| Title | Implementation of Aggressive Mode with pre-shared key*** |
| CommandLine | ./SGW/SG_I_A_RFC2409_5_5.seq -pkt ./SGW/SG_I_A_RFC2409_5_5.def test_type=BASIC -log 26.html -ti Implementation of Aggressive Mode with pre-shared key*** |
| TestVersion | undefined |
| ToolVersion | REL_3_0_8 |
| Start | 2006/03/16 13:49:16 |
| Tn | /usr/local/v6eval//etc//tn.def |
| Nu | /usr/local/v6eval//etc//nut.def |
| Pkt | ./SGW/SG_I_A_RFC2409_5_5.def |
| System | freebsd-i386 |
| TargetName | FreeBSD 5.4-RELEASE |
| HostName | target1.tahi.org |
| Type | router |
| 13:49:16 | Start |
|
*** Target IKE initialization phase *** Target: Reset IKE SA entries: saddump |
|
| 13:49:17 |
vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 saddump ''
Connected target1# target1# /usr/sbin/setkey -c <<EOD dump; flush; ? dump; ? Eflush; OD ? EOD The result of line 1: No SAD entries. target1# target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODdump;flush;EOD echo $status 0 target1# kill -TERM `head -1 /var/run/racoon.pid` head: /var/run/racoon.pid: No such file or directory target1# target1# echo $status 1 target1# /bin/rm -f /var/run/racoon.pid target1# target1# echo $status 0 ~ [EOT] |
| Target: Clear SPD entries: spddump | |
| 13:49:23 |
vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 spddump ''
Connected target1# target1# /usr/sbin/setkey -c <<EOD spddump; spdfl? spddump; ush; EOD ? spdflush; EOD ? EOD The result of line 1: No SPD entries. target1# target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODspddump;spdflush;EOD echo $status 0 ~ [EOT] |
| Target: Set SPD entries: src=3ffe:501:ffff:100::/64 dst=3ffe:501:ffff:104::/64 tsrc=3ffe:501:ffff:102::1 tdst=3ffe:501:ffff:103::11 upperspec=any direction=out protocol=PROTO_IPSEC_ESP mode=Tunnel | |
| 13:49:29 |
vRemote(ipsecSetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecSetSPD.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 src=3ffe:501:ffff:100::/64 dst=3ffe:501:ffff:104::/64 tsrc=3ffe:501:ffff:102::1 tdst=3ffe:501:ffff:103::11 upperspec=any direction=out protocol=PROTO_IPSEC_ESP mode=Tunnel ''
Connected
target1#
target1# /usr/sbin/setkey -c <<EOD
spdadd 3ffe:501:ffff:100::/64 3ffe:501:ffff:104::/64
any
-P out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
;
spddump;
EOD
? spdadd 3ffe:501:ffff:100::/64 3ffe:501:ffff:104::/64
any
-P out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
;
spddump;
EOD
? any
? -P out ipsec
? esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
? ;
? spddump;
? EOD
3ffe:501:ffff:100::/64[any] 3ffe:501:ffff:104::/64[any] any
out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
created: Mar 16 13:56:39 2006 lastused: Mar 16 13:56:39 2006
lifetime: 0(s) validtime: 0(s)
spid=16635 seq=0 pid=773
refcnt=1
target1#
target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODspdadd 3ffe:501:ffff:100::/64 3ffe:501:ffff:104::/64 any -P out ipsec esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require;spddump;EOD
echo $status
0
~
[EOT]
|
| Target: Set IKE SA entries: dst=3ffe:501:ffff:103::11 dst_port=500 exchange_mode=aggressive doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:102::1 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:103::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100::/64 ph2_dst_id=3ffe:501:ffff:104::/64 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA | |
| 13:49:35 |
