| Title | Processing invalid Key Exchange Data field * |
| CommandLine | ./ENODE/I_RFC2408_5_7_2_1_P2_KE.seq -pkt ./ENODE/I_RFC2408_5_7_2_1_P2_KE.def test_phase=2 test_type=BASIC -log 139.html -ti Processing invalid Key Exchange Data field * |
| TestVersion | undefined |
| ToolVersion | REL_3_0_8 |
| Start | 2006/03/16 15:54:35 |
| Tn | /usr/local/v6eval//etc//tn.def |
| Nu | /usr/local/v6eval//etc//nut.def |
| Pkt | ./ENODE/I_RFC2408_5_7_2_1_P2_KE.def |
| System | freebsd-i386 |
| TargetName | freebsd5.4 |
| HostName | racoon |
| Type | host |
| 15:54:36 | Start |
|
*** Target IKE initialization phase *** Target: Reset IKE SA entries: saddump |
|
| 15:54:36 |
vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 saddump ''
Connected dell# dell# /usr/local/sbin/setkey -c <<EOD dump; flush; EOD ? dump; ? flush; ? EOD No SAD entries. dell# dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODdump;flush;EOD echo $status 0 dell# kill -TERM `head -1 /var/run/racoon.pid` head: /var/run/racoon.pid: No such file or directory dell# echo $status dell# echo $status 1 dell# /bin/rm -f /var/run/racoon.pid dell# echo $status dell# echo $status 0~ [EOT] |
| Target: Clear SPD entries: spddump | |
| 15:54:44 |
vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 spddump ''
Connected dell# dell# /usr/local/sbin/setkey -c <<EOD spddump; spdflush; ? spddump; ? spdflush; EOD ? EOD No SPD entries. dell# dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspddump;spdflush;EOD echo $status 0~ [EOT] |
| Target: Set SPD entries: src=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dst=3ffe:501:ffff:101::11 upperspec=any direction=out protocol=PROTO_IPSEC_ESP mode=Transport | |
| 15:54:52 |
vRemote(ipsecSetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecSetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 src=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dst=3ffe:501:ffff:101::11 upperspec=any direction=out protocol=PROTO_IPSEC_ESP mode=Transport ''
Connected
dell#
dell# /usr/local/sbin/setkey -c <<EOD
spdadd 3ffe:501:ffff:100:290:99ff:fe7e:3e52 3ffe:501:ffff:101::11
any
-P out ipsec
esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
;
spddump;
EOD
? spdadd 3ffe:501:ffff:100:290:99ff:fe7e:3e52 3ffe:501:ffff:101::11
any
-P out ipsec
esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
;
spddump;
EOD
? any
? -P out ipsec
? esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::1 1/require
? ;
? spddump;
? EOD
3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] 3ffe:501:ffff:101::11[any] any
out ipsec
esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
created: Mar 16 07:02:07 2006 lastused: Mar 16 07:02:07 2006
lifetime: 0(s) validtime: 0(s)
spid=18227 seq=0 pid=2120
refcnt=1
dell#
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspdadd 3ffe:501:ffff:100:290:99ff:fe7e:3e52 3ffe:501:ffff:101::11 any -P out ipsec esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require;spddump;EOD
echo $status
0~
[EOT]
|
| Target: Set IKE SA entries: dst=3ffe:501:ffff:101::11 dst_port=500 exchange_mode=main doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:101::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 ph2_dst_id=3ffe:501:ffff:101::11 ph2_src_upper=any ph2_dst_upper=any pfs_group=2 ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA | |
| 15:55:00 |
vRemote(ikeSetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeSetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 dst=3ffe:501:ffff:101::11 dst_port=500 exchange_mode=main doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:101::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100:290:99ff:fe7e:3e52 ph2_dst_id=3ffe:501:ffff:101::11 ph2_src_upper=any ph2_dst_upper=any pfs_group=2 ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA ''
