Re: IPSec - isakmpd and linux-2.6.3: Can't get it running.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



The traces seems to show that the negociation succeeded, use the setkey
utility to have a look to the spd and sadb; no routes / interfaces are
supposed to be created.

J.

On Thu, Feb 26, 2004 at 09:01:03PM -0800, Joshua M. Schmidlkofer wrote:
> Hello,
>    This is a LONG e-mail, but I really have scoured the mailing lists
> looking for a clue.  The most successful posts seemed to include all
> this info.
> 
> 
> I have been trying to get an ipsec tunnel working with isakmpd and
> 2.6.3.  I have tried 2.6.2, but to no end.
> 
> 
> I have Redhat 9 + ATrpms.
> 
> I have tried the RPM distro of isakmpd, and I have compiled from
> source.  No luck.  I think I am on the verge of functioning, but no
> routes/ifaces/whatever are created.
> 
> I have disabled conditions in the policy and that is cool. Also, I seem
> to have problems with things retrying, howver, I think that may be the
> Retransmits limiting that.  
> 
> In any case, I first tried the modified VPN-west and VPN-east, when no
> luck, I tried a X.509 certs, and finally, I found a really simple
> template of someones functioning config.  This is as follows.  
> 
> 
> Here are configs:
> 
> [General] 
> Retransmits=		5
> Exchange-max-time=	120
> Listen-on=		192.168.12.21
> 
> [Phase 1]
> 192.168.18.102=		dia-salem
> 
> [Phase 2]
> Connections=		incoming-dia-salem
> 
> [dia-salem]
> Phase=			1
> Transport=		udp
> Address=		192.168.18.102
> Configuration=		Default-main-mode
> Authentication=		abcdefghijk
> 
> [incoming-dia-salem]
> Phase=			2
> ISAKMP-peer=		dia-salem
> Configuration=		Default-quick-mode
> Local-ID=		dia-albany-net
> Remote-ID=		dia-salem-net
> 
> 
> # Client ID Section
> ####################
> [dia-albany-net]
> ID-type=                IPV4_ADDR_SUBNET
> Network=                10.44.1.0
> Netmask=                255.255.255.0
> 
> [dia-salem-net]
> ID-type=                IPV4_ADDR_SUBNET
> Network=                10.43.1.0
> Netmask=                255.255.255.0
> 
> # Main Mode description
> #######################
> [Default-main-mode]
> DOI=			IPSEC
> EXCHANGE_TYPE=		ID_PROT
> Transforms=		3DES-SHA
> 
> [Blowfish-main-mode]
> DOI=			IPSEC
> EXCHANGE_TYPE=		ID_PROT
> Transforms=		BLF-SHA-M1024
> 
> # Quick Modes
> ######################
> [Default-quick-mode]
> DOI=			IPSEC
> EXCHANGE_TYPE=		QUICK_MODE
> #Suites=			QM-ESP-AES-SHA-PFS-SUITE
> Suites=			QM-ESP-3DES-SHA-PFS-SUITE
> 
> [Blowfish-quick-mode]
> DOI=			IPSEC
> EXCHANGE_TYPE=		QUICK_MODE
> Suites=			QM-ESP-BLF-SHA-PFS-SUITE
> #Suites=			QM-ESP-BLF-SHA-SUITE
> 
> =====================
> [General]
> Retransmits=            5
> Exchange-max-time=      120
> Listen-on=              192.168.18.102
>                                                                                                                                                 
> [Phase 1]
> 192.168.12.21=          	dia-albany
> 
> [Phase 2]
> Connections=		incoming-dia-albany
> 
> [dia-albany]
> Phase=			1
> Transport=		udp
> Address=		192.168.12.21
> Configuration=          Default-main-mode
> Authentication=         abcdefghijk
> 
> [incoming-dia-albany]
> Phase=			2
> ISAKMP-peer=		dia-albany
> Configuration=          Default-quick-mode
> Local-ID=               dia-salem-net
> Remote-ID=              dia-albany-net
> 
> 
> # Client ID Section
> ####################
> [dia-albany-net]
> ID-type=                IPV4_ADDR_SUBNET
> Network=                10.44.1.0
> Netmask=                255.255.255.0
>                                                                                                                                                 
> [dia-salem-net]
> ID-type=                IPV4_ADDR_SUBNET
> Network=                10.43.1.0
> Netmask=                255.255.255.0
>                                                                                                                                                 
> # Main Mode description
> #######################
> [Default-main-mode]
> DOI=                    IPSEC
> EXCHANGE_TYPE=          ID_PROT
> Transforms=             3DES-SHA
>                                                                                                                                                 
> [Blowfish-main-mode]
> DOI=                    IPSEC
> EXCHANGE_TYPE=          ID_PROT
> Transforms=             BLF-SHA-M1024
>                                                                                                                                                 
> # Quick Modes
> ######################
> [Default-quick-mode]
> DOI=                    IPSEC
> EXCHANGE_TYPE=          QUICK_MODE
> #Suites=                 QM-ESP-AES-SHA-PFS-SUITE
> Suites=                 QM-ESP-3DES-SHA-PFS-SUITE
>                                                                                                                                                 
>  
> [Blowfish-quick-mode]
> DOI=                    IPSEC
> EXCHANGE_TYPE=          QUICK_MODE
> Suites=                 QM-ESP-BLF-SHA-PFS-SUITE
> 
> =====================
> 
> KeyNote-Version: 2
> Authorizer: "POLICY"
> Licensees: "passphrase:abcdefghijk"
> #Conditions: app_domain == "IPSec policy" && esp_present == "yes" &&
> esp_enc_alg != "null" -> "true";
>       
> 
> ============
> (Note: conditions is commented out as a testing measure)
> 
> Here is some sample debug output:
> 
> 205456.640825 Timr 10 timer_add_event: event connection_checker(0x82b4238) added last, expiration in 0s
> 205456.640930 Misc 60 connection_record_passive: passive connection "incoming-dia-albany" added
> 205456.640963 Plcy 30 policy_init: initializing
> 205456.641127 Cryp 40 x509_read_from_dir: reading certs from /etc/isakmpd/ca/
> 205456.641218 Cryp 60 x509_read_from_dir: reading certificate ca.crt
> 205456.641628 Cryp 40 x509_read_from_dir: reading certs from /etc/isakmpd/certs/
> 205456.641707 Cryp 60 x509_read_from_dir: reading certificate dia-salem-mydomain.com.crt
> 205456.642016 Cryp 70 x509_hash_enter: cert 0x82b41d8 added to bucket 28
> 205456.642047 Cryp 70 x509_hash_enter: cert 0x82b41d8 added to bucket 9
> 205456.642074 Cryp 60 x509_read_from_dir: reading certificate dia-albany.mydomain.com.crt
> 205456.642373 Cryp 70 x509_hash_enter: cert 0x82b6fd8 added to bucket 60
