| Title | Processing invalid proposal(ESP Authentication) * |
| CommandLine | ./SGW/SG_R_RFC2408_5_4_2_3_P2_SA_3.seq -pkt ./SGW/SG_R_RFC2408_5_4_2_3_P2_SA_3.def test_phase=2 test_type=BASIC -log 263.html -ti Processing invalid proposal(ESP Authentication) * |
| TestVersion | undefined |
| ToolVersion | REL_3_0_8 |
| Start | 2006/03/16 16:34:59 |
| Tn | /usr/local/v6eval//etc//tn.def |
| Nu | /usr/local/v6eval//etc//nut.def |
| Pkt | ./SGW/SG_R_RFC2408_5_4_2_3_P2_SA_3.def |
| System | freebsd-i386 |
| TargetName | FreeBSD 5.4-RELEASE |
| HostName | target1.tahi.org |
| Type | router |
| 16:34:59 | Start |
|
*** Target IKE initialization phase *** Target: Reset IKE SA entries: saddump |
|
| 16:35:00 |
vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 saddump ''
Connected target1# target1# /usr/sbin/setkey -c <<EOD dump; flush; EOD ? dump; ? flush; ? EOD The result of line 1: No SAD entries. target1# target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODdump;flush;EOD echo $status 0 target1# kill -TERM `head -1 /var/run/racoon.pid` head: /var/run/racoon.pid: No such file or directory target1# target1# echo $status 1 target1# /bin/rm -f /var/run/racoon.pid target1# target1# echo $status 0 ~ [EOT] |
| Target: Clear SPD entries: spddump | |
| 16:35:07 |
vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 spddump ''
Connected target1# target1# /usr/sbin/setkey -c <<EOD spddump; spdflus? spddump; h; EOD ? spdflush; EOD ? EOD The result of line 1: No SPD entries. target1# target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODspddump;spdflush;EOD echo $status 0 ~ [EOT] |
| Target: Set SPD entries: src=3ffe:501:ffff:100::/64 dst=3ffe:501:ffff:104::/64 tsrc=3ffe:501:ffff:102::1 tdst=3ffe:501:ffff:103::11 upperspec=any direction=out protocol=PROTO_IPSEC_ESP mode=Tunnel | |
| 16:35:13 |
vRemote(ipsecSetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecSetSPD.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 src=3ffe:501:ffff:100::/64 dst=3ffe:501:ffff:104::/64 tsrc=3ffe:501:ffff:102::1 tdst=3ffe:501:ffff:103::11 upperspec=any direction=out protocol=PROTO_IPSEC_ESP mode=Tunnel ''
Connected
target1#
target1# /usr/sbin/setkey -c <<EOD
spdadd 3ffe:501:ffff:100::/64 3ffe:501:ffff:104::/64
any
-P out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
;
spddump;
EOD
? spdadd 3ffe:501:ffff:100::/64 3ffe:501:ffff:104::/64
any
-P out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
;
spddump;
EOD
? any
? -P out ipsec
? esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
? ;
? spddump;
? EOD
3ffe:501:ffff:100::/64[any] 3ffe:501:ffff:104::/64[any] any
out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
created: Mar 16 16:42:23 2006 lastused: Mar 16 16:42:23 2006
lifetime: 0(s) validtime: 0(s)
spid=19662 seq=0 pid=3502
refcnt=1
target1#
target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODspdadd 3ffe:501:ffff:100::/64 3ffe:501:ffff:104::/64 any -P out ipsec esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require;spddump;EOD
echo $status
0
~
[EOT]
|
| Target: Set SPD entries: dst=3ffe:501:ffff:100::/64 src=3ffe:501:ffff:104::/64 tdst=3ffe:501:ffff:102::1 tsrc=3ffe:501:ffff:103::11 upperspec=any direction=in protocol=PROTO_IPSEC_ESP mode=Tunnel | |
| 16:35:19 |
vRemote(ipsecSetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecSetSPD.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 dst=3ffe:501:ffff:100::/64 src=3ffe:501:ffff:104::/64 tdst=3ffe:501:ffff:102::1 tsrc=3ffe:501:ffff:103::11 upperspec=any direction=in protocol=PROTO_IPSEC_ESP mode=Tunnel ''
Connected
target1#
target1# /usr/sbin/setkey -c <<EOD
spdadd 3ffe:501:ffff:104::/64 3ffe:501:ffff:100::/64
any
-P in ipsec
esp/tunnel/3ffe:501:ffff:103::11-3ffe:501:ffff:102::1/require
;
spddump;
EOD