vRemote(ikeSetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeSetSA.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 dst=3ffe:501:ffff:103::11 dst_port=500 exchange_mode=aggressive doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:102::1 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:103::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100::/64 ph2_dst_id=3ffe:501:ffff:104::/64 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA ''
Connected target1# target1# ~[set] echocheck target1# target1# ~[put] freebsd-i386.psk.txt /tmp/psk.txt Dtarget1# target1# target1# /bin/chmod 600 /tmp/psk.txt target1# echo $status 0 target1# ~[set] echocheck target1# target1# ~[put] freebsd-i386.ike.conf /tmp/ike.conf Dtarget1# target1# target1# test -f /var/run/racoon.pid &&kill -TERM `head -1 /var/run/racoon.pid` target1# target1# echo $status 1 target1# /usr/local/sbin/racoon -f /tmp/ike.conf target1# target1# echo $status 0 ~ [EOT] |
| 13:49:50 | vRemote(ikeEnable.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeEnable.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 '' |
|
*** Target initialization phase *** |
|
| 13:49:51 | Start Capturing Packets (Link0) |
| 13:49:51 | Start Capturing Packets (Link1) |
|
*** Target testing phase *** |
|
| 13:49:51 | Clear Captured Packets (Link1) |
| 13:49:51 | Clear Captured Packets (Link0) |
|
*** Phase-1 1st message recv *** |
|
| 13:49:51 |
vSend(Link1,echo_request_send_net0host1_net4host2) Send Echo Request from Host-1(TN) to Host-2(TN) via SGW1(NUT) |
| 13:49:51 | vRecv(Link0,isakmp_phase1_recv router_ns_multi router_ns_uni_link1 router_ns_uni_tll_sll_link1 router_ns_multi_llt_link1 router_ns_uni_sll router_ns_uni router_ns_multi_llt router_ns_uni_sll_link1 router_ns_multi_link1 router_ns_uni_tll_sll) timeout:10 cntLimit:0 seektime:0 Recv 1st message from HOST1(NUT) |
|
****OK payload_check payload_check_Proposal ****OK payload_check payload_check_Transform ****OK payload_check payload_check_KE ****OK payload_check payload_check_Nonce ****OK payload_check payload_check_ID OK payload_check *** Phase-1 2nd message send *** |
|
| 13:49:51 | Clear Captured Packets (Link0) |
| 13:49:52 |
vSend(Link0,isakmp_phase1_send_2nd_agg) Send 2nd message from HOST2(TN) |
|
*** Phase-1 3rd message recv *** |
|
| 13:49:52 | vRecv(Link0,isakmp_phase1_recv_3rd isakmp_phase1_recv_3rd_agg_enc router_ns_multi router_ns_uni_link1 router_ns_uni_tll_sll_link1 router_ns_multi_llt_link1 router_ns_uni_sll router_ns_uni router_ns_multi_llt router_ns_uni_sll_link1 router_ns_multi_link1 router_ns_uni_tll_sll) timeout:5 cntLimit:0 seektime:0 Recv 3rd message from HOST1(NUT) |
|
****OK payload_check payload_check_Hash OK payload_check OK calcHashPhase1 hash value is correct *** Phase-2 1st message recv *** |
|
| 13:49:53 | vRecv(Link0,isakmp_phase2_recv router_ns_multi router_ns_uni_link1 router_ns_uni_tll_sll_link1 router_ns_multi_llt_link1 router_ns_uni_sll router_ns_uni router_ns_multi_llt router_ns_uni_sll_link1 router_ns_multi_link1 router_ns_uni_tll_sll) timeout:5 cntLimit:0 seektime:0 recv unexpect packet at 13:49:52 Recv Phase-2 1st message (HDR*, HASH(1), SA, Ni, *, *) from HOST1(NUT) |
|
OK payload_check Implementation of Aggressive Mode with pre-shared key check is correct *** Target test finish *** |
|
| 13:49:53 | Stop Capturing Packets (Link0) |
| 13:49:53 | Stop Capturing Packets (Link1) |
| Target: Reset IKE SA entries: saddump | |
| 13:49:53 |
vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 saddump ''
Connected
target1#
target1# /usr/sbin/setkey -c <<EOD
dump;
flush;
EOD? dump;
? flush;
? EOD
3ffe:501:ffff:103::11 3ffe:501:ffff:102::1
esp mode=tunnel spi=261678497(0x0f98e5a1) reqid=0(0x00000000)
seq=0x00000000 replay=0 flags=0x00000000 state=larval
sadb_seq=0 pid=780 refcnt=1
target1#