> 205456.642407 Cryp 70 x509_hash_enter: cert 0x82b6fd8 added to bucket 56
> 205456.642441 Cryp 40 x509_read_crls_from_dir: reading CRLs from /etc/isakmpd/crls/
> 205456.642656 Trpt 70 transport_add: adding 0x82b7db8
> 205456.642757 Trpt 50 udp_init: not binding ISAKMP UDP port to INADDR_ANY
> 205456.643165 Timr 10 timer_handle_expirations: event connection_checker(0x82b4238)
> 205456.643212 Timr 10 timer_add_event: event connection_checker(0x82b4238) added last, expiration in 60s
> 205456.643233 SA   90 sa_find: no SA matched query
> 205456.643244 Sdep 70 pf_key_v2_connection_check: SA for incoming-dia-albany missing
> 205456.643273 SA   90 sa_find: no SA matched query
> 205456.643327 Trpt 70 transport_add: adding 0x82b7ce0
> 205456.643388 Timr 10 timer_add_event: event exchange_free_aux(0x82b7df8) added last, expiration in 120s
> 205456.643417 Cryp 60 hash_get: requested algorithm 1
> 205456.643514 Exch 10 exchange_establish_p1: 0x82b7df8 dia-albany Default-main-mode policy initiator phase 1 doi 1 exchange 2 step 0
> 205456.643537 Exch 10 exchange_establish_p1: icookie 31339bcacab6e9b9 rcookie 0000000000000000
> 205456.643547 Exch 10 exchange_establish_p1: msgid 00000000 
> 205456.643563 Mesg 90 message_alloc: allocated 0x82b7f38
> 205456.643577 SA   80 sa_reference: SA 0x82b8018 now has 1 references
> 205456.643587 SA   70 sa_enter: SA 0x82b8018 added to SA list
> 205456.643596 SA   80 sa_reference: SA 0x82b8018 now has 2 references
> 205456.643605 SA   60 sa_create: sa 0x82b8018 phase 1 added to exchange 0x82b7df8 (dia-albany)
> 205456.643614 SA   80 sa_reference: SA 0x82b8018 now has 3 references
> 205456.643685 Misc 70 attribute_set_constant: no PRF in the 3DES-SHA section
> 205456.643712 Cryp 60 hash_get: requested algorithm 1
> 205456.643735 Exch 90 exchange_validate: checking for required SA
> 205456.643753 Mesg 70 message_send: message 0x82b7f38
> 205456.643768 Mesg 70 ICOOKIE: 0x31339bcacab6e9b9
> 205456.643782 Mesg 70 RCOOKIE: 0x0000000000000000
> 205456.643793 Mesg 70 NEXT_PAYLOAD: SA
> 205456.643802 Mesg 70 VERSION: 16
> 205456.643811 Mesg 70 EXCH_TYPE: ID_PROT
> 205456.643820 Mesg 70 FLAGS: [ ]
> 205456.643831 Mesg 70 MESSAGE_ID: 0x00000000
> 205456.643842 Mesg 70 LENGTH: 80
> 205456.643861 Mesg 70 message_send: 31339bca cab6e9b9 00000000 00000000 01100200 00000000 00000050 00000034
> 205456.643906 Mesg 70 message_send: 00000001 00000001 00000028 01010001 00000020 00010000 80010005 80020002
> 205456.643926 Mesg 70 message_send: 80030001 80040002 800b0001 800c0e10 
> 205456.643939 Exch 40 exchange_run: exchange 0x82b7df8 finished step 0, advancing...
> 205456.643951 Exch 90 exchange_lookup_by_name: dia-albany == dia-albany && 1 == 1?
> 205456.644053 Trpt 30 transport_send_messages: message 0x82b7f38 scheduled for retransmission 1 in 7 secs
> 205456.644083 Timr 10 timer_add_event: event message_send_expire(0x82b7f38) added before connection_checker(0x82b4238), expiration in 7s
> 205457.480172 Trpt 70 transport_add: adding 0x82b7d38
> 205457.480208 Mesg 90 message_alloc: allocated 0x82b8160
> 205457.480226 Mesg 70 message_recv: message 0x82b8160
> 205457.480240 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205457.480255 Mesg 70 RCOOKIE: 0x0000000000000000
> 205457.480265 Mesg 70 NEXT_PAYLOAD: SA
> 205457.480276 Mesg 70 VERSION: 16
> 205457.480286 Mesg 70 EXCH_TYPE: ID_PROT
> 205457.480296 Mesg 70 FLAGS: [ ]
> 205457.480308 Mesg 70 MESSAGE_ID: 0x00000000
> 205457.480318 Mesg 70 LENGTH: 80
> 205457.480339 Mesg 70 message_recv: e098ddad fecb4e73 00000000 00000000 01100200 00000000 00000050 00000034
> 205457.480361 Mesg 70 message_recv: 00000001 00000001 00000028 01010001 00000020 00010000 80010005 80020002
> 205457.480394 Mesg 70 message_recv: 80030001 80040002 800b0001 800c0e10 
> 205457.480408 SA   90 sa_find: no SA matched query
> 205457.480425 Mesg 50 message_parse_payloads: offset 28 payload SA
> 205457.480440 Mesg 60 message_validate_payloads: payload SA at 0x82b823c of message 0x82b8160
> 205457.480452 Mesg 70 DOI: 1
> 205457.480486 Exch 90 exchange_lookup_active: dia-albany == dia-albany && 1 == 1?
> 205457.480502 Exch 80 exchange_lookup_active: avoided early (pre-step 1) exchange 0x82b7df8
> 205457.480558 Timr 10 timer_add_event: event exchange_free_aux(0x82b52f8) added last, expiration in 120s
> 205457.480576 Cryp 60 hash_get: requested algorithm 1
> 205457.480603 Exch 10 exchange_setup_p1: 0x82b52f8 dia-albany Default-main-mode policy responder phase 1 doi 1 exchange 2 step 0
> 205457.480618 Exch 10 exchange_setup_p1: icookie e098ddadfecb4e73 rcookie 5919b2bd1a9711f4
> 205457.480627 Exch 10 exchange_setup_p1: msgid 00000000 
> 205457.480639 SA   80 sa_reference: SA 0x82b5438 now has 1 references
> 205457.480650 SA   70 sa_enter: SA 0x82b5438 added to SA list
> 205457.480661 SA   80 sa_reference: SA 0x82b5438 now has 2 references
> 205457.480670 SA   60 sa_create: sa 0x82b5438 phase 1 added to exchange 0x82b52f8 (dia-albany)
> 205457.480679 SA   80 sa_reference: SA 0x82b5438 now has 3 references
> 205457.480703 Mesg 50 message_parse_payloads: offset 40 payload PROPOSAL
> 205457.480716 Mesg 50 message_parse_payloads: offset 48 payload TRANSFORM
> 205457.480726 Mesg 50 Transform 0's attributes
> 205457.480737 Mesg 50 Attribute ENCRYPTION_ALGORITHM value 5
> 205457.480746 Mesg 50 Attribute HASH_ALGORITHM value 2
> 205457.480754 Mesg 50 Attribute AUTHENTICATION_METHOD value 1
> 205457.480762 Mesg 50 Attribute GROUP_DESCRIPTION value 2
> 205457.480771 Mesg 50 Attribute LIFE_TYPE value 1
> 205457.480779 Mesg 50 Attribute LIFE_DURATION value 3600
> 205457.480788 Mesg 60 message_validate_payloads: payload PROPOSAL at 0x82b8248 of message 0x82b8160
> 205457.480801 Mesg 70 NO: 1
> 205457.480811 Mesg 70 PROTO: ISAKMP
> 205457.480820 Mesg 70 SPI_SZ: 0
> 205457.480829 Mesg 70 NTRANSFORMS: 1
> 205457.480840 Mesg 60 message_validate_payloads: payload TRANSFORM at 0x82b8250 of message 0x82b8160
> 205457.480851 Mesg 70 NO: 0
> 205457.480861 Mesg 70 ID: 1
> 205457.480873 Exch 90 exchange_validate: checking for required SA
> 205457.480884 Misc 30 ipsec_responder: phase 1 exchange 2 step 0
> 205457.480900 Cryp 60 hash_get: requested algorithm 1
> 205457.480915 Negt 30 message_negotiate_sa: transform 0 proto 1 proposal 1 ok
> 205457.480930 SA   80 sa_add_transform: proto 0x82b5528 no 1 proto 1 chosen 0x82b5510 sa 0x82b5438 id 1
> 205457.481009 Misc 90 conf_match_num: LIFE_MAIN_MODE:LIFE_DURATION 60<=3600<=86400?