? spdadd 3ffe:501:ffff:104::/64 3ffe:501:ffff:100::/64
any
-P in ipsec
esp/tunnel/3ffe:501:ffff:103::11-3ffe:501:ffff:102::1/require
;
spddump;
EOD
? any
? -P in ipsec
? esp/tunnel/3ffe:501:ffff:103::11-3ffe:501:ffff:102::1/require
? ;
? spddump;
? EOD
3ffe:501:ffff:104::/64[any] 3ffe:501:ffff:100::/64[any] any
in ipsec
esp/tunnel/3ffe:501:ffff:103::11-3ffe:501:ffff:102::1/require
created: Mar 16 16:42:29 2006 lastused: Mar 16 16:42:29 2006
lifetime: 0(s) validtime: 0(s)
spid=19663 seq=1 pid=3503
refcnt=1
3ffe:501:ffff:100::/64[any] 3ffe:501:ffff:104::/64[any] any
out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
created: Mar 16 16:42:23 2006 lastused: Mar 16 16:42:23 2006
lifetime: 0(s) validtime: 0(s)
spid=19662 seq=0 pid=3503
refcnt=1
target1#
target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODspdadd 3ffe:501:ffff:104::/64 3ffe:501:ffff:100::/64 any -P in ipsec esp/tunnel/3ffe:501:ffff:103::11-3ffe:501:ffff:102::1/require;spddump;EOD
echo $status
0
~
[EOT]
|
| Target: Set IKE SA entries: dst=3ffe:501:ffff:103::11 dst_port=500 exchange_mode=main doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:102::1 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:103::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100::/64 ph2_dst_id=3ffe:501:ffff:104::/64 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA | |
| 16:35:25 |
vRemote(ikeSetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeSetSA.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 dst=3ffe:501:ffff:103::11 dst_port=500 exchange_mode=main doi=ipsec_doi situation=identity_only isakmp_src_id_type=address isakmp_src_id=3ffe:501:ffff:102::1 dh_group=2 lifetime=28800 lifetime_unit=seconds encryption_algorithm=3des hash_algorithm=sha1 authentication_method=pre_shared_key key_id=3ffe:501:ffff:103::11 key_value=0x494b452d54455354 ph2_id_type=address ph2_src_id=3ffe:501:ffff:100::/64 ph2_dst_id=3ffe:501:ffff:104::/64 ph2_src_upper=any ph2_dst_upper=any ipsec_p_num=1 ipsec_p1_t_num=1 ph2_p1_t1_lt=8 ph2_p1_t1_lt_unit=hour ph2_p1_t1_enc_alg=ESP_3DES ph2_p1_t1_auth_mtd=HMAC_SHA ''
Connected target1# target1# ~[set] echocheck target1# target1# ~[put] freebsd-i386.psk.txt /tmp/psk.txt Dtarget1# target1# target1# /bin/chmod 600 /tmp/psk.txt target1# echo $status 0 target1# ~[set] echocheck target1# target1# ~[put] freebsd-i386.ike.conf /tmp/ike.conf Dtarget1# target1# target1# test -f /var/run/racoon.pid &&kill -TERM `head -1 /var/run/racoon.pid` target1# target1# echo $status 1 target1# /usr/local/sbin/racoon -f /tmp/ike.conf target1# target1# echo $status 0 ~ [EOT] |
| 16:35:38 | vRemote(ikeEnable.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeEnable.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 '' |
|
*** Target initialization phase *** |
|
| 16:35:39 | Start Capturing Packets (Link0) |
| 16:35:39 | Start Capturing Packets (Link1) |
|
*** Target pre-test seaquence *** *** Phase-1 1st message send *** |
|
| 16:35:39 | Clear Captured Packets (Link0) |
| 16:35:39 |
vSend(Link0,isakmp_phase1_send_1st) Send 1st message from HOST2(TN) |
|
*** Phase-1 2nd message recieve *** |
|
| 16:35:39 | vRecv(Link0,isakmp_phase1_recv_2nd router_ns_multi router_ns_uni_link1 router_ns_uni_tll_sll_link1 router_ns_multi_llt_link1 router_ns_uni_sll router_ns_uni router_ns_multi_llt router_ns_uni_sll_link1 router_ns_multi_link1 router_ns_uni_tll_sll) timeout:5 cntLimit:0 seektime:0 Recv 2nd message from HOST1(NUT) |
|
OK payload_check *** Phase-1 3rd message send *** |
|
| 16:35:39 | Clear Captured Packets (Link0) |
| 16:35:40 |
vSend(Link0,isakmp_phase1_send_3rd) Send 3rd message from HOST2(TN) |
|
*** Phase-1 4th message recieve *** |
|