target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODdump;flush;EOD
echo $status
0
target1# kill -TERM `head -1 /var/run/racoon.pid`
target1#
target1# echo $status
0
target1# /bin/rm -f /var/run/racoon.pid
target1#
target1# echo $status
0
~
[EOT]
|
| Target: Clear SPD entries: spddump | |
| 13:49:59 |
vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 spddump ''
Connected
target1#
target1# /usr/sbin/setkey -c <<EOD
spddump;
spdflush;
? spddump;
? spdflush;
EOD
? EOD
3ffe:501:ffff:100::/64[any] 3ffe:501:ffff:104::/64[any] any
out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
created: Mar 16 13:56:39 2006 lastused: Mar 16 13:56:59 2006
lifetime: 0(s) validtime: 0(s)
spid=16635 seq=0 pid=783
refcnt=1
target1#
target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODspddump;spdflush;EOD
echo $status
0
~
[EOT]
|
|
OK |
|
| 13:50:06 | End |
Frame_Ether (length:70) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:02:00:26:ba | | SourceAddress = 00:00:00:00:00:10 | | Type = 34525 | Packet_IPv6 (length:56) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 16 | | | NextHeader = 58 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:100::13 | | | DestinationAddress = 3ffe:501:ffff:104::11 | | ICMPv6_EchoRequest (length:16) | | | Type = 128 | | | Code = 0 | | | Checksum = 36089 calc(36089) | | | Identifier = 0 | | | SequenceNumber = 0 | | | Payload (length:8) | | | | data = 4563686f 44617461
Frame_Ether (length:318) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:00:00:00:11 | | SourceAddress = 00:00:02:00:27:cd | | Type = 34525 | Packet_IPv6 (length:304) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 264 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:102::1 | | | DestinationAddress = 3ffe:501:ffff:103::11 | | Upp_UDP (length:264) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 264 | | | | Checksum = 1009 calc(1009) | | | Udp_ISAKMP (length:256) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = c88ff02669c40b70 | | | | | ResponderCookie = 0000000000000000 | | | | | NextPayload = 1 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 4 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 256 | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:52) | | | | | NextPayload = 4 | | | | | Reserved1 = 0 | | | | | PayloadLength = 52 | | | | | DOI = 1 | | | | | Situation = 1 | | | | | Pld_ISAKMP_P_ISAKMP (length:40) | | | | | | NextPayload = 0 | | | | | | Reserved1 = 0 | | | | | | PayloadLength = 40 | | | | | | ProposalNumber = 1 | | | | | | ProtocolID = 1 | | | | | | SPIsize = 0 | | | | | | NumOfTransforms = 1 | | | | | | SPI = | | | | | | Pld_ISAKMP_T (length:32) | | | | | | | NextPayload = 0 | | | | | | | Reserved1 = 0 | | | | | | | PayloadLength = 32 | | | | | | | TransformNumber = 1 | | | | | | | TransformID = 1 | | | | | | | Reserved2 = 0 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 11 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 12 | | | | | | | | Value = 28800 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 1 | | | | | | | | Value = 5 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 3 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 2 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 4 | | | | | | | | Value = 2 | | | | Pld_ISAKMP_KE (length:132) | | | | | NextPayload = 10 | | | | | Reserved1 = 0 | | | | | PayloadLength = 132 | | | | | KeyExchangeData = | | | | | 07ce6b92 980f7a8f 4408a8ef a24a3022 d32347f2 80b1aaf8 a09bd5ca 3aefb50a | | | | | 21ce0da9 7cde07f6 4666d78a 24f697ab a88a5004 20f0db19 1a126805 99b04f0a | | | | | d0072fa5 986c1fd2 a7ef723e 94165b8b 271ce26e 28a72dad d5a10c22 20a87930 | | | | | ba98d9db a5a945e5 cf5eeffa b63f1871 120e271c aaca03f5 5876e0ad dba568ef | | | | Pld_ISAKMP_NONCE (length:20) | | | | | NextPayload = 5 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | NonceData = 82324751 25478573 75a489d2 da71222e | | | | Pld_ISAKMP_ID_IPV6_ADDR (length:24) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 24 | | | | | IDtype = 5 | | | | | ProtocolID = 17 | | | | | Port = 500 | | | | | ID = 3ffe:501:ffff:102::1 ===isakmp_phase1_recv=================================