> 205457.481046 Negt 20 ike_phase_1_validate_prop: success
> 205457.481060 Negt 30 message_negotiate_sa: proposal 1 succeeded
> 205457.481071 Misc 20 ipsec_decode_transform: transform 0 chosen
> 205457.481104 Cryp 60 hash_get: requested algorithm 1
> 205457.481124 Misc 70 group_get: returning 0x82b55f0 of group 2
> 205457.481138 Exch 40 exchange_run: exchange 0x82b52f8 finished step 0, advancing...
> 205457.481151 Mesg 90 message_alloc: allocated 0x82b5740
> 205457.481161 SA   80 sa_reference: SA 0x82b5438 now has 4 references
> 205457.481172 Misc 30 ipsec_responder: phase 1 exchange 2 step 1
> 205457.481189 Exch 90 exchange_validate: checking for required SA
> 205457.481202 Mesg 70 message_send: message 0x82b5740
> 205457.481216 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205457.481230 Mesg 70 RCOOKIE: 0x5919b2bd1a9711f4
> 205457.481240 Mesg 70 NEXT_PAYLOAD: SA
> 205457.481250 Mesg 70 VERSION: 16
> 205457.481261 Mesg 70 EXCH_TYPE: ID_PROT
> 205457.481270 Mesg 70 FLAGS: [ ]
> 205457.481282 Mesg 70 MESSAGE_ID: 0x00000000
> 205457.481292 Mesg 70 LENGTH: 80
> 205457.481313 Mesg 70 message_send: e098ddad fecb4e73 5919b2bd 1a9711f4 01100200 00000000 00000050 00000034
> 205457.481334 Mesg 70 message_send: 00000001 00000001 00000028 01010001 00000020 00010000 80010005 80020002
> 205457.481349 Mesg 70 message_send: 80030001 80040002 800b0001 800c0e10 
> 205457.481360 Exch 40 exchange_run: exchange 0x82b52f8 finished step 1, advancing...
> 205457.481470 Trpt 30 transport_send_messages: message 0x82b5740 scheduled for retransmission 1 in 7 secs
> 205457.481500 Timr 10 timer_add_event: event message_send_expire(0x82b5740) added before connection_checker(0x82b4238), expiration in 7s
> 205457.620633 Trpt 70 transport_add: adding 0x82b5868
> 205457.620661 Mesg 90 message_alloc: allocated 0x82b58c0
> 205457.620675 Mesg 70 message_recv: message 0x82b58c0
> 205457.620689 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205457.620701 Mesg 70 RCOOKIE: 0x5919b2bd1a9711f4
> 205457.620711 Mesg 70 NEXT_PAYLOAD: KEY_EXCH
> 205457.620720 Mesg 70 VERSION: 16
> 205457.620730 Mesg 70 EXCH_TYPE: ID_PROT
> 205457.620739 Mesg 70 FLAGS: [ ]
> 205457.620750 Mesg 70 MESSAGE_ID: 0x00000000
> 205457.620760 Mesg 70 LENGTH: 180
> 205457.620781 Mesg 70 message_recv: e098ddad fecb4e73 5919b2bd 1a9711f4 04100200 00000000 000000b4 0a000084
> 205457.620801 Mesg 70 message_recv: c88d8850 abe6be42 dd12de3a 6df12bda 3dc77649 1e777c57 690ddd59 ad9a32d0
> 205457.620820 Mesg 70 message_recv: 1bd8d5a7 288894cc e4709f80 99bde188 42cfa8e6 f2f595f7 1ff1d3ac ed3b5fa1
> 205457.620839 Mesg 70 message_recv: ffe0495a 2a26410a 4d69a564 4d62519f 2c18a52e d790e358 54ef1a35 1da813ff
> 205457.620857 Mesg 70 message_recv: 868f65f6 c9220281 a42182d5 dc3309db 4a6e2856 3bbbe4aa d411a1eb 28a262f8
> 205457.620873 Mesg 70 message_recv: 00000014 3c38e1f5 e342883c 61f74e39 3c7e7511 
> 205457.620884 SA   80 sa_reference: SA 0x82b5438 now has 5 references
> 205457.620897 Mesg 90 message_check_duplicate: last_received 0x82b8160
> 205457.620908 Mesg 20 message_free: freeing 0x82b5740
> 205457.620918 Timr 10 timer_remove_event: removing event message_send_expire(0x82b5740)
> 205457.620928 SA   80 sa_release: SA 0x82b5438 had 5 references
> 205457.620942 Mesg 50 message_parse_payloads: offset 28 payload KEY_EXCH
> 205457.620956 Mesg 50 message_parse_payloads: offset 160 payload NONCE
> 205457.620968 Mesg 60 message_validate_payloads: payload KEY_EXCH at 0x82b599c of message 0x82b58c0
> 205457.620980 Mesg 60 message_validate_payloads: payload NONCE at 0x82b5a20 of message 0x82b58c0
> 205457.620994 Exch 90 exchange_validate: checking for required KEY_EXCH
> 205457.621004 Exch 90 exchange_validate: checking for required NONCE
> 205457.621014 Misc 30 ipsec_responder: phase 1 exchange 2 step 2
> 205457.621027 Misc 80 ipsec_g_x: g^xi:
> 205457.621047 Misc 80 c88d8850 abe6be42 dd12de3a 6df12bda 3dc77649 1e777c57 690ddd59 ad9a32d0
> 205457.621066 Misc 80 1bd8d5a7 288894cc e4709f80 99bde188 42cfa8e6 f2f595f7 1ff1d3ac ed3b5fa1
> 205457.621084 Misc 80 ffe0495a 2a26410a 4d69a564 4d62519f 2c18a52e d790e358 54ef1a35 1da813ff
> 205457.621102 Misc 80 868f65f6 c9220281 a42182d5 dc3309db 4a6e2856 3bbbe4aa d411a1eb 28a262f8
> 205457.621113 Exch 80 exchange_nonce: NONCE_i:
> 205457.621127 Exch 80 3c38e1f5 e342883c 61f74e39 3c7e7511 
> 205457.621137 Mesg 20 message_free: freeing 0x82b8160
> 205457.621170 SA   80 sa_release: SA 0x82b5438 had 4 references
> 205457.621187 Exch 40 exchange_run: exchange 0x82b52f8 finished step 2, advancing...