| 16:35:40 | vRecv(Link0,isakmp_phase1_recv_4th router_ns_multi router_ns_uni_link1 router_ns_uni_tll_sll_link1 router_ns_multi_llt_link1 router_ns_uni_sll router_ns_uni router_ns_multi_llt router_ns_uni_sll_link1 router_ns_multi_link1 router_ns_uni_tll_sll) timeout:5 cntLimit:0 seektime:0 Recv 4th message from HOST1(NUT) |
|
OK payload_check *** Phase-1 5th message send *** |
|
| 16:35:40 | Clear Captured Packets (Link0) |
| 16:35:41 |
vSend(Link0,isakmp_phase1_send_5th) Send 5th message from HOST2(TN) |
|
*** Phase-1 6th message recieve *** |
|
| 16:35:41 | vRecv(Link0,isakmp_phase1_recv_6th router_ns_multi router_ns_uni_link1 router_ns_uni_tll_sll_link1 router_ns_multi_llt_link1 router_ns_uni_sll router_ns_uni router_ns_multi_llt router_ns_uni_sll_link1 router_ns_multi_link1 router_ns_uni_tll_sll) timeout:5 cntLimit:0 seektime:0 Recv 6th message from HOST1(NUT) |
|
OK payload_check *** Target testing phase start *** *** Phase-2 1st message send *** |
|
| 16:35:41 | Clear Captured Packets (Link0) |
| 16:35:41 | Clear Captured Packets (Link1) |
| 16:35:42 |
vSend(Link0,isakmp_phase2_send) Send Phase-2 1st message (HDR*, HASH(1), SA, Ni) from HOST2(TN) |
|
*** Phase-2 2nd message recv *** |
|
| 16:35:42 | vRecv(Link0,isakmp_phase2_recv_2nd router_ns_multi router_ns_uni_link1 router_ns_uni_tll_sll_link1 router_ns_multi_llt_link1 router_ns_uni_sll router_ns_uni router_ns_multi_llt router_ns_uni_sll_link1 router_ns_multi_link1 router_ns_uni_tll_sll) timeout:5 cntLimit:0 seektime:0 !!! ISAKMP PayloadLength decode(41968) over remain size(40) recv unexpect packet at 16:35:42 Receive Neighbor Solicitation from SGW1(NUT) |
| 16:35:44 |
vSend(Link0,router_na) Send Neighbor Advertisement(TN) |
| 16:35:45 | vRecv(Link0,isakmp_phase2_recv_2nd router_ns_multi router_ns_uni_link1 router_ns_uni_tll_sll_link1 router_ns_multi_llt_link1 router_ns_uni_sll router_ns_uni router_ns_multi_llt router_ns_uni_sll_link1 router_ns_multi_link1 router_ns_uni_tll_sll) timeout:5 cntLimit:0 seektime:0 vRecv() return status=1 |
|
NG:Receive no packets OK:Phase-2 2nd message is not returned. Check the proposal to confirm it is valid(ESP Authentication) is PASS *** Target test finish *** |
|
| 16:35:50 | Stop Capturing Packets (Link0) |
| 16:35:50 | Stop Capturing Packets (Link1) |
| Target: Reset IKE SA entries: saddump | |
| 16:35:50 |
vRemote(ikeResetSA.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ikeResetSA.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 saddump ''
Connected target1# target1# /usr/sbin/setkey -c <<EOD dump; flush;? dump; EOD ? flush; EOD ? EOD The result of line 1: No SAD entries. target1# target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODdump;flush;EOD echo $status 0 target1# kill -TERM `head -1 /var/run/racoon.pid` target1# target1# echo $status 0 target1# /bin/rm -f /var/run/racoon.pid target1# target1# echo $status 0 ~ [EOT] |
| Target: Clear SPD entries: spddump | |
| 16:35:56 |
vRemote(ipsecResetSPD.rmt) ``/usr/local/v6eval//bin/freebsd-i386//ipsecResetSPD.rmt -t freebsd-i386 -u root -p v6eval -d cuad0 -o 1 spddump ''
Connected
target1#
target1# /usr/sbin/setkey -c <<EOD
spddump;
spdflush;? spddump;
EOD
? spdflush;
EOD
? EOD
3ffe:501:ffff:104::/64[any] 3ffe:501:ffff:100::/64[any] any
in ipsec
esp/tunnel/3ffe:501:ffff:103::11-3ffe:501:ffff:102::1/require
created: Mar 16 16:42:29 2006 lastused: Mar 16 16:42:29 2006
lifetime: 0(s) validtime: 0(s)
spid=19663 seq=1 pid=3513
refcnt=1
3ffe:501:ffff:100::/64[any] 3ffe:501:ffff:104::/64[any] any
out ipsec
esp/tunnel/3ffe:501:ffff:102::1-3ffe:501:ffff:103::11/require
created: Mar 16 16:42:23 2006 lastused: Mar 16 16:42:23 2006
lifetime: 0(s) validtime: 0(s)
spid=19662 seq=0 pid=3513
refcnt=1
target1#
target1# sendMessagesSync: never got /usr/sbin/setkey -c <<EODspddump;spdflush;EOD
echo $status
0
~
[EOT]
|
|
OK |
|
| 16:36:02 | End |