Frame_Ether (length:346) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:02:00:27:cd | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:332) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 292 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:103::11 | | | DestinationAddress = 3ffe:501:ffff:102::1 | | Upp_UDP (length:292) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 292 | | | | Checksum = 57506 calc(57506) | | | Udp_ISAKMP (length:284) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = c88ff02669c40b70 | | | | | ResponderCookie = 12ca912523773e00 | | | | | NextPayload = 1 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 4 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 284 | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:56) | | | | | NextPayload = 4 | | | | | Reserved1 = 0 | | | | | PayloadLength = 56 | | | | | DOI = 1 | | | | | Situation = 1 | | | | | Pld_ISAKMP_P_ISAKMP (length:44) | | | | | | NextPayload = 0 | | | | | | Reserved1 = 0 | | | | | | PayloadLength = 44 | | | | | | ProposalNumber = 1 | | | | | | ProtocolID = 1 | | | | | | SPIsize = 0 | | | | | | NumOfTransforms = 1 | | | | | | SPI = | | | | | | Pld_ISAKMP_T (length:36) | | | | | | | NextPayload = 0 | | | | | | | Reserved1 = 0 | | | | | | | PayloadLength = 36 | | | | | | | TransformNumber = 1 | | | | | | | TransformID = 1 | | | | | | | Reserved2 = 0 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 1 | | | | | | | | Value = 5 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 2 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 3 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 4 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 11 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TLV (length:8) | | | | | | | | AF = 0 | | | | | | | | Type = 12 | | | | | | | | Length = 4 | | | | | | | | Value = 00007080 | | | | Pld_ISAKMP_KE (length:132) | | | | | NextPayload = 10 | | | | | Reserved1 = 0 | | | | | PayloadLength = 132 | | | | | KeyExchangeData = | | | | | e9d4bac3 43904da7 5ef69293 9bc81e43 54441e83 8d502db7 a607e5cd df409557 | | | | | 82499f31 0b492f2f 964ab872 98b8ad73 fc99585b e139e03d af056ff2 2e7a8357 | | | | | 4b6fd583 e4edb5e2 0fcf2b60 c6865f2b 23fbfb1e bcaf5ebd 28a08923 9d14a449 | | | | | f4139668 12c3ceee 113ec220 2ad0d5ed c979f109 2f36baf4 3b8ee165 a0149bf4 | | | | Pld_ISAKMP_NONCE (length:20) | | | | | NextPayload = 5 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | NonceData = 00000000 00000000 00000000 00000000 | | | | Pld_ISAKMP_ID_IPV6_ADDR (length:24) | | | | | NextPayload = 8 | | | | | Reserved1 = 0 | | | | | PayloadLength = 24 | | | | | IDtype = 5 | | | | | ProtocolID = 17 | | | | | Port = 500 | | | | | ID = 3ffe:501:ffff:103::11 | | | | Pld_ISAKMP_HASH (length:24) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 24 | | | | | HashData = | | | | | 42b234d9 ccde6414 75b76dfc 8207fde5 0f8e6bbd
===ALGORITHM LISTS BEGIN====================
--------------------------------------------
frame=isakmp_phase1_recv_3rd_agg_enc
ESP=alg_isakmp_phase1_recv_5th