Connected dell# dell# ~[set] echocheck dell# dell# ~[put] freebsd-i386.psk.txt /tmp/psk.txt D dell# dell# dell# /bin/chmod 600 /tmp/psk.txt dell# echo $status 0 dell# ~[set] echocheck dell# dell# ~[put] freebsd-i386.ike.conf /tmp/ike.conf Ddell# dell# dell# test -f /var/run/racoon.pid &&kill -TERM `head -1 /var/run/racoon.pid` dell# echo $status dell# echo $status 1 dell# /usr/local/sbin/racoon -f /tmp/ike.conf dell# echo $status dell# echo $status 0~ [EOT] |
| 15:55:13 | vRemote(ikeEnable.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeEnable.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 '' |
|
*** Target initialization phase *** |
|
| 15:55:13 | Start Capturing Packets (Link0) |
| 15:55:13 | vRecv(Link0,rs_from_nut rs_from_nut_wsll) timeout:15 cntLimit:0 seektime:0 vRecv() return status=1 |
|
*** Target pre-test seaquence *** |
|
| 15:55:28 | Clear Captured Packets (Link0) |
|
*** Phase-1 1st message recv *** HOST1(NUT) send ICMP to HOST2(TN) |
|
| 15:55:28 |
vRemoteAsync(ping6.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ping6.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 count=10 interval=1 if=rl0 addr=3ffe:501:ffff:101::11''
Link to remote control log |
| 15:55:28 | vRecv(Link0,isakmp_phase1_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:10 cntLimit:0 seektime:0 Recv 1st message from HOST1(NUT) |
|
OK payload_check *** Phase-1 2nd message send *** |
|
| 15:55:32 | Clear Captured Packets (Link0) |
| 15:55:32 |
vSend(Link0,isakmp_phase1_send_2nd) Send 2nd message from HOST2(TN) |
|
*** Phase-1 3rd message recv *** |
|
| 15:55:32 | vRecv(Link0,isakmp_phase1_recv_3rd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0 Recv 3rd message from HOST1(NUT) |
|
OK payload_check *** Phase-1 4th message send *** |
|
| 15:55:32 | Clear Captured Packets (Link0) |
| 15:55:32 |
vSend(Link0,isakmp_phase1_send_4th) Send 4th message from HOST2(TN) |
|
*** Phase-1 5th message recv *** |
|
| 15:55:32 | vRecv(Link0,isakmp_phase1_recv_5th ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0 Recv 5th message from HOST1(NUT) |
|
OK payload_check *** Phase-1 6th message send *** |
|
| 15:55:32 | Clear Captured Packets (Link0) |
| 15:55:33 |
vSend(Link0,isakmp_phase1_send_6th) Send 6th message from HOST2(TN) |
|
*** Target testing phase start *** *** Phase-2 1st message recv *** |
|
| 15:55:33 | vRecv(Link0,isakmp_phase2_recv ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0 recv unexpect packet at 15:55:33 Recv Phase-2 1st message (HDR*, HASH(1), SA, Ni, *, *) from HOST1(NUT) |
|
****OK payload_check payload_check_Transform OK payload_check *** Phase-2 2nd message send *** |
|
| 15:55:34 | Clear Captured Packets (Link0) |
| 15:55:34 |
vSend(Link0,isakmp_phase2_send_2nd) Send Phase-2 2nd message (HDR*, HASH(2), SA, Nr) from HOST2(TN) |
|
*** Phase-2 3rd message recv *** |
|
| 15:55:34 | vRecv(Link0,isakmp_phase2_recv_3rd ns_uni rs_from_nut rs_from_nut_wsll ns_uni_tll_sll ns_uni_sll ns_multi_llt ns_multi) timeout:5 cntLimit:0 seektime:0 Recv Phase-2 3rd message HDR*, HASH(3) from HOST1(NUT) |
|
****OK payload_check payload_check_Hash OK payload_check NG:Phase-2 3rd message is returned. |
|
| 15:55:34 |
vRemoteAsyncWait()
Link to remote control start point sleep 3 [sec] for escaping critical point of asynchronous remoteconf. Connected dell# dell# /sbin/ping6 -n -c 10 -i 1 -h 64 -s 2 -p 00 -I rl0 3ffe:501:ffff:101::11 PATTERN: 0x00 PING6(50=40+8+2 bytes) 3ffe:501:ffff:100:290:99ff:fe7e:3e52 --> 3ffe:501:ffff:101::11 ~ [EOT] |
| Target: Reset IKE SA entries: saddump | |
| 15:55:49 |
vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 saddump ''
Connected
--- 3ffe:501:ffff:101::11 ping6 statistics ---
10 packets transmitted, 0 packets received, 100.0% packet loss
dell#
dell#
dell#