Frame_Ether (length:146) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:02:00:27:cd | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:132) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 92 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:103::11 | | | DestinationAddress = 3ffe:501:ffff:102::1 | | Upp_UDP (length:92) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 92 | | | | Checksum = 51152 calc(51152) | | | Udp_ISAKMP (length:84) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = bfdc36bcb1f70834 | | | | | ResponderCookie = 0000000000000000 | | | | | NextPayload = 1 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 84 | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:56) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 56 | | | | | DOI = 1 | | | | | Situation = 1 | | | | | Pld_ISAKMP_P_ISAKMP (length:44) | | | | | | NextPayload = 0 | | | | | | Reserved1 = 0 | | | | | | PayloadLength = 44 | | | | | | ProposalNumber = 1 | | | | | | ProtocolID = 1 | | | | | | SPIsize = 0 | | | | | | NumOfTransforms = 1 | | | | | | SPI = | | | | | | Pld_ISAKMP_T (length:36) | | | | | | | NextPayload = 0 | | | | | | | Reserved1 = 0 | | | | | | | PayloadLength = 36 | | | | | | | TransformNumber = 1 | | | | | | | TransformID = 1 | | | | | | | Reserved2 = 0 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 1 | | | | | | | | Value = 5 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 2 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 3 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 4 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 11 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TLV (length:8) | | | | | | | | AF = 0 | | | | | | | | Type = 12 | | | | | | | | Length = 4 | | | | | | | | Value = 00007080
Frame_Ether (length:166) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:00:00:00:11 | | SourceAddress = 00:00:02:00:27:cd | | Type = 34525 | Packet_IPv6 (length:152) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 112 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:102::1 | | | DestinationAddress = 3ffe:501:ffff:103::11 | | Upp_UDP (length:112) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 112 | | | | Checksum = 28067 calc(28067) | | | Udp_ISAKMP (length:104) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = bfdc36bcb1f70834 | | | | | ResponderCookie = f2b2f61688f6e7e1 | | | | | NextPayload = 1 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 104 | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:56) | | | | | NextPayload = 13 | | | | | Reserved1 = 0 | | | | | PayloadLength = 56 | | | | | DOI = 1 | | | | | Situation = 1 | | | | | Pld_ISAKMP_P_ISAKMP (length:44) | | | | | | NextPayload = 0 | | | | | | Reserved1 = 0 | | | | | | PayloadLength = 44 | | | | | | ProposalNumber = 1 | | | | | | ProtocolID = 1 | | | | | | SPIsize = 0 | | | | | | NumOfTransforms = 1 | | | | | | SPI = | | | | | | Pld_ISAKMP_T (length:36) | | | | | | | NextPayload = 0 | | | | | | | Reserved1 = 0 | | | | | | | PayloadLength = 36 | | | | | | | TransformNumber = 1 | | | | | | | TransformID = 1 | | | | | | | Reserved2 = 0 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 1 | | | | | | | | Value = 5 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 2 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 3 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 4 | | | | | | | | Value = 2 | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | AF = 1 | | | | | | | | Type = 11 | | | | | | | | Value = 1 | | | | | | | Attr_ISAKMP_TLV (length:8) | | | | | | | | AF = 0 | | | | | | | | Type = 12 | | | | | | | | Length = 4 | | | | | | | | Value = 00007080 | | | | Pld_ISAKMP_VID (length:20) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | VID = 7003cbc1 097dbe9c 2600ba69 83bc8b35 ===isakmp_phase1_recv_2nd=================================
