3ffe:501:ffff:101::11 dst_port=500 exchange_mode=main doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:101::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 ph2_dst_id=3ffe:501:ffff:101::11 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=60 ph2_p1_t1_lt_unit=seconds ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA ''
Connected

dell# 
dell# ~[set] echocheck

dell# 
dell# ~[put] freebsd-i386.psk.txt /tmp/psk.txt
D
dell# 

dell# 
dell# /bin/chmod 600 /tmp/psk.txt
dell# echo $status
0
dell# ~[set] echocheck

dell# 
dell# ~[put] freebsd-i386.ike.conf /tmp/ike.conf
Ddell# 
dell# 
dell# test -f /var/run/racoon.pid &&kill -TERM `head -1 /var/run/racoon.pid`

dell# 
echo $status
dell# echo $status
1
dell# /usr/local/sbin/racoon -f /tmp/ike.conf

dell# 
echo $status
dell# echo $status
0~
[EOT]
15:12:49 vRemote(ikeEnable.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeEnable.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 ''


*** Target initialization phase ***
15:12:49Start Capturing Packets (Link0)
15:12:49 vRecv(Link0,rs_from_nut rs_from_nut_wsll) timeout:15 cntLimit:0 seektime:0
vRecv() return status=1

*** Target pre-test seaquence ***
15:13:04Clear Captured Packets (Link0)

*** Phase-1 1st message recv ***
HOST1(NUT) send ICMP to HOST2(TN)
15:13:04 vRemoteAsync(ping6.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ping6.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 count=20 interval=3 if=rl0 addr=3ffe:501:ffff:101::11''

Link to remote control log
15:13:04 vRecv(Link0,isakmp_phase1_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:10 cntLimit:0 seektime:0
Receive Neighbor Solicitation from HOST-1(NUT)
15:13:09 vSend(Link0,na_llt)
Send Neighbor Advertisement(TN)
15:13:09 vRecv(Link0,isakmp_phase1_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:10 cntLimit:0 seektime:0
Recv 1st message from HOST1(NUT)

OK payload_check
*** Phase-1 2nd message send ***
15:13:09Clear Captured Packets (Link0)
15:13:09 vSend(Link0,isakmp_phase1_send_2nd)
Send 2nd message from HOST2(TN)

*** Phase-1 3rd message recv ***
15:13:09 vRecv(Link0,isakmp_phase1_recv_3rd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0
Recv 3rd message from HOST1(NUT)

OK payload_check
*** Phase-1 4th message send ***
15:13:09Clear Captured Packets (Link0)
15:13:09 vSend(Link0,isakmp_phase1_send_4th)
Send 4th message from HOST2(TN)

*** Phase-1 5th message recv ***
15:13:10 vRecv(Link0,isakmp_phase1_recv_5th ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0
Recv 5th message from HOST1(NUT)

OK payload_check
*** Phase-1 6th message send ***
15:13:10Clear Captured Packets (Link0)
15:13:10 vSend(Link0,isakmp_phase1_send_6th)
Send 6th message from HOST2(TN)

*** Target testing phase start ***
*** Phase-2 1st message recv ***
15:13:10 vRecv(Link0,isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0
recv unexpect packet at 15:13:10
Recv Phase-2 1st message (HDR*, HASH(1), SA, Ni, *, *) from HOST1(NUT)

OK payload_check
*** Phase-2 2nd message send ***
15:13:11Clear Captured Packets (Link0)
15:13:11 vSend(Link0,isakmp_phase2_send_2nd)
Send Phase-2 2nd message (HDR*, HASH(2), SA, Nr) from HOST2(TN)

*** Phase-2 3rd message recv ***
15:13:11 vRecv(Link0,isakmp_phase2_recv_3rd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0
Recv Phase-2 3rd message HDR*, HASH(3) from HOST1(NUT)

OK payload_check
*** 1st IPsec SA is established ***
*** The first IPsec transmission ***
15:13:11 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:0 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 0 ##
*** Encrypted Echo Reply message recv 1 ***
*** Re-key testing phase start ***
15:13:11 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 3 ##
*** Encrypted Echo Request message recv 2 ***
15:13:14 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 6 ##
*** Encrypted Echo Request message recv 3 ***
15:13:17 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 9 ##
*** Encrypted Echo Request message recv 4 ***
15:13:20 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 12 ##
*** Encrypted Echo Request message recv 5 ***
15:13:23 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 15 ##
*** Encrypted Echo Request message recv 6 ***
15:13:26 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 18 ##
*** Encrypted Echo Request message recv 7 ***
15:13:29 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 21 ##
*** Encrypted Echo Request message recv 8 ***
15:13:32 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 24 ##
*** Encrypted Echo Request message recv 9 ***
15:13:35 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 27 ##
*** Encrypted Echo Request message recv 10 ***
15:13:38 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 30 ##
*** Encrypted Echo Request message recv 11 ***
15:13:41 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Neighbor Solicitation from HOST-1(NUT)
15:13:44 vSend(Link0,na_ll_llt)
Send Neighbor Advertisement(TN)
15:13:44 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 33 ##
*** Encrypted Echo Request message recv 12 ***
15:13:44 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 36 ##
*** Encrypted Echo Request message recv 13 ***
15:13:47 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 39 ##
*** Encrypted Echo Request message recv 14 ***
15:13:50 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 42 ##
*** Encrypted Echo Request message recv 15 ***
15:13:53 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 45 ##
*** Encrypted Echo Request message recv 16 ***
15:13:56 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
Receive Encrypted Echo Request from HOST-1(NUT)