/usr/local/sbin/setkey -c <<EOD
dump;
flush;
EOD
dell# /usr/local/sbin/setkey -c <<EOD
dump;
flush;
EOD
? dump;
? flush;
? EOD
3ffe:501:ffff:100:290:99ff:fe7e:3e52 3ffe:501:ffff:101::11
esp mode=transport spi=4096(0x00001000) reqid=0(0x00000000)
E: 3des-cbc ed4cc6c5 fb82562f 7ff97871 96d46c10 ac30157c cbb13b0c
A: hmac-sha1 739c290b 9909048a e2d311e1 7c50c162 92553c35
seq=0x00000008 replay=4 flags=0x00000000 state=mature
created: Mar 16 07:02:48 2006 current: Mar 16 07:03:07 2006
diff: 19(s) hard: 28800(s) soft: 23040(s)
last: Mar 16 07:02:55 2006 hard: 0(s) soft: 0(s)
current: 672(bytes) hard: 0(bytes) soft: 0(bytes)
allocated: 8 hard: 0 soft: 0
sadb_seq=1 pid=2128 refcnt=2
3ffe:501:ffff:101::11 3ffe:501:ffff:100:290:99ff:fe7e:3e52
esp mode=transport spi=243006386(0x0e7bfbb2) reqid=0(0x00000000)
E: 3des-cbc 6962d85c ddeaf360 cef794d3 e9a4ec88 d9955b03 8c5c1da6
A: hmac-sha1 ef1ce115 9165cb73 ae2e2dc6 51d7e33f 51ebd39a
seq=0x00000000 replay=4 flags=0x00000000 state=mature
created: Mar 16 07:02:48 2006 current: Mar 16 07:03:07 2006
diff: 19(s) hard: 28800(s) soft: 23040(s)
last: hard: 0(s) soft: 0(s)
current: 0(bytes) hard: 0(bytes) soft: 0(bytes)
allocated: 0 hard: 0 soft: 0
sadb_seq=0 pid=2128 refcnt=1
dell#
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODdump;flush;EOD
echo $status
0
dell# kill -TERM `head -1 /var/run/racoon.pid`
dell#
echo $status
dell# echo $status
0
dell# /bin/rm -f /var/run/racoon.pid
dell#
dell# echo $status
0~
[EOT]
|
| Target: Clear SPD entries: spddump | |
| 15:55:59 |
vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d ucom0 -o 1 spddump ''
Connected
dell#
dell# /usr/local/sbin/setkey -c <<EOD
spddump;
spdflush;
? spddump;
? spdflush;
EOD
? EOD
3ffe:501:ffff:100:290:99ff:fe7e:3e52[any] 3ffe:501:ffff:101::11[any] any
out ipsec
esp/transport/3ffe:501:ffff:100:290:99ff:fe7e:3e52-3ffe:501:ffff:101::11/require
created: Mar 16 07:02:07 2006 lastused: Mar 16 07:02:55 2006
lifetime: 0(s) validtime: 0(s)
spid=18227 seq=0 pid=2131
refcnt=1
dell#
dell# sendMessagesSync: never got /usr/local/sbin/setkey -c <<EODspddump;spdflush;EOD
echo $status
0~
[EOT]
|
| 15:56:07 | End |
Frame_Ether (length:162) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:00:00:00:11 | | SourceAddress = 00:90:99:7e:3e:52 | | Type = 34525 | Packet_IPv6 (length:148) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 108 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52 | | | DestinationAddress = 3ffe:501:ffff:101::11 | | Upp_UDP (length:108) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 108 | | | | Checksum = 34208 calc(34208) | | | Udp_ISAKMP (length:100) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = 55acb8d0a5a57c1d | | | | | ResponderCookie = 0000000000000000 | | | | | NextPayload = 1 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 100 | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:52) | | | | | NextPayload = 13 | | | | | Reserved1 = 0 | | | | | PayloadLength = 52 | | | | | DOI = 1 | | | | | Situation = 1 | | | | | Pld_ISAKMP_P_ISAKMP (length:40) | | | | | | NextPayload = 0 | | | | | | Reserved1 = 0 | | | | | | PayloadLength = 40 | | | | | | ProposalNumber = 1 | | | | | | ProtocolID = 1 | | | | | | SPIsize = 0 | | | | | | NumOfTransforms = 1 | | | | | | SPI = | | | | | | Pld_ISAKMP_T (length:32) | | | | | | | NextPayload = 0 | | | | | | | Reserved1 = 0 | | | | | | | PayloadLength = 32 | | | | | | | TransformNumber = 1 | | | | | | | TransformID = 1 | | | | | | | Reserved2 = 0 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 11 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 12 | | | | | | | | Value = 28800 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 1 | | | | | | | | Value = 5 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 3 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 2 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 4 | | | | | | | | Value = 2 | | | | Pld_ISAKMP_VID (length:20) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | VID = afcad713 68a1f1c9 6b8696fc 77570100 ===isakmp_phase1_recv=================================