> 205457.621200 Mesg 90 message_alloc: allocated 0x82b8160
> 205457.621210 SA   80 sa_reference: SA 0x82b5438 now has 4 references
> 205457.621221 Misc 30 ipsec_responder: phase 1 exchange 2 step 3
> 205457.637792 Misc 80 ipsec_g_x: g^xr:
> 205457.637826 Misc 80 373094fc 200cc4eb 8d31b5df 1b9901ab cdcc9d72 27d9c882 ee42a884 7435926e
> 205457.637848 Misc 80 0baf741c 3320ff96 8db5ef85 65469eae 2f40d47b 1378fb3d 42db3384 08f7d33a
> 205457.637867 Misc 80 d02c3e75 f0e2872d b307df33 8973f55e c326bd58 930ebf91 6936ba7c 39862282
> 205457.637886 Misc 80 ed8f4745 7e402046 22a0d682 ed516428 e83aeff1 63546a49 08d45091 006d50ed
> 205457.637901 Exch 80 exchange_nonce: NONCE_r:
> 205457.637916 Exch 80 b2873131 29e1fc68 0686160a bfe1b51c 
> 205457.637929 Exch 90 exchange_validate: checking for required KEY_EXCH
> 205457.637941 Exch 90 exchange_validate: checking for required NONCE
> 205457.637952 Mesg 70 message_send: message 0x82b8160
> 205457.637966 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205457.637979 Mesg 70 RCOOKIE: 0x5919b2bd1a9711f4
> 205457.637989 Mesg 70 NEXT_PAYLOAD: KEY_EXCH
> 205457.637998 Mesg 70 VERSION: 16
> 205457.638008 Mesg 70 EXCH_TYPE: ID_PROT
> 205457.638017 Mesg 70 FLAGS: [ ]
> 205457.638028 Mesg 70 MESSAGE_ID: 0x00000000
> 205457.638038 Mesg 70 LENGTH: 180
> 205457.638057 Mesg 70 message_send: e098ddad fecb4e73 5919b2bd 1a9711f4 04100200 00000000 000000b4 0a000084
> 205457.638076 Mesg 70 message_send: 373094fc 200cc4eb 8d31b5df 1b9901ab cdcc9d72 27d9c882 ee42a884 7435926e
> 205457.638096 Mesg 70 message_send: 0baf741c 3320ff96 8db5ef85 65469eae 2f40d47b 1378fb3d 42db3384 08f7d33a
> 205457.638118 Mesg 70 message_send: d02c3e75 f0e2872d b307df33 8973f55e c326bd58 930ebf91 6936ba7c 39862282
> 205457.638139 Mesg 70 message_send: ed8f4745 7e402046 22a0d682 ed516428 e83aeff1 63546a49 08d45091 006d50ed
> 205457.638155 Mesg 70 message_send: 00000014 b2873131 29e1fc68 0686160a bfe1b51c 
> 205457.638165 Exch 40 exchange_run: exchange 0x82b52f8 finished step 3, advancing...
> 205457.638258 Trpt 30 transport_send_messages: message 0x82b8160 scheduled for retransmission 1 in 7 secs
> 205457.638286 Timr 10 timer_add_event: event message_send_expire(0x82b8160) added before connection_checker(0x82b4238), expiration in 7s
> 205457.655213 Negt 80 ike_phase_1_post_exchange_KE_NONCE: g^xy:
> 205457.655246 Negt 80 991caf8c 9e55592e 05600039 cfeceb56 57079ad5 c7ebe093 c7d191d8 f8a81344
> 205457.655265 Negt 80 e8d7ce45 4430a075 b0617974 98c21e40 ccfec379 0997aaa0 a03f5be7 8f230016
> 205457.655285 Negt 80 0a729ada 2c48d1d5 819a6dd6 bfd16cd8 745dadf7 06a778e9 03df6a17 90dfffc3
> 205457.655303 Negt 80 d5fd376b f9ea41f2 672d94fb 8d318e5d 79171fc6 da460159 eebeda9f e0f7c6e6
> 205457.655328 Cryp 60 hash_get: requested algorithm 1
> 205457.655377 Negt 80 ike_phase_1_post_exchange_KE_NONCE: SKEYID:
> 205457.655398 Negt 80 94fb1ce9 88c25bf9 4f6efa31 0c4c28df a45ea769 
> 205457.655409 Cryp 60 hash_get: requested algorithm 1
> 205457.655440 Negt 80 ike_phase_1_post_exchange_KE_NONCE: SKEYID_d:
> 205457.655457 Negt 80 e977d820 e56aec4c 9896aa25 0576a498 6ea4e3ff 
> 205457.655480 Negt 80 ike_phase_1_post_exchange_KE_NONCE: SKEYID_a:
> 205457.655497 Negt 80 0fd88436 1afdedb6 adde22ba 4d959bcf 47083117 
> 205457.655521 Negt 80 ike_phase_1_post_exchange_KE_NONCE: SKEYID_e:
> 205457.655538 Negt 80 cc3bffe6 cf49d92e eb405dd6 37c7d90e 65380477 
> 205457.655547 Cryp 60 hash_get: requested algorithm 1
> 205457.655591 Cryp 40 crypto_init: key:
> 205457.655613 Cryp 40 2d58ba5b d96c948d 9ca19184 fc163905 2554b6bb 979cbeba 
> 205457.655645 Cryp 50 crypto_init_iv: initialized IV:
> 205457.655660 Cryp 50 a1019931 fa972e33 
> 205457.839672 Trpt 70 transport_add: adding 0x82b5d40
> 205457.839701 Mesg 90 message_alloc: allocated 0x82b5e00
> 205457.839714 Mesg 70 message_recv: message 0x82b5e00
> 205457.839730 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205457.839745 Mesg 70 RCOOKIE: 0x5919b2bd1a9711f4
> 205457.839755 Mesg 70 NEXT_PAYLOAD: ID
> 205457.839765 Mesg 70 VERSION: 16
> 205457.839774 Mesg 70 EXCH_TYPE: ID_PROT
> 205457.839785 Mesg 70 FLAGS: [ ENC ]
> 205457.839820 Mesg 70 MESSAGE_ID: 0x00000000
> 205457.839833 Mesg 70 LENGTH: 92
> 205457.839854 Mesg 70 message_recv: e098ddad fecb4e73 5919b2bd 1a9711f4 05100201 00000000 0000005c 6bb44cc6
> 205457.839874 Mesg 70 message_recv: d398467c 979eddef b2bd4d87 dd003c9c 7451fc1e c9fae365 d19e60e4 d2585240
> 205457.839891 Mesg 70 message_recv: 8396e294 d8fec324 818bf999 00bb7860 d71ee993 af6243d3 77725627 
> 205457.839903 SA   80 sa_reference: SA 0x82b5438 now has 5 references
> 205457.839913 Mesg 90 message_check_duplicate: last_received 0x82b58c0