## 1st SA elapsed time: 48 ##
*** Encrypted Echo Request message recv 17 ***
15:13:59 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:1 seektime:0
!!! ISAKMP PayloadLength decode(37759) over remain size(88)
Recv Phase-2 1st message (HDR*, HASH(1), SA, Ni, *, *) from HOST1(NUT)

OK payload_check
## 1st SA elapsed time: 49 ##
*** Re-Key 1st message recv ***
*** Re-Key 2nd message send ***
15:14:00Clear Captured Packets (Link0)
15:14:00 vSend(Link0,isakmp_phase2_send_2nd)
Send Phase-2 2nd message (HDR*, HASH(2), SA, Nr) from HOST2(TN)

*** Re-Key 3rd message recv ***
15:14:00 vRecv(Link0,isakmp_phase2_recv_3rd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0
Recv Phase-2 3rd message HDR*, HASH(3) from HOST1(NUT)

OK payload_check
*** 2nd IPsec SA is established ***
*** Encrypted Echo Request message recv using 2nd IPsec SA ***
15:14:00 vRecv(Link0,echo_request_recv_esp_trans_net0host1_net1host2 ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:3 cntLimit:0 seektime:0
!!! ESP Padding size(226) over remain size(14)
recv unexpect packet at 15:14:02
vRecv() return status=1

## 1st SA elapsed time: 52 ##
## 2nd SA elapsed time: 3 ##
15:14:03 vRemoteAsyncWait()

Link to remote control start point
sleep 3 [sec] for escaping critical point of asynchronous remoteconf.

Connected

dell# 
dell# /sbin/ping6 -n -c 20 -i 3 -h 64 -s 2 -p 00 -I rl0 3ffe:501:ffff:101::11
PATTERN: 0x00
PING6(50=40+8+2 bytes) 3ffe:501:ffff:100:290:99ff:fe7e:3e52 --> 3ffe:501:ffff:101::11

~
[EOT]

Target: Reset IKE SA entries: saddump
15:14:03 vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 saddump ''
Connected



--- 3ffe:501:ffff:101::11 ping6 statistics ---
20 packets transmitted, 0 packets received, 100.0% packet loss

dell# 
dell# 
dell# 
dell# 
/usr/local/sbin/setkey -c <<EOD
dump;
flush;
EOD

dell# /usr/local/sbin/setkey -c <<EOD
dump;
flush;
EOD

? dump;
? flush;
? EOD
3ffe:501:ffff:100:290:99ff:fe7e:3e52 3ffe:501:ffff:101::11 
        esp mode=transport spi=4097(0x00001001) reqid=0(0x00000000)
        E: 3des-cbc  b678f523 38fdd7c3 a4c491bf f28d474a eefc518a f5e1db54
        A: hmac-sha1  afbdfeb3 143bc02a f3328d2f 5caae33b f066896a
        seq=0x00000000 replay=4 flags=0x00000000 state=mature 
        created: Mar 16 06:21:15 2006   current: Mar 16 06:21:33 2006
        diff: 18(s)     hard: 60(s)     soft: 48(s)
        last:                           hard: 0(s)      soft: 0(s)
        current: 0(bytes)       hard: 0(bytes)  soft: 0(bytes)
        allocated: 0    hard: 0 soft: 0
        sadb_seq=2 pid=1601 refcnt=1
3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52 
        esp mode=transport spi=1519930(0x0017313a) reqid=0(0x00000000)
        E: 3des-cbc  1568651c b0220643 3562fcd4 f468139a ff39bc0f fb2981b0
        A: hmac-sha1  d33eaccc 568cce83 6ba69271 5f0fa15f 59617be9
        seq=0x00000000 replay=4 flags=0x00000000 state=mature 
        created: Mar 16 06:21:15 2006   current: Mar 16 06:21:33 2006
        diff: 18(s)     hard: 60(s)     soft: 48(s)
        last:                           hard: 0(s)      soft: 0(s)
        current: 0(bytes)       hard: 0(bytes)  soft: 0(bytes)
        allocated: 0    hard: 0 soft: 0
        sadb_seq=0 pid=1601 refcnt=1
dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODdump;flush;EOD
echo $status
0
dell# kill -TERM `head -1 /var/run/racoon.pid`

dell# 
dell# echo $status
0
dell# /bin/rm -f /var/run/racoon.pid

dell# 
dell# echo $status
0~
[EOT]

Target: Clear SPD entries: spddump
15:14:25 vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 spddump ''
Connected

dell# 
dell# /usr/local/sbin/setkey -c <<EOD
spddump;
spdflush;? spddump;

EOD

? spdflush;
EOD

? EOD
3ffe:501:ffff:101::11[any] 3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] any
        in ipsec
        esp/transport/3ffe:501:ffff:101::11-3ffe:501:ffff:100:290:99ff:fe7e:3e52/require
        created: Mar 16 06:19:44 2006  lastused: Mar 16 06:19:44 2006
        lifetime: 0(s) validtime: 0(s)
        spid=17816 seq=1 pid=1604
        refcnt=1
3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] 3ffe:501:ffff:101::11[any] any
        out ipsec
        esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
        created: Mar 16 06:19:36 2006  lastused: Mar 16 06:21:20 2006
        lifetime: 0(s) validtime: 0(s)
        spid=17815 seq=0 pid=1604
        refcnt=1
dell# 
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspddump;spdflush;EOD
echo $status
0~
[EOT]
15:14:33End

Packet Reverse Log