Frame_Ether (length:146) | Hdr_Ether (length:14) | | DestinationAddress = 00:90:99:7e:3e:52 | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:132) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 92 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:101::11 | | | DestinationAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52 | | Upp_UDP (length:92) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 92 | | | | Checksum = 31807 calc(31807) | | | Udp_ISAKMP (length:84) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = 55acb8d0a5a57c1d | | | | | ResponderCookie = 7d1f1e326f18e84f | | | | | NextPayload = 1 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 84 | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:56) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 56 | | | | | DOI = 1 | | | | | Situation = 1 | | | | | Pld_ISAKMP_P_ISAKMP (length:44) | | | | | | NextPayload = 0 | | | | | | Reserved1 = 0 | | | | | | PayloadLength = 44 | | | | | | ProposalNumber = 1 | | | | | | ProtocolID = 1 | | | | | | SPIsize = 0 | | | | | | NumOfTransforms = 1 | | | | | | SPI = | | | | | | Pld_ISAKMP_T (length:36) | | | | | | | NextPayload = 0 | | | | | | | Reserved1 = 0 | | | | | | | PayloadLength = 36 | | | | | | | TransformNumber = 1 | | | | | | | TransformID = 1 | | | | | | | Reserved2 = 0 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 1 | | | | | | | | Value = 5 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 2 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 3 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 4 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 11 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TLV (length:8) | | | | | | | | AF = 0 | | | | | | | | Type = 12 | | | | | | | | Length = 4 | | | | | | | | Value = 00007080
Frame_Ether (length:242) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:00:00:00:11 | | SourceAddress = 00:90:99:7e:3e:52 | | Type = 34525 | Packet_IPv6 (length:228) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 188 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52 | | | DestinationAddress = 3ffe:501:ffff:101::11 | | Upp_UDP (length:188) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 188 | | | | Checksum = 40948 calc(40948) | | | Udp_ISAKMP (length:180) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = 55acb8d0a5a57c1d | | | | | ResponderCookie = 7d1f1e326f18e84f | | | | | NextPayload = 4 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 180 | | | | Pld_ISAKMP_KE (length:132) | | | | | NextPayload = 10 | | | | | Reserved1 = 0 | | | | | PayloadLength = 132 | | | | | KeyExchangeData = | | | | | de525e8b 9402e8f3 472e8f54 ccce11e2 8e835bc6 c5243c24 ea72af5a 9e3b221b | | | | | b72c3f34 9a6b062a 2f7a61f5 3f8c3805 2399cd13 85ec3729 75b017ba 7724cd13 | | | | | 562a1750 63d2ad65 205777a6 978f1853 84207b40 409a1461 caa7582b fd023d1a | | | | | eeb373a0 a87fbad7 ef7ab259 8ee13fc2 f8a5f81a 4f257be7 037f7fd5 cab0bb8c | | | | Pld_ISAKMP_NONCE (length:20) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | NonceData = f5f2ac7c df2488f1 eafd49b6 ea734fa4 ===isakmp_phase1_recv_3rd=================================