> 205457.839923 Mesg 20 message_free: freeing 0x82b8160
> 205457.839934 Timr 10 timer_remove_event: removing event message_send_expire(0x82b8160)
> 205457.839946 SA   80 sa_release: SA 0x82b5438 had 5 references
> 205457.839979 Cryp 10 crypto_decrypt: before decryption:
> 205457.840007 Cryp 10 6bb44cc6 d398467c 979eddef b2bd4d87 dd003c9c 7451fc1e c9fae365 d19e60e4
> 205457.840026 Cryp 10 d2585240 8396e294 d8fec324 818bf999 00bb7860 d71ee993 af6243d3 77725627
> 205457.840067 Cryp 30 crypto_decrypt: after decryption:
> 205457.840090 Cryp 30 0800000c 01000000 4041b615 0b000018 bba3319c 7d5890b5 5edc1af0 439ccd60
> 205457.840110 Cryp 30 aef7dfbc 0000001c 00000001 01106002 e098ddad fecb4e73 5919b2bd 1a9711f4
> 205457.840122 Mesg 50 message_parse_payloads: offset 28 payload ID
> 205457.840134 Mesg 50 message_parse_payloads: offset 40 payload HASH
> 205457.840144 Mesg 50 message_parse_payloads: offset 64 payload NOTIFY
> 205457.840157 Mesg 60 message_validate_payloads: payload ID at 0x82b5edc of message 0x82b5e00
> 205457.840172 Mesg 70 TYPE: 1
> 205457.840183 Mesg 70 DOI_DATA: 0x000000
> 205457.840195 Mesg 40 ipsec_validate_id_information: proto 0 port 0 type 1
> 205457.840205 Mesg 40 ipsec_validate_id_information: IPv4:
> 205457.840214 Mesg 40 4041b615 
> 205457.840224 Mesg 60 message_validate_payloads: payload HASH at 0x82b5ee8 of message 0x82b5e00
> 205457.840236 Mesg 60 message_validate_payloads: payload NOTIFY at 0x82b5f00 of message 0x82b5e00
> 205457.840247 Mesg 70 DOI: IPSEC
> 205457.840256 Mesg 70 PROTO: ISAKMP
> 205457.840266 Mesg 70 SPI_SZ: 16
> 205457.840277 Mesg 70 MSG_TYPE: INITIAL_CONTACT
> 205457.840290 Exch 90 exchange_validate: checking for required ID
> 205457.840300 Exch 90 exchange_validate: checking for required AUTH
> 205457.840310 Misc 30 ipsec_responder: phase 1 exchange 2 step 4
> 205457.840335 Negt 40 ike_phase_1_recv_ID: IPV4_ADDR:
> 205457.840365 Negt 40 4041b615 
> 205457.840378 Misc 80 pre_shared_decode_hash: HASH_I:
> 205457.840395 Misc 80 bba3319c 7d5890b5 5edc1af0 439ccd60 aef7dfbc 
> 205457.840404 Cryp 60 hash_get: requested algorithm 1
> 205457.840444 Negt 80 ike_phase_1_recv_AUTH: computed HASH_I:
> 205457.840464 Negt 80 bba3319c 7d5890b5 5edc1af0 439ccd60 aef7dfbc 
> 205457.840477 SA   90 sa_find: no SA matched query
> 205457.840488 Mesg 20 message_free: freeing 0x82b58c0
> 205457.840499 Trpt 70 transport_release: freeing 0x82b5868
> 205457.840514 SA   80 sa_release: SA 0x82b5438 had 4 references
> 205457.840525 Cryp 50 crypto_update_iv: updated IV:
> 205457.840537 Cryp 50 af6243d3 77725627 
> 205457.840546 Exch 40 exchange_run: exchange 0x82b52f8 finished step 4, advancing...
> 205457.840559 Mesg 90 message_alloc: allocated 0x82b8160
> 205457.840569 SA   80 sa_reference: SA 0x82b5438 now has 4 references
> 205457.840580 Misc 30 ipsec_responder: phase 1 exchange 2 step 5
> 205457.840615 Negt 40 ike_phase_1_send_ID: IPV4_ADDR:
> 205457.840631 Negt 40 4041bc66 
> 205457.840648 Cryp 60 hash_get: requested algorithm 1
> 205457.840688 Misc 80 pre_shared_encode_hash: HASH_R:
> 205457.840708 Misc 80 777800fb 7a60d2eb 82e5271b 63ecda93 a210a00f 
> 205457.840725 Exch 90 exchange_validate: checking for required ID
> 205457.840738 Exch 90 exchange_validate: checking for required AUTH
> 205457.840754 Cryp 10 crypto_encrypt: before encryption:
> 205457.840779 Cryp 10 0800000c 01000000 4041bc66 0b000018 777800fb 7a60d2eb 82e5271b 63ecda93
> 205457.840799 Cryp 10 a210a00f 0000001c 00000001 01106002 e098ddad fecb4e73 5919b2bd 1a9711f4
> 205457.840829 Cryp 30 crypto_encrypt: after encryption:
> 205457.840851 Cryp 30 d24040bc 51728d3d 1f6891d3 08131b8a 2f0ab58b aeb6c319 603ca545 d567dcc3
> 205457.840891 Cryp 30 4c951e5c 7302061a 3be114dd 12f4ac9c ac55c076 3f1da2ed cce094ea c1130e10
> 205457.840903 Cryp 50 crypto_update_iv: updated IV:
> 205457.840915 Cryp 50 cce094ea c1130e10 
> 205457.840925 Mesg 70 message_send: message 0x82b8160
> 205457.840938 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205457.840951 Mesg 70 RCOOKIE: 0x5919b2bd1a9711f4
> 205457.840962 Mesg 70 NEXT_PAYLOAD: ID
> 205457.840973 Mesg 70 VERSION: 16
> 205457.840984 Mesg 70 EXCH_TYPE: ID_PROT
> 205457.840995 Mesg 70 FLAGS: [ ENC ]
> 205457.841009 Mesg 70 MESSAGE_ID: 0x00000000
> 205457.841020 Mesg 70 LENGTH: 92
> 205457.841041 Mesg 70 message_send: e098ddad fecb4e73 5919b2bd 1a9711f4 05100201 00000000 0000005c d24040bc
> 205457.841064 Mesg 70 message_send: 51728d3d 1f6891d3 08131b8a 2f0ab58b aeb6c319 603ca545 d567dcc3 4c951e5c
> 205457.841084 Mesg 70 message_send: 7302061a 3be114dd 12f4ac9c ac55c076 3f1da2ed cce094ea c1130e10 
> 205457.841095 Exch 40 exchange_run: exchange 0x82b52f8 finished step 5, advancing...