Frame_Ether (length:242) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:02:00:27:cd | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:228) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 188 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:103::11 | | | DestinationAddress = 3ffe:501:ffff:102::1 | | Upp_UDP (length:188) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 188 | | | | Checksum = 50286 calc(50286) | | | Udp_ISAKMP (length:180) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = bfdc36bcb1f70834 | | | | | ResponderCookie = f2b2f61688f6e7e1 | | | | | NextPayload = 4 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 180 | | | | Pld_ISAKMP_KE (length:132) | | | | | NextPayload = 10 | | | | | Reserved1 = 0 | | | | | PayloadLength = 132 | | | | | KeyExchangeData = | | | | | 83394df1 30e3a275 641f7556 d71846d6 0e095d64 2172d153 710d3c88 871e3713 | | | | | 9734340c 2c8c2c40 e10f23ad e2023272 1e298126 867d9804 73fb2263 a07d40b6 | | | | | facb47fa 4dab4dad 164dedf1 b6f0ae7c 8264f19d fc862c4d 5007d52b 3e78b4c6 | | | | | 8a334ce2 ccf4cbee affe9e13 891f32e2 cf0c3d4d 17bac6ba bd58dadc 95452655 | | | | Pld_ISAKMP_NONCE (length:20) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | NonceData = 00000000 00000000 00000000 00000000
Frame_Ether (length:262) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:00:00:00:11 | | SourceAddress = 00:00:02:00:27:cd | | Type = 34525 | Packet_IPv6 (length:248) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 208 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:102::1 | | | DestinationAddress = 3ffe:501:ffff:103::11 | | Upp_UDP (length:208) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 208 | | | | Checksum = 38630 calc(38630) | | | Udp_ISAKMP (length:200) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = bfdc36bcb1f70834 | | | | | ResponderCookie = f2b2f61688f6e7e1 | | | | | NextPayload = 4 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 0 | | | | | MessageID = 0 | | | | | Length = 200 | | | | Pld_ISAKMP_KE (length:132) | | | | | NextPayload = 10 | | | | | Reserved1 = 0 | | | | | PayloadLength = 132 | | | | | KeyExchangeData = | | | | | 0c52f350 5cb2462e 91962883 6b97ee5c 74f77f7b 2474083b f681fb14 235e83e6 | | | | | 5d6dfaa9 0167f3de c75e2789 60e593ff 87cefa4b 70061a4c 7c27b778 ecffeab5 | | | | | 5206711a 3b001fbf 23c9597b cf647cc0 350817f2 1d59522e cf0f7405 d60ca9cd | | | | | e043728c 751464f7 9751c761 59467da7 330514f9 1b5d097a 9ba6bd4a e5e385cb | | | | Pld_ISAKMP_NONCE (length:20) | | | | | NextPayload = 13 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | NonceData = 90c3fcfd 3123876c 6032de85 b64dcbc1 | | | | Pld_ISAKMP_VID (length:20) | | | | | NextPayload = 0 | | | | | Reserved1 = 0 | | | | | PayloadLength = 20 | | | | | VID = 7003cbc1 097dbe9c 2600ba69 83bc8b35 ===isakmp_phase1_recv_4th=================================
Frame_Ether (length:146) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:02:00:27:cd | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:132) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 92 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:103::11 | | | DestinationAddress = 3ffe:501:ffff:102::1 | | Upp_UDP (length:92) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 92 | | | | Checksum = 24146 calc(24146) | | | Udp_ISAKMP (length:84) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = bfdc36bcb1f70834 | | | | | ResponderCookie = f2b2f61688f6e7e1 | | | | | NextPayload = 5 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 2 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 1 | | | | | MessageID = 0 | | | | | Length = 84 | | | | ISAKMP_Encryption (length:56) | | | | | algorithm = alg_isakmp_phase1_send_5th | | | | | IVEC = a0aaadb3 7d7e0d35 | | | | | Decrypted (length:56) | | | | | | PlainText (length:48) | | | | | | | Pld_ISAKMP_ID_IPV6_ADDR (length:24) | | | | | | | | NextPayload = 8 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 24 | | | | | | | | IDtype = 5 | | | | | | | | ProtocolID = 17 | | | | | | | | Port = 500 | | | | | | | | ID = 3ffe:501:ffff:103::11 | | | | | | | Pld_ISAKMP_HASH (length:24) | | | | | | | | NextPayload = 0 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 24 | | | | | | | | HashData = | | | | | | | | be53e264 f6e6a327 3ab241f4 949eb988 4b3390ae | | | | | | Padding = 00000000 00000007
===ALGORITHM LISTS BEGIN====================
--------------------------------------------
frame=isakmp_phase1_recv_6th
ESP=alg_isakmp_phase1_recv_6th
crypt=ike_des3cbc(hexstr("2e102729591eb58036d53ba358862da7c3b55e5ac729616eccefa9ddf2e609f842ec7cf63bb8838d26cb37d415ecc8469fb4fd5d1f9e4994c37446fa",24),hexstr("a0aaadb37d7e0d35",8))
--------------------------------------------
===ALGORITHM LISTS END======================
Frame_Ether (length:146)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:00:02:00:27:cd
| | Type = 34525
| Packet_IPv6 (length:132)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 92
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:102::1
| | | DestinationAddress = 3ffe:501:ffff:103::11
| | Upp_UDP (length:92)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 92
| | | | Checksum = 1187 calc(1187)
| | | Udp_ISAKMP (length:84)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = bfdc36bcb1f70834
| | | | | ResponderCookie = f2b2f61688f6e7e1
| | | | | NextPayload = 5
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 2
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 1
| | | | | MessageID = 0
| | | | | Length = 84
| | | | ISAKMP_Encryption (length:56)
| | | | | algorithm = alg_isakmp_phase1_recv_6th
| | | | | IVEC = bceecd55 45f70ac5
| | | | | Decrypted (length:56)
| | | | | | PlainText (length:48)
| | | | | | | Pld_ISAKMP_ID_IPV6_ADDR (length:24)
| | | | | | | | NextPayload = 8
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | IDtype = 5
| | | | | | | | ProtocolID = 17
| | | | | | | | Port = 500
| | | | | | | | ID = 3ffe:501:ffff:102::1
| | | | | | | Pld_ISAKMP_HASH (length:24)
| | | | | | | | NextPayload = 0
| | | | | | | | Reserved1 = 0
| | | | | | | | PayloadLength = 24
| | | | | | | | HashData =
| | | | | | | | b984b0d7 299882be 12c00696 ea3739d4 8a8b8b59
| | | | | | Padding = 8eedffe8 66d8b107
===isakmp_phase1_recv_6th=================================
applied algorithms={alg_isakmp_phase1_recv_6th}
Frame_Ether (length:274) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:02:00:27:cd | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:260) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 220 | | | NextHeader = 17 | | | HopLimit = 64 | | | SourceAddress = 3ffe:501:ffff:103::11 | | | DestinationAddress = 3ffe:501:ffff:102::1 | | Upp_UDP (length:220) | | | Hdr_UDP (length:8) | | | | SourcePort = 500 | | | | DestinationPort = 500 | | | | Length = 220 | | | | Checksum = 39221 calc(39221) | | | Udp_ISAKMP (length:212) | | | | Hdr_ISAKMP (length:28) | | | | | InitiatorCookie = bfdc36bcb1f70834 | | | | | ResponderCookie = f2b2f61688f6e7e1 | | | | | NextPayload = 8 | | | | | MjVer = 1 | | | | | MnVer = 0 | | | | | ExchangeType = 32 | | | | | Reserved = 0 | | | | | AFlag = 0 | | | | | CFlag = 0 | | | | | EFlag = 1 | | | | | MessageID = 65535 | | | | | Length = 212 | | | | ISAKMP_Encryption (length:184) | | | | | algorithm = alg_isakmp_phase2_send_1st | | | | | IVEC = 3534762a a2d7eb5b | | | | | Decrypted (length:184) | | | | | | PlainText (length:176) | | | | | | | Pld_ISAKMP_HASH (length:24) | | | | | | | | NextPayload = 