Frame_Ether (length:242) | Hdr_Ether (length:14) | | DestinationAddress = 00:90:99:7e:3e:52 | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:228) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 188 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:101::11 | | | DestinationAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52 | | Upp_UDP (length:188) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 188 | | | | Checksum = 19468 calc(19468) | | | Udp_ISAKMP (length:180) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = 55acb8d0a5a57c1d | | | | | ResponderCookie = 7d1f1e326f18e84f | | | | | NextPayload = 4 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 180 | | | | Pld_ISAKMP_KE (length:132) | | | | | NextPayload = 10 | | | | | Reserved1 = 0 | | | | | PayloadLength = 132 | | | | | KeyExchangeData = | | | | | 09c7db9b ebe9b8f5 e5ce6b71 1d9f5c2d 9c36a404 458be42a 9fbce569 9dd9a8f6 | | | | | 191812e2 f80d05d9 9b679b6a 2222efa4 33f24cfb 773b6787 b806b78c d413a54f | | | | | e432323f 7a9966fb a240eea1 70736c01 1241b07f 739aa26b 45fe486b 6ef17d03 | | | | | 22271203 9fff919b 20a44185 670e0f65 d74c2dbe b28c0e2b 1a6217fb b7a927b2 | | | | Pld_ISAKMP_NONCE (length:20) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | NonceData = 00000000 00000000 00000000 00000000
===ALGORITHM LISTS BEGIN====================
--------------------------------------------
frame=isakmp_phase1_recv_5th
ESP=alg_isakmp_phase1_recv_5th
crypt=ike_des3cbc(hexstr("de98b5efebb12070c6c3cde68781ffe798d081107d736ecb4fb6ede870b010e335e3747fb3100e8051d8b2e5329a077e330ee672ac296079c8c92e77",24),p1_iv("sha1",hexstr("de525e8b9402e8f3472e8f54ccce11e28e835bc6c5243c24ea72af5a9e3b221bb72c3f349a6b062a2f7a61f53f8c38052399cd1385ec372975b017ba7724cd13562a175063d2ad65205777a6978f185384207b40409a1461caa7582bfd023d1aeeb373a0a87fbad7ef7ab2598ee13fc2f8a5f81a4f257be7037f7fd5cab0bb8c"),hexstr("09C7DB9BEBE9B8F5E5CE6B711D9F5C2D9C36A404458BE42A9FBCE5699DD9A8F6191812E2F80D05D99B679B6A2222EFA433F24CFB773B6787B806B78CD413A54FE432323F7A9966FBA240EEA170736C011241B07F739AA26B45FE486B6EF17D03222712039FFF919B20A44185670E0F65D74C2DBEB28C0E2B1A6217FBB7A927B2"),8))
--------------------------------------------
===ALGORITHM LISTS END======================
Frame_Ether (length:146)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:90:99:7e:3e:52
| | Type = 34525
| Packet_IPv6 (length:132)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 92
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52
| | | DestinationAddress = 3ffe:501:ffff:101::11
| | Upp_UDP (length:92)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 92
| | | | Checksum = 18541 calc(18541)
| | | Udp_ISAKMP (length:84)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = 55acb8d0a5a57c1d
| | | | | ResponderCookie = 7d1f1e326f18e84f
| | | | | NextPayload = 5
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 2
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 1
| | | | | MessageID = 0
| | | | | Length = 84
| | | | ISAKMP_Encryption (length:56)
| | | | | algorithm = alg_isakmp_phase1_recv_5th
| | | | | IVEC = 6c0e2f60 131dacd8
| | | | | Decrypted (length:56)
| | | | | | PlainText (length:48)
| | | | | | | Pld_ISAKMP_ID_IPV6_ADDR (length:24)
| | | | | | | | NextPayload = 8
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | IDtype = 5
| | | | | | | | ProtocolID = 17
| | | | | | | | Port = 500
| | | | | | | | ID = 3ffe:501:ffff:100:290:99ff:fe7e:3e52
| | | | | | | Pld_ISAKMP_HASH (length:24)
| | | | | | | | NextPayload = 0
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | HashData =
| | | | | | | | 28ae6ff4 53a78855 2ed3ee44 c085d10d 3fc7ddbb
| | | | | | Padding = fe8dffac ffcbb807
===isakmp_phase1_recv_5th=================================
applied algorithms={alg_isakmp_phase1_recv_5th}