> 205457.841175 Exch 10 exchange_finalize: 0x82b52f8 dia-albany Default-main-mode policy responder phase 1 doi 1 exchange 2 step 6
> 205457.841196 Exch 10 exchange_finalize: icookie e098ddadfecb4e73 rcookie 5919b2bd1a9711f4
> 205457.841206 Exch 10 exchange_finalize: msgid 00000000 
> 205457.841220 SA   90 sa_find: no SA matched query
> 205457.841262 Exch 10 exchange_finalize: phase 1 done: initiator id 4041b615: 192.168.12.21, responder id 4041bc66: 192.168.18.102, src: 192.168.18.102 dst: 192.168.12.21
> 205457.841296 Timr 10 timer_add_event: event sa_soft_expire(0x82b5438) added last, expiration in 3186s
> 205457.841310 SA   80 sa_reference: SA 0x82b5438 now has 5 references
> 205457.841322 Timr 10 timer_add_event: event sa_hard_expire(0x82b5438) added last, expiration in 3600s
> 205457.841332 SA   80 sa_reference: SA 0x82b5438 now has 6 references
> 205457.841357 SA   80 sa_release: SA 0x82b5438 had 6 references
> 205458.153879 Trpt 70 transport_add: adding 0x82b5868
> 205458.153912 Mesg 90 message_alloc: allocated 0x82b5938
> 205458.153926 Mesg 70 message_recv: message 0x82b5938
> 205458.153940 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205458.153953 Mesg 70 RCOOKIE: 0x5919b2bd1a9711f4
> 205458.153964 Mesg 70 NEXT_PAYLOAD: HASH
> 205458.153973 Mesg 70 VERSION: 16
> 205458.153983 Mesg 70 EXCH_TYPE: QUICK_MODE
> 205458.153994 Mesg 70 FLAGS: [ ENC ]
> 205458.154006 Mesg 70 MESSAGE_ID: 0x05309347
> 205458.154016 Mesg 70 LENGTH: 292
> 205458.154035 Mesg 70 message_recv: e098ddad fecb4e73 5919b2bd 1a9711f4 08102001 05309347 00000124 37b259ab
> 205458.154055 Mesg 70 message_recv: bd2ea316 b0149137 a3ee4042 e209c032 2fb3053c 75403c45 e9dd7225 ebe63570
> 205458.154074 Mesg 70 message_recv: f8c7efa5 1e9813e2 1c3ca0ac c200d485 b044a779 0d7c5abe 59c1cfa4 0e2b87a2
> 205458.154093 Mesg 70 message_recv: ae3491dd 51cb14b9 4dd8b9eb ab493942 29693748 e7edf987 d8927162 89a16bfd
> 205458.154111 Mesg 70 message_recv: 6f6343d9 e4c77595 56c91213 5dd1277f f838ba42 75848d0a f116ae8f ed6767d8
> 205458.154131 Mesg 70 message_recv: b3c2bcbb f88fd377 fbc6a3c3 783c5526 b7cf2b25 00c90cae 53700fcd 98540676
> 205458.154149 Mesg 70 message_recv: 598cafdd e02c2bf0 2da7bdd3 a1d8e43d 2d3f4ae7 78a09d92 b39200a7 365e6259
> 205458.154168 Mesg 70 message_recv: 55c33cb5 5f9fe060 12e6f0b1 bf606589 bbba91b0 2634906e ada2af9a 7b8b55d2
> 205458.154187 Mesg 70 message_recv: d09cbc36 3545338d 8083caa9 0ea6e4af d83aa9d8 58da0202 5cb61cd0 90246076
> 205458.154197 Mesg 70 message_recv: 6517567d 
> 205458.154208 SA   80 sa_reference: SA 0x82b5438 now has 6 references
> 205458.154228 Cryp 60 hash_get: requested algorithm 1
> 205458.154240 Cryp 80 ipsec_get_keystate: final phase 1 IV:
> 205458.154252 Cryp 80 cce094ea c1130e10 
> 205458.154261 Cryp 80 ipsec_get_keystate: message ID:
> 205458.154273 Cryp 80 05309347 
> 205458.154293 Cryp 50 crypto_init_iv: initialized IV:
> 205458.154306 Cryp 50 7f3c7d4c 76dacc76 
> 205458.154332 Cryp 80 ipsec_get_keystate: phase 2 IV:
> 205458.154343 Cryp 80 7f3c7d4c 76dacc76 
> 205458.154354 Cryp 10 crypto_decrypt: before decryption:
> 205458.154372 Cryp 10 37b259ab bd2ea316 b0149137 a3ee4042 e209c032 2fb3053c 75403c45 e9dd7225
> 205458.154391 Cryp 10 ebe63570 f8c7efa5 1e9813e2 1c3ca0ac c200d485 b044a779 0d7c5abe 59c1cfa4
> 205458.154431 Cryp 10 0e2b87a2 ae3491dd 51cb14b9 4dd8b9eb ab493942 29693748 e7edf987 d8927162
> 205458.154452 Cryp 10 89a16bfd 6f6343d9 e4c77595 56c91213 5dd1277f f838ba42 75848d0a f116ae8f
> 205458.154471 Cryp 10 ed6767d8 b3c2bcbb f88fd377 fbc6a3c3 783c5526 b7cf2b25 00c90cae 53700fcd
> 205458.154489 Cryp 10 98540676 598cafdd e02c2bf0 2da7bdd3 a1d8e43d 2d3f4ae7 78a09d92 b39200a7
> 205458.154507 Cryp 10 365e6259 55c33cb5 5f9fe060 12e6f0b1 bf606589 bbba91b0 2634906e ada2af9a
> 205458.154525 Cryp 10 7b8b55d2 d09cbc36 3545338d 8083caa9 0ea6e4af d83aa9d8 58da0202 5cb61cd0
> 205458.154536 Cryp 10 90246076 6517567d 
> 205458.154608 Cryp 30 crypto_decrypt: after decryption:
> 205458.154631 Cryp 30 01000018 f648e931 abc6d522 c230b5b8 70e19797 f518cb88 0a000034 00000001
> 205458.154651 Cryp 30 00000001 00000028 01030401 95251d0f 0000001c 01030000 80010001 800204b0
> 205458.154669 Cryp 30 80040001 80050002 80030002 04000014 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556
> 205458.154693 Cryp 30 05000084 74b0d1aa ba89a93b 1445d03b f74136fb 51f7eddf efd1e487 a19a9d1b
> 205458.154711 Cryp 30 43b4eda8 c445cb29 e1d9415a d1a46360 2deb9788 176a2053 b8e3eaf8 e76f9b56
> 205458.154729 Cryp 30 8408f92d af7e3e0c e9d6cbc1 ef731251 fba2fe28 6a3ab3a1 260f8b3c a6b71e0e
> 205458.154747 Cryp 30 1ed04aec fe65a90b 01061c81 b3688c9d 42867acb de7bfec8 05980b0b 0f5df8c0
> 205458.154767 Cryp 30 839bcfff 05000010 04000000 0a2c0100 ffffff00 00000010 04000000 0a2b0100
> 205458.154778 Cryp 30 ffffff00 00000000 
> 205458.154790 Mesg 50 message_parse_payloads: offset 28 payload HASH
> 205458.154802 Mesg 50 message_parse_payloads: offset 52 payload SA
> 205458.154813 Mesg 50 message_parse_payloads: offset 104 payload NONCE
> 205458.154822 Mesg 50 message_parse_payloads: offset 124 payload KEY_EXCH
> 205458.154832 Mesg 50 message_parse_payloads: offset 256 payload ID
> 205458.154843 Mesg 50 message_parse_payloads: offset 272 payload ID
> 205458.154854 Mesg 60 message_validate_payloads: payload SA at 0x82b615c of message 0x82b5938
> 205458.154868 Mesg 70 DOI: 1
> 205458.154905 Timr 10 timer_add_event: event exchange_free_aux(0x82baa58) added before sa_soft_expire(0x82b5438), expiration in 120s
> 205458.154925 Exch 10 exchange_setup_p2: 0x82baa58 <unnamed> <no policy> policy responder phase 2 doi 1 exchange 32 step 0
> 205458.154935 Exch 10 exchange_setup_p2: icookie e098ddadfecb4e73 rcookie 5919b2bd1a9711f4