1 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 24 | | | | | | | | HashData = | | | | | | | | 7353dec7 15a3a869 0c52d6f2 a7c0023e d91e6162 | | | | | | | Pld_ISAKMP_SA_IPsec_IDonly (length:52) | | | | | | | | NextPayload = 10 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 52 | | | | | | | | DOI = 1 | | | | | | | | Situation = 1 | | | | | | | | Pld_ISAKMP_P_IPsec_ESP (length:40) | | | | | | | | | NextPayload = 0 | | | | | | | | | Reserved1 = 0 | | | | | | | | | PayloadLength = 40 | | | | | | | | | ProposalNumber = 1 | | | | | | | | | ProtocolID = 3 | | | | | | | | | SPIsize = 4 | | | | | | | | | NumOfTransforms = 1 | | | | | | | | | SPI = 4096 | | | | | | | | | Pld_ISAKMP_T (length:28) | | | | | | | | | | NextPayload = 0 | | | | | | | | | | Reserved1 = 0 | | | | | | | | | | PayloadLength = 28 | | | | | | | | | | TransformNumber = 1 | | | | | | | | | | TransformID = 3 | | | | | | | | | | Reserved2 = 0 | | | | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | | | | AF = 1 | | | | | | | | | | | Type = 1 | | | | | | | | | | | Value = 1 | | | | | | | | | | Attr_ISAKMP_TLV (length:8) | | | | | | | | | | | AF = 0 | | | | | | | | | | | Type = 2 | | | | | | | | | | | Length = 4 | | | | | | | | | | | Value = 00007080 | | | | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | | | | AF = 1 | | | | | | | | | | | Type = 4 | | | | | | | | | | | Value = 1 | | | | | | | | | | Attr_ISAKMP_TV (length:4) | | | | | | | | | | | AF = 1 | | | | | | | | | | | Type = 5 | | | | | | | | | | | Value = 61439 | | | | | | | Pld_ISAKMP_NONCE (length:20) | | | | | | | | NextPayload = 5 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 20 | | | | | | | | NonceData = 00000000 00000000 00000000 00000001 | | | | | | | Pld_ISAKMP_ID_IPV6_ADDR_SUBNET (length:40) | | | | | | | | NextPayload = 5 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 40 | | | | | | | | IDtype = 6 | | | | | | | | ProtocolID = 0 | | | | | | | | Port = 0 | | | | | | | | ID1 = 3ffe:501:ffff:104:: | | | | | | | | ID2 = ffff:ffff:ffff:ffff:: | | | | | | | Pld_ISAKMP_ID_IPV6_ADDR_SUBNET (length:40) | | | | | | | | NextPayload = 0 | | | | | | | | Reserved1 = 0 | | | | | | | | PayloadLength = 40 | | | | | | | | IDtype = 6 | | | | | | | | ProtocolID = 0 | | | | | | | | Port = 0 | | | | | | | | ID1 = 3ffe:501:ffff:100:: | | | | | | | | ID2 = ffff:ffff:ffff:ffff:: | | | | | | Padding = 00000000 00000007
===ALGORITHM LISTS BEGIN====================
--------------------------------------------
frame=isakmp_phase2_recv_2nd
ESP=alg_isakmp_phase2_recv_2nd
crypt=ike_des3cbc(hexstr("2e102729591eb58036d53ba358862da7c3b55e5ac729616eccefa9ddf2e609f842ec7cf63bb8838d26cb37d415ecc8469fb4fd5d1f9e4994c37446fa",24),hexstr("3534762aa2d7eb5b",8))
--------------------------------------------
===ALGORITHM LISTS END======================
reverse failed with using algorithms on isakmp_phase2_recv_2nd
Frame_Ether (length:130)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:00:02:00:27:cd
| | Type = 34525
| Packet_IPv6 (length:116)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 76
| | | NextHeader = 17
| | | HopLimit = 64
| | | SourceAddress = 3ffe:501:ffff:102::1
| | | DestinationAddress = 3ffe:501:ffff:103::11
| | Upp_UDP (length:76)
| | | Hdr_UDP (length:8)
| | | | SourcePort = 500
| | | | DestinationPort = 500
| | | | Length = 76
| | | | Checksum = 46260 calc(46260)
| | | Udp_ISAKMP (length:68)
| | | | Hdr_ISAKMP (length:28)
| | | | | InitiatorCookie = bfdc36bcb1f70834
| | | | | ResponderCookie = f2b2f61688f6e7e1
| | | | | NextPayload = 8
| | | | | MjVer = 1
| | | | | MnVer = 0
| | | | | ExchangeType = 5
| | | | | Reserved = 0
| | | | | AFlag = 0
| | | | | CFlag = 0
| | | | | EFlag = 1
| | | | | MessageID = 2350602962
| | | | | Length = 68
| | | | ISAKMP_Encryption (length:40)