Frame_Ether (length:146) | Hdr_Ether (length:14) | | DestinationAddress = 00:90:99:7e:3e:52 | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:132) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 92 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:101::11 | | | DestinationAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52 | | Upp_UDP (length:92) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 92 | | | | Checksum = 27145 calc(27145) | | | Udp_ISAKMP (length:84) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = 55acb8d0a5a57c1d | | | | | ResponderCookie = 7d1f1e326f18e84f | | | | | NextPayload = 5 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 1 | | | | | MessageID = 0 | | | | | Length = 84 | | | | ISAKMP_Encryption (length:56) | | | | | algorithm = alg_isakmp_phase1_send_6th | | | | | IVEC = 2d6d7824 c16ad1a9 | | | | | Decrypted (length:56) | | | | | | PlainText (length:48) | | | | | | | Pld_ISAKMP_ID_IPV6_ADDR (length:24) | | | | | | | | NextPayload = 8 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 24 | | | | | | | | IDtype = 5 | | | | | | | | ProtocolID = 17 | | | | | | | | Port = 500 | | | | | | | | ID = 3ffe:501:ffff:101::11 | | | | | | | Pld_ISAKMP_HASH (length:24) | | | | | | | | NextPayload = 0 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 24 | | | | | | | | HashData = | | | | | | | | 32d04487 daa8ffe1 70c17803 0e01e4b1 bec6cdc4 | | | | | | Padding = 00000000 00000007
===ALGORITHM LISTS BEGIN====================
--------------------------------------------
frame=isakmp_phase2_recv
ESP=alg_isakmp_phase2_recv
crypt=ike_des3cbc(hexstr("de98b5efebb12070c6c3cde68781ffe798d081107d736ecb4fb6ede870b010e335e3747fb3100e8051d8b2e5329a077e330ee672ac296079c8c92e77",24),p2_iv("sha1",hexstr("2d6d7824c16ad1a9",8),8))
--------------------------------------------
===ALGORITHM LISTS END======================
Frame_Ether (length:146)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:90:99:7e:3e:52
| | Type = 34525
| Packet_IPv6 (length:132)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 92
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52
| | | DestinationAddress = 3ffe:501:ffff:101::11
| | Upp_UDP (length:92)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 92
| | | | Checksum = 5403 calc(5403)
| | | Udp_ISAKMP (length:84)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = 55acb8d0a5a57c1d
| | | | | ResponderCookie = 7d1f1e326f18e84f
| | | | | NextPayload = 8
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 5
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 1
| | | | | MessageID = 4283277452
| | | | | Length = 84
| | | | ISAKMP_Encryption (length:56)
| | | | | algorithm = alg_isakmp_phase2_recv
| | | | | IVEC = 962be004 44ec2507
| | | | | Decrypted (length:56)
| | | | | | PlainText (length:52)
| | | | | | | Pld_ISAKMP_HASH (length:24)
| | | | | | | | NextPayload = 11
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | HashData =
| | | | | | | | d0348d26 38953ab4 96f45859 5225d548 0fb2d4ed
| | | | | | | Pld_ISAKMP_N_IPsec_ANY (length:28)
| | | | | | | | NextPayload = 0
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 28
| | | | | | | | DOI = 1
| | | | | | | | ProtocolID = 1
| | | | | | | | SPIsize = 16
| | | | | | | | NotifyMessageType = 24578
| | | | | | | | SPI = 55acb8d0 a5a57c1d 7d1f1e32 6f18e84f
| | | | | | | | NotificationData =
| | | | | | Padding = dcabc103
===isakmp_phase2_recv=================================
applied algorithms={alg_isakmp_phase2_recv}
ng compare hdr_isakmp_phase2_recv.ExchangeType received:5 = 32
Frame_Ether (length:322)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:90:99:7e:3e:52
| | Type = 34525
| Packet_IPv6 (length:308)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 268
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52
| | | DestinationAddress = 3ffe:501:ffff:101::11
| | Upp_UDP (length:268)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 268
| | | | Checksum = 43571 calc(43571)
| | | Udp_ISAKMP (length:260)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = 55acb8d0a5a57c1d