> 205458.154944 Exch 10 exchange_setup_p2: msgid 05309347 sa_list 
> 205458.154956 SA   80 sa_reference: SA 0x82bab18 now has 1 references
> 205458.154965 SA   70 sa_enter: SA 0x82bab18 added to SA list
> 205458.154974 SA   80 sa_reference: SA 0x82bab18 now has 2 references
> 205458.154984 SA   60 sa_create: sa 0x82bab18 phase 2 added to exchange 0x82baa58 (<unnamed>)
> 205458.154993 Mesg 50 message_parse_payloads: offset 64 payload PROPOSAL
> 205458.155004 Mesg 50 message_parse_payloads: offset 76 payload TRANSFORM
> 205458.155014 Mesg 50 Transform 1's attributes
> 205458.155025 Mesg 50 Attribute SA_LIFE_TYPE value 1
> 205458.155033 Mesg 50 Attribute SA_LIFE_DURATION value 1200
> 205458.155041 Mesg 50 Attribute ENCAPSULATION_MODE value 1
> 205458.155050 Mesg 50 Attribute AUTHENTICATION_ALGORITHM value 2
> 205458.155058 Mesg 50 Attribute GROUP_DESCRIPTION value 2
> 205458.155068 Mesg 60 message_validate_payloads: payload PROPOSAL at 0x82b6168 of message 0x82b5938
> 205458.155078 Mesg 70 NO: 1
> 205458.155088 Mesg 70 PROTO: IPSEC_ESP
> 205458.155097 Mesg 70 SPI_SZ: 4
> 205458.155106 Mesg 70 NTRANSFORMS: 1
> 205458.155116 Mesg 60 message_validate_payloads: payload TRANSFORM at 0x82b6174 of message 0x82b5938
> 205458.155126 Mesg 70 NO: 1
> 205458.155135 Mesg 70 ID: 3
> 205458.155147 Mesg 60 message_validate_payloads: payload KEY_EXCH at 0x82b61a4 of message 0x82b5938
> 205458.155158 Mesg 60 message_validate_payloads: payload ID at 0x82b6228 of message 0x82b5938
> 205458.155169 Mesg 70 TYPE: 4
> 205458.155180 Mesg 70 DOI_DATA: 0x000000
> 205458.155191 Mesg 40 ipsec_validate_id_information: proto 0 port 0 type 4
> 205458.155200 Mesg 40 ipsec_validate_id_information: IPv4 network/netmask:
> 205458.155211 Mesg 40 0a2c0100 ffffff00 
> 205458.155240 Mesg 60 message_validate_payloads: payload ID at 0x82b6238 of message 0x82b5938
> 205458.155256 Mesg 70 TYPE: 4
> 205458.155269 Mesg 70 DOI_DATA: 0x000000
> 205458.155279 Mesg 40 ipsec_validate_id_information: proto 0 port 0 type 4
> 205458.155289 Mesg 40 ipsec_validate_id_information: IPv4 network/netmask:
> 205458.155301 Mesg 40 0a2b0100 ffffff00 
> 205458.155326 Mesg 60 message_validate_payloads: payload HASH at 0x82b6144 of message 0x82b5938
> 205458.155340 Mesg 60 message_validate_payloads: payload NONCE at 0x82b6190 of message 0x82b5938
> 205458.155355 Exch 90 exchange_validate: checking for required HASH
> 205458.155366 Exch 90 exchange_validate: checking for required SA
> 205458.155375 Exch 90 exchange_validate: checking for required NONCE
> 205458.155384 Misc 30 ipsec_responder: phase 2 exchange 32 step 0
> 205458.155405 Negt 90 responder_recv_HASH_SA_NONCE: SKEYID_a:
> 205458.155423 Negt 90 0fd88436 1afdedb6 adde22ba 4d959bcf 47083117 
> 205458.155433 Cryp 60 hash_get: requested algorithm 1
> 205458.155451 Negt 90 responder_recv_HASH_SA_NONCE: message_id:
> 205458.155464 Negt 90 05309347 
> 205458.155474 Negt 90 responder_recv_HASH_SA_NONCE: message after HASH:
> 205458.155494 Negt 90 0a000034 00000001 00000001 00000028 01030401 95251d0f 0000001c 01030000
> 205458.155513 Negt 90 80010001 800204b0 80040001 80050002 80030002 04000014 c7d873ec 1fbdb1c9
> 205458.155532 Negt 90 2a7f1a1c 854cb556 05000084 74b0d1aa ba89a93b 1445d03b f74136fb 51f7eddf
> 205458.155550 Negt 90 efd1e487 a19a9d1b 43b4eda8 c445cb29 e1d9415a d1a46360 2deb9788 176a2053
> 205458.155569 Negt 90 b8e3eaf8 e76f9b56 8408f92d af7e3e0c e9d6cbc1 ef731251 fba2fe28 6a3ab3a1
> 205458.155587 Negt 90 260f8b3c a6b71e0e 1ed04aec fe65a90b 01061c81 b3688c9d 42867acb de7bfec8
> 205458.155607 Negt 90 05980b0b 0f5df8c0 839bcfff 05000010 04000000 0a2c0100 ffffff00 00000010
> 205458.155619 Negt 90 04000000 0a2b0100 ffffff00 
> 205458.155643 Negt 90 responder_recv_HASH_SA_NONCE: computed HASH(1):
> 205458.155659 Negt 90 f648e931 abc6d522 c230b5b8 70e19797 f518cb88 
> 205458.155670 Negt 90 responder_recv_HASH_SA_NONCE: IDci:
> 205458.155684 Negt 90 04000000 0a2c0100 ffffff00 
> 205458.155694 Negt 90 responder_recv_HASH_SA_NONCE: IDcr:
> 205458.155707 Negt 90 04000000 0a2b0100 ffffff00 
> 205458.155720 Negt 30 message_negotiate_sa: transform 1 proto 3 proposal 1 ok
> 205458.155734 SA   80 sa_add_transform: proto 0x82b5a10 no 1 proto 3 chosen 0x82b8298 sa 0x82bab18 id 3
> 205458.155895 Plcy 40 check_policy: adding authorizer [passphrase:abcdefghijk]
> 205458.155925 Plcy 40 check_policy: adding authorizer [passphrase-md5-hex:92b9cccc0b98c3a0b8d0df25a421c0e3]
> 205458.155940 Plcy 40 check_policy: adding authorizer [passphrase-sha1-hex:5dfac39f71ad4d35a153ba4fc12d943a0e178e6a]
> 205458.155998 Plcy 40 check_policy: kn_do_query returned 1
> 205458.156034 Negt 30 message_negotiate_sa: proposal 1 succeeded
> 205458.156049 Misc 20 ipsec_decode_transform: transform 1 chosen
> 205458.156067 Misc 70 group_get: returning 0x82bb578 of group 2
> 205458.156080 Exch 80 exchange_nonce: NONCE_i:
> 205458.156095 Exch 80 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.156108 Misc 80 ipsec_g_x: g^xi:
> 205458.156127 Misc 80 74b0d1aa ba89a93b 1445d03b f74136fb 51f7eddf efd1e487 a19a9d1b 43b4eda8
> 205458.156146 Misc 80 c445cb29 e1d9415a d1a46360 2deb9788 176a2053 b8e3eaf8 e76f9b56 8408f92d
> 205458.156166 Misc 80 af7e3e0c e9d6cbc1 ef731251 fba2fe28 6a3ab3a1 260f8b3c a6b71e0e 1ed04aec
> 205458.156184 Misc 80 fe65a90b 01061c81 b3688c9d 42867acb de7bfec8 05980b0b 0f5df8c0 839bcfff
> 205458.156196 Misc 60 connection_passive_lookup_by_ids: returned "incoming-dia-albany"
> 205458.156209 Cryp 50 crypto_update_iv: updated IV:
> 205458.156225 Cryp 50 90246076 6517567d 
> 205458.156235 Exch 40 exchange_run: exchange 0x82baa58 finished step 0, advancing...