crypt=ike_des3cbc(hexstr("3b1657ef6ee3fd29021e5932198d8eb045e8af3735d3b0655d8c8da67523ff6e2e613be4628d4faf49611d79d601e8b5d472e444a62c5b3fa0505d75",24),p1_iv("sha1",hexstr("07ce6b92980f7a8f4408a8efa24a3022d32347f280b1aaf8a09bd5ca3aefb50a21ce0da97cde07f64666d78a24f697aba88a500420f0db191a12680599b04f0ad0072fa5986c1fd2a7ef723e94165b8b271ce26e28a72dadd5a10c2220a87930ba98d9dba5a945e5cf5eeffab63f1871120e271caaca03f55876e0addba568ef"),hexstr("E9D4BAC343904DA75EF692939BC81E4354441E838D502DB7A607E5CDDF40955782499F310B492F2F964AB87298B8AD73FC99585BE139E03DAF056FF22E7A83574B6FD583E4EDB5E20FCF2B60C6865F2B23FBFB1EBCAF5EBD28A089239D14A449F413966812C3CEEE113EC2202AD0D5EDC979F1092F36BAF43B8EE165A0149BF4"),8))
--------------------------------------------
===ALGORITHM LISTS END======================
Frame_Ether (length:114)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:00:02:00:27:cd
| | Type = 34525
| Packet_IPv6 (length:100)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 60
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:102::1
| | | DestinationAddress = 3ffe:501:ffff:103::11
| | Upp_UDP (length:60)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 60
| | | | Checksum = 41874 calc(41874)
| | | Udp_ISAKMP (length:52)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = c88ff02669c40b70
| | | | | ResponderCookie = 12ca912523773e00
| | | | | NextPayload = 8
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 4
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 0
| | | | | MessageID = 0
| | | | | Length = 52
| | | | Pld_ISAKMP_HASH (length:24)
| | | | | NextPayload = 0
| | | | | Reserved1 = 0
| | | | | PayloadLength = 24
| | | | | HashData =
| | | | | eb1ee3ea 32ae6ee6 67d92fb5 a643ca8d 91c68173
===isakmp_phase1_recv_3rd=================================
===ALGORITHM LISTS BEGIN====================
--------------------------------------------
frame=isakmp_phase2_recv
ESP=alg_isakmp_phase2_recv_1st
crypt=ike_des3cbc(hexstr("3b1657ef6ee3fd29021e5932198d8eb045e8af3735d3b0655d8c8da67523ff6e2e613be4628d4faf49611d79d601e8b5d472e444a62c5b3fa0505d75",24),p2_iv("sha1",hexstr("feed367d087c9101d768f875bf347f95a7122974",8),8))
--------------------------------------------
===ALGORITHM LISTS END======================
Frame_Ether (length:146)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:00:02:00:27:cd
| | Type = 34525
| Packet_IPv6 (length:132)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 92
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:102::1
| | | DestinationAddress = 3ffe:501:ffff:103::11
| | Upp_UDP (length:92)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 92
| | | | Checksum = 16593 calc(16593)
| | | Udp_ISAKMP (length:84)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = c88ff02669c40b70
| | | | | ResponderCookie = 12ca912523773e00
| | | | | NextPayload = 8
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 5
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 1
| | | | | MessageID = 939832203
| | | | | Length = 84
| | | | ISAKMP_Encryption (length:56)
| | | | | algorithm = alg_isakmp_phase2_recv_1st
| | | | | IVEC = 629015bd bd57d10e
| | | | | Decrypted (length:56)
| | | | | | PlainText (length:52)
| | | | | | | Pld_ISAKMP_HASH (length:24)
| | | | | | | | NextPayload = 11
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | HashData =
| | | | | | | | 92b0d4b9 cae5b99f 069cdb16 37f9f6fb 7eb7d934
| | | | | | | Pld_ISAKMP_N_IPsec_ANY (length:28)
| | | | | | | | NextPayload = 0
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 28
| | | | | | | | DOI = 1
| | | | | | | | ProtocolID = 1
| | | | | | | | SPIsize = 16
| | | | | | | | NotifyMessageType = 24578