| | | | | ResponderCookie = 7d1f1e326f18e84f
| | | | | NextPayload = 8
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 32
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 1
| | | | | MessageID = 4029398396
| | | | | Length = 260
| | | | ISAKMP_Encryption (length:232)
| | | | | algorithm = alg_isakmp_phase2_recv
| | | | | IVEC = d89b19b8 cc883486
| | | | | Decrypted (length:232)
| | | | | | PlainText (length:228)
| | | | | | | Pld_ISAKMP_HASH (length:24)
| | | | | | | | NextPayload = 1
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | HashData =
| | | | | | | | 1cd7efa0 e33365f9 63f2f67b 55e32673 add08d0e
| | | | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:52)
| | | | | | | | NextPayload = 10
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 52
| | | | | | | | DOI = 1
| | | | | | | | Situation = 1
| | | | | | | | Pld_ISAKMP_P_IPsec_ESP (length:40)
| | | | | | | | | NextPayload = 0
| | | | | | | | | Reserved1 = 0
| | | | | | | | | PayloadLength = 40
| | | | | | | | | ProposalNumber = 1
| | | | | | | | | ProtocolID = 3
| | | | | | | | | SPIsize = 4
| | | | | | | | | NumOfTransforms = 1
| | | | | | | | | SPI = 243006386
| | | | | | | | | Pld_ISAKMP_T (length:28)
| | | | | | | | | | NextPayload = 0
| | | | | | | | | | Reserved1 = 0
| | | | | | | | | | PayloadLength = 28
| | | | | | | | | | TransformNumber = 1
| | | | | | | | | | TransformID = 3
| | | | | | | | | | Reserved2 = 0
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 1
| | | | | | | | | | | Value = 1
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 2
| | | | | | | | | | | Value = 28800
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 4
| | | | | | | | | | | Value = 2
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 5
| | | | | | | | | | | Value = 2
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 3
| | | | | | | | | | | Value = 2
| | | | | | | Pld_ISAKMP_NONCE (length:20)
| | | | | | | | NextPayload = 4
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 20
| | | | | | | | NonceData = aa76047a 38066167 4c574384 62f60adc
| | | | | | | Pld_ISAKMP_KE (length:132)
| | | | | | | | NextPayload = 0
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 132
| | | | | | | | KeyExchangeData =
| | | | | | | | ff9877ff a28ed0bb cebd8d13 3e3b79f8 d22770c6 f280c2f7 55754e36 85a11296
| | | | | | | | 14ac55db ddcba678 7644b2e7 b03986ef 769ae6be 24088318 0aae776e 15634992
| | | | | | | | 7a32dd8e 274f2893 967822fc 3c9ccfac 433b9174 4641551f 651e75d5 fce14aff
| | | | | | | | df9f90d3 527e628a 2413737b 47ed0868 7500cc36 c9c89e3c a6a3870b dd6ad2d3
| | | | | | Padding = bcc0ab03
===isakmp_phase2_recv=================================
applied algorithms={alg_isakmp_phase2_recv}
Frame_Ether (length:202) | Hdr_Ether (length:14) | | DestinationAddress = 00:90:99:7e:3e:52 | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:188) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 148 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:101::11 | | | DestinationAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52 | | Upp_UDP (length:148) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 148 | | | | Checksum = 24450 calc(24450) | | | Udp_ISAKMP (length:140) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = 55acb8d0a5a57c1d | | | | | ResponderCookie = 7d1f1e326f18e84f | | | | | NextPayload = 8 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 32 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 1 | | | | | MessageID = 4029398396 | | | | | Length = 140 | | | | ISAKMP_Encryption (length:112) | | | | | algorithm = alg_isakmp_phase2_send_2nd | | | | | IVEC = 95bc5094 45bdde2e | | | | | Decrypted (length:112) | | | | | | PlainText (length:105) | | | | | | | Pld_ISAKMP_HASH (length:24) | | | | | | | | NextPayload = 1 