| | | | | IVEC = e46b250c 795f58b6
| | | | | Crypted =
| | | | | f9a5d012 dbffd972 f44e3de0 3c8aa4ac b0e5d9e1 4ea97423 b0521615 0f912a4e
| | | | | e46b250c 795f58b6
Frame_Ether (length:86)
| Hdr_Ether (length:14)
| | DestinationAddress = 00:00:00:00:00:11
| | SourceAddress = 00:00:02:00:27:cd
| | Type = 34525
| Packet_IPv6 (length:72)
| | Hdr_IPv6 (length:40)
| | | Version = 6
| | | TrafficClass = 0
| | | FlowLabel = 0
| | | PayloadLength = 32
| | | NextHeader = 58
| | | HopLimit = 255
| | | SourceAddress = 3ffe:501:ffff:102::1
| | | DestinationAddress = 3ffe:501:ffff:102::11
| | ICMPv6_NS (length:32)
| | | Type = 135
| | | Code = 0
| | | Checksum = 31664 calc(31664)
| | | Reserved = 0
| | | TargetAddress = 3ffe:501:ffff:102::11
| | | Opt_ICMPv6_SLL (length:8)
| | | | Type = 1
| | | | Length = 1
| | | | LinkLayerAddress = 00:00:02:00:27:cd
===router_ns_multi=================================
ng compare _HETHER_nut2tnA11solnode.DestinationAddress received:00:00:00:00:00:11 = 33:33:ff:00:00:11
ng compare _HDR_IPV6_router_ns_multi.DestinationAddress received:3ffe:501:ffff:102::11 = ff02::1:ff00:11
===router_ns_uni_link1=================================
ng compare _HETHER_nut2tnA10.DestinationAddress received:00:00:00:00:00:11 = 00:00:00:00:00:10
ng compare _HETHER_nut2tnA10.SourceAddress received:00:00:02:00:27:cd = 00:00:02:00:26:ba
ng compare _HDR_IPV6_router_ns_uni_link1.SourceAddress received:3ffe:501:ffff:102::1 = oneof(nutv6("Link1"),v6("3ffe:501:ffff:101::1"))
ng compare _HDR_IPV6_router_ns_uni_link1.DestinationAddress received:3ffe:501:ffff:102::11 = 3ffe:501:ffff:101::11
ng compare _ICMPV6_router_ns_uni_link1.TargetAddress received:3ffe:501:ffff:102::11 = 3ffe:501:ffff:101::11
ng count Packet_IPv6.ICMPv6_NS != Packet_IPv6.ICMPv6_NS
===router_ns_uni_tll_sll_link1=================================
ng compare _HETHER_nut2tnA10.DestinationAddress received:00:00:00:00:00:11 = 00:00:00:00:00:10
ng compare _HETHER_nut2tnA10.SourceAddress received:00:00:02:00:27:cd = 00:00:02:00:26:ba
ng compare _HDR_IPV6_router_ns_uni_tll_sll_link1.SourceAddress received:3ffe:501:ffff:102::1 = fe80::200:2ff:fe00:26ba
ng compare _HDR_IPV6_router_ns_uni_tll_sll_link1.DestinationAddress received:3ffe:501:ffff:102::11 = fe80::11
ng compare _ICMPV6_router_ns_uni_tll_sll_link1.TargetAddress received:3ffe:501:ffff:102::11 = fe80::11
===router_ns_multi_llt_link1=================================
ng compare _HETHER_nut2tnA10solnode.DestinationAddress received:00:00:00:00:00:11 = 33:33:ff:00:00:11
ng compare _HETHER_nut2tnA10solnode.SourceAddress received:00:00:02:00:27:cd = 00:00:02:00:26:ba
ng compare _HDR_IPV6_router_ns_multi_llt_link1.SourceAddress received:3ffe:501:ffff:102::1 = oneof(nutv6("Link1"),v6("3ffe:501:ffff:101::1"))
ng compare _HDR_IPV6_router_ns_multi_llt_link1.DestinationAddress received:3ffe:501:ffff:102::11 = ff02::1:ff00:11
ng compare _ICMPV6_router_ns_multi_llt_link1.TargetAddress received:3ffe:501:ffff:102::11 = fe80::11
===router_ns_uni_sll=================================
Frame_Ether (length:86) | Hdr_Ether (length:14) | | DestinationAddress = 00:00:02:00:27:cd | | SourceAddress = 00:00:00:00:00:11 | | Type = 34525 | Packet_IPv6 (length:72) | | Hdr_IPv6 (length:40) | | | Version = 6 | | | TrafficClass = 0 | | | FlowLabel = 0 | | | PayloadLength = 32 | | | NextHeader = 58 | | | HopLimit = 255 | | | SourceAddress = 3ffe:501:ffff:102::11 | | | DestinationAddress = 3ffe:501:ffff:102::1 | | ICMPv6_NA (length:32) | | | Type = 136 | | | Code = 0 | | | Checksum = 50027 calc(50027) | | | RFlag = 1 | | | SFlag = 1 | | | OFlag = 1 | | | Reserved = 0 | | | TargetAddress = 3ffe:501:ffff:102::11 | | | Opt_ICMPv6_TLL (length:8) | | | | Type = 2 | | | | Length = 1 | | | | LinkLayerAddress = 00:00:00:00:00:11