| | | | | | | | SPI = c88ff026 69c40b70 12ca9125 23773e00
| | | | | | | | NotificationData =
| | | | | | Padding = 59c07503
===isakmp_phase2_recv=================================
applied algorithms={alg_isakmp_phase2_recv_1st}
ng compare hdr_isakmp_phase2_recv_1st.ExchangeType received:5 = 32
Frame_Ether (length:266)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:00:02:00:27:cd
| | Type = 34525
| Packet_IPv6 (length:252)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 212
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:102::1
| | | DestinationAddress = 3ffe:501:ffff:103::11
| | Upp_UDP (length:212)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 212
| | | | Checksum = 64378 calc(64378)
| | | Udp_ISAKMP (length:204)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = c88ff02669c40b70
| | | | | ResponderCookie = 12ca912523773e00
| | | | | NextPayload = 8
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 32
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 1
| | | | | MessageID = 1891241055
| | | | | Length = 204
| | | | ISAKMP_Encryption (length:176)
| | | | | algorithm = alg_isakmp_phase2_recv_1st
| | | | | IVEC = e6992e44 99dbeb66
| | | | | Decrypted (length:176)
| | | | | | PlainText (length:172)
| | | | | | | Pld_ISAKMP_HASH (length:24)
| | | | | | | | NextPayload = 1
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | HashData =
| | | | | | | | 3a7ef3da 0fa056cc f71bcf69 22f05401 7614bdf9
| | | | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:48)
| | | | | | | | NextPayload = 10
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 48
| | | | | | | | DOI = 1
| | | | | | | | Situation = 1
| | | | | | | | Pld_ISAKMP_P_IPsec_ESP (length:36)
| | | | | | | | | NextPayload = 0
| | | | | | | | | Reserved1 = 0
| | | | | | | | | PayloadLength = 36
| | | | | | | | | ProposalNumber = 1
| | | | | | | | | ProtocolID = 3
| | | | | | | | | SPIsize = 4
| | | | | | | | | NumOfTransforms = 1
| | | | | | | | | SPI = 261678497
| | | | | | | | | Pld_ISAKMP_T (length:24)
| | | | | | | | | | NextPayload = 0
| | | | | | | | | | Reserved1 = 0
| | | | | | | | | | PayloadLength = 24
| | | | | | | | | | TransformNumber = 1
| | | | | | | | | | TransformID = 3
| | | | | | | | | | Reserved2 = 0
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 1
| | | | | | | | | | | Value = 1
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 2
| | | | | | | | | | | Value = 28800
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 4
| | | | | | | | | | | Value = 1
| | | | | | | | | | Attr_ISAKMP_TV (length:4)
| | | | | | | | | | | AF = 1
| | | | | | | | | | | Type = 5
| | | | | | | | | | | Value = 2
| | | | | | | Pld_ISAKMP_NONCE (length:20)
| | | | | | | | NextPayload = 5
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 20
| | | | | | | | NonceData = b4e59781 fa9d18b2 647238f5 f23e77fd
| | | | | | | Pld_ISAKMP_ID_IPV6_ADDR_SUBNET (length:40)
| | | | | | | | NextPayload = 5
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 40
| | | | | | | | IDtype = 6
| | | | | | | | ProtocolID = 0
| | | | | | | | Port = 0
| | | | | | | | ID1 = 3ffe:501:ffff:100::
| | | | | | | | ID2 = ffff:ffff:ffff:ffff::
| | | | | | | Pld_ISAKMP_ID_IPV6_ADDR_SUBNET (length:40)
| | | | | | | | NextPayload = 0
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 40
| | | | | | | | IDtype = 6
| | | | | | | | ProtocolID = 0
| | | | | | | | Port = 0
| | | | | | | | ID1 = 3ffe:501:ffff:104::
| | | | | | | | ID2 = ffff:ffff:ffff:ffff::
| | | | | | Padding = 30aa9e03
===isakmp_phase2_recv=================================
applied algorithms={alg_isakmp_phase2_recv_1st}