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 24 | | | | | | | | HashData = | | | | | | | | 30abc65d ea3ac6cf 6ad04cd2 447b27dd 3092a352 | | | | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:56) | | | | | | | | NextPayload = 10 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 56 | | | | | | | | DOI = 1 | | | | | | | | Situation = 1 | | | | | | | | Pld_ISAKMP_P_IPsec_ESP (length:44) | | | | | | | | | NextPayload = 0 | | | | | | | | | Reserved1 = 0 | | | | | | | | | PayloadLength = 44 | | | | | | | | | ProposalNumber = 1 | | | | | | | | | ProtocolID = 3 | | | | | | | | | SPIsize = 4 | | | | | | | | | NumOfTransforms = 1 | | | | | | | | | SPI = 4096 | | | | | | | | | Pld_ISAKMP_T (length:32) | | | | | | | | | | NextPayload = 0 | | | | | | | | | | Reserved1 = 0 | | | | | | | | | | PayloadLength = 32 | | | | | | | | | | TransformNumber = 1 | | | | | | | | | | TransformID = 3 | | | | | | | | | | Reserved2 = 0 | | | | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | | | | AF = 1 | | | | | | | | | | | Type = 1 | | | | | | | | | | | Value = 1 | | | | | | | | | | Attr_ISAKMP_TLV (length:8) | | | | | | | | | | | AF = 0 | | | | | | | | | | | Type = 2 | | | | | | | | | | | Length = 4 | | | | | | | | | | | Value = 00007080 | | | | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | | | | AF = 1 | | | | | | | | | | | Type = 4 | | | | | | | | | | | Value = 2 | | | | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | | | | AF = 1 | | | | | | | | | | | Type = 3 | | | | | | | | | | | Value = 2 | | | | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | | | | AF = 1 | | | | | | | | | | | Type = 5 | | | | | | | | | | | Value = 2 | | | | | | | Pld_ISAKMP_NONCE (length:20) | | | | | | | | NextPayload = 4 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 20 | | | | | | | | NonceData = 00000000 00000000 00000000 00000001 | | | | | | | Pld_ISAKMP_KE (length:5) | | | | | | | | NextPayload = 0 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 5 | | | | | | | | KeyExchangeData = 00 | | | | | | Padding = 00000000 000006
===ALGORITHM LISTS BEGIN====================
--------------------------------------------
frame=isakmp_phase2_recv_3rd
ESP=alg_isakmp_phase2_recv_3rd
crypt=ike_des3cbc(hexstr("de98b5efebb12070c6c3cde68781ffe798d081107d736ecb4fb6ede870b010e335e3747fb3100e8051d8b2e5329a077e330ee672ac296079c8c92e77",24),hexstr("95bc509445bdde2e",8))
--------------------------------------------
===ALGORITHM LISTS END======================
Frame_Ether (length:122)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:90:99:7e:3e:52
| | Type = 34525
| Packet_IPv6 (length:108)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 68
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:100:290:99ff:fe7e:3e52
| | | DestinationAddress = 3ffe:501:ffff:101::11
| | Upp_UDP (length:68)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 68
| | | | Checksum = 59369 calc(59369)
| | | Udp_ISAKMP (length:60)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = 55acb8d0a5a57c1d
| | | | | ResponderCookie = 7d1f1e326f18e84f
| | | | | NextPayload = 8
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 32
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 1
| | | | | MessageID = 4029398396
| | | | | Length = 60
| | | | ISAKMP_Encryption (length:32)
| | | | | algorithm = alg_isakmp_phase2_recv_3rd
| | | | | IVEC = b46191ed 6b4cd805
| | | | | Decrypted (length:32)
| | | | | | PlainText (length:24)
| | | | | | | Pld_ISAKMP_HASH (length:24)
| | | | | | | | NextPayload = 0
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | HashData =
| | | | | | | | 1bd0a149 3b057a30 e3b6d3c6 8edb7edf 710f76a7
| | | | | | Padding = a6b2ecdf e0deae07
===isakmp_phase2_recv_3rd=================================
applied algorithms={alg_isakmp_phase2_recv_3rd}