> 205458.156247 Mesg 90 message_alloc: allocated 0x82bae78
> 205458.156258 SA   80 sa_reference: SA 0x82b5438 now has 7 references
> 205458.156269 Misc 30 ipsec_responder: phase 2 exchange 32 step 1
> 205458.156278 Cryp 60 hash_get: requested algorithm 1
> 205458.156300 Sdep 80 pf_key_v2_write: iov[0]:
> 205458.156337 Sdep 80 02010003 0c000000 04000000 94140000 
> 205458.156379 Sdep 80 pf_key_v2_write: iov[1]:
> 205458.156399 Sdep 80 02001300 00000000 00000000 00000000 
> 205458.156408 Sdep 80 pf_key_v2_write: iov[2]:
> 205458.156425 Sdep 80 03000500 00000000 02000000 4041b615 00000000 00000000 
> 205458.156436 Sdep 80 pf_key_v2_write: iov[3]:
> 205458.156452 Sdep 80 03000600 00000000 02000000 4041bc66 00000000 00000000 
> 205458.156461 Sdep 80 pf_key_v2_write: iov[4]:
> 205458.156473 Sdep 80 02001000 00010000 ffffffff 00000000 
> 205458.156528 Sdep 80 pf_key_v2_read: msg:
> 205458.156557 Sdep 80 02010003 18000000 04000000 94140000 02000100 7f5b3143 00000000 00000000
> 205458.156576 Sdep 80 04000300 00000000 00000000 00000000 1e000000 00000000 00000000 00000000
> 205458.156596 Sdep 80 04000400 00000000 00000000 00000000 00000000 00000000 00000000 00000000
> 205458.156616 Sdep 80 04000200 00000000 00000000 00000000 a2cd3e40 00000000 00000000 00000000
> 205458.156635 Sdep 80 03000500 00200000 02000000 4041b615 00000000 00000000 03000600 00200000
> 205458.156654 Sdep 80 02000000 4041bc66 00000000 00000000 02001300 00000000 00000000 00000000
> 205458.156670 Sdep 50 pf_key_v2_get_spi: spi:
> 205458.156682 Sdep 50 7f5b3143 
> 205458.156705 Exch 80 exchange_nonce: NONCE_r:
> 205458.156722 Exch 80 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.173295 Misc 80 ipsec_g_x: g^xr:
> 205458.173341 Misc 80 f403b509 76675e91 6d576ef7 2b2bd8c2 422a559a cf134b61 21aff5e6 578a72b1
> 205458.173361 Misc 80 f9c0d8db 9d045e05 cd2d0d31 38004b00 8ba96a1e 08a8542a f8dbbee0 2d637ab5
> 205458.173380 Misc 80 205ef9a9 ed296f84 f1844fa2 2d428627 a4679042 5052fae9 aefb04a8 aeadd66c
> 205458.173399 Misc 80 9ebfdf0a 0ff0c7a1 dfd43ad4 93012d6d 373a6ae9 cefce85f 7d4209a5 6f6a6691
> 205458.173409 Negt 90 responder_send_HASH_SA_NONCE: IDic:
> 205458.173424 Negt 90 05000010 04000000 0a2c0100 ffffff00 
> 205458.173437 Negt 90 responder_send_HASH_SA_NONCE: IDrc:
> 205458.173453 Negt 90 00000010 04000000 0a2b0100 ffffff00 
> 205458.173467 Negt 90 responder_recv_HASH: isakmp_sa 0x82b5438 isa 0x82b54e0
> 205458.173477 Negt 90 responder_send_HASH_SA_NONCE: SKEYID_a:
> 205458.173492 Negt 90 0fd88436 1afdedb6 adde22ba 4d959bcf 47083117 
> 205458.173501 Cryp 60 hash_get: requested algorithm 1
> 205458.173518 Negt 90 responder_send_HASH_SA_NONCE: message_id:
> 205458.173531 Negt 90 05309347 
> 205458.173542 Negt 90 responder_send_HASH_SA_NONCE: NONCE_I_b:
> 205458.173557 Negt 90 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.173567 Negt 90 responder_send_HASH_SA_NONCE: payload 1 after HASH(2):
> 205458.173580 Negt 90 0a000034 00000001 00000001 
> 205458.173591 Negt 90 responder_send_HASH_SA_NONCE: payload 2 after HASH(2):
> 205458.173604 Negt 90 00000028 01030401 7f5b3143 
> 205458.173614 Negt 90 responder_send_HASH_SA_NONCE: payload 3 after HASH(2):
> 205458.173633 Negt 90 0000001c 01030000 80010001 800204b0 80040001 80050002 80030002 
> 205458.173646 Negt 90 responder_send_HASH_SA_NONCE: payload 4 after HASH(2):
> 205458.173663 Negt 90 04000014 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.173673 Negt 90 responder_send_HASH_SA_NONCE: payload 5 after HASH(2):
> 205458.173692 Negt 90 05000084 f403b509 76675e91 6d576ef7 2b2bd8c2 422a559a cf134b61 21aff5e6
> 205458.173711 Negt 90 578a72b1 f9c0d8db 9d045e05 cd2d0d31 38004b00 8ba96a1e 08a8542a f8dbbee0
> 205458.173730 Negt 90 2d637ab5 205ef9a9 ed296f84 f1844fa2 2d428627 a4679042 5052fae9 aefb04a8
> 205458.173748 Negt 90 aeadd66c 9ebfdf0a 0ff0c7a1 dfd43ad4 93012d6d 373a6ae9 cefce85f 7d4209a5
> 205458.173758 Negt 90 6f6a6691 
> 205458.173770 Negt 90 responder_send_HASH_SA_NONCE: payload 6 after HASH(2):
> 205458.173785 Negt 90 05000010 04000000 0a2c0100 ffffff00 
> 205458.173795 Negt 90 responder_send_HASH_SA_NONCE: payload 7 after HASH(2):
> 205458.173810 Negt 90 00000010 04000000 0a2b0100 ffffff00 
> 205458.173835 Negt 80 responder_send_HASH_SA_NONCE: HASH_R:
> 205458.173852 Negt 80 dc6edba6 b8042075 c4360ef0 cac68426 ed4bee03 
> 205458.173864 Exch 90 exchange_validate: checking for required HASH
> 205458.173874 Exch 90 exchange_validate: checking for required SA
> 205458.173884 Exch 90 exchange_validate: checking for required NONCE
> 205458.173899 Cryp 10 crypto_encrypt: before encryption:
> 205458.173943 Cryp 10 01000018 dc6edba6 b8042075 c4360ef0 cac68426 ed4bee03 0a000034 00000001
> 205458.173967 Cryp 10 00000001 00000028 01030401 7f5b3143 0000001c 01030000 80010001 800204b0
> 205458.173987 Cryp 10 80040001 80050002 80030002 04000014 81c908fb dc0e8db0 0867ad45 fe3fff1a
> 205458.174007 Cryp 10 05000084 f403b509 76675e91 6d576ef7 2b2bd8c2 422a559a cf134b61 21aff5e6
> 205458.174028 Cryp 10 578a72b1 f9c0d8db 9d045e05 cd2d0d31 38004b00 8ba96a1e 08a8542a f8dbbee0
> 205458.174046 Cryp 10 2d637ab5 205ef9a9 ed296f84 f1844fa2 2d428627 a4679042 5052fae9 aefb04a8
> 205458.174064 Cryp 10 aeadd66c 9ebfdf0a 0ff0c7a1 dfd43ad4 93012d6d 373a6ae9 cefce85f 7d4209a5
> 205458.174083 Cryp 10 6f6a6691 05000010 04000000 0a2c0100 ffffff00 00000010 04000000 0a2b0100
> 205458.174095 Cryp 10 ffffff00 00000000 
> 205458.174167 Cryp 30 crypto_encrypt: after encryption:
> 205458.174189 Cryp 30 2f61ff6d fdfe13dc 1e09a197 8a1256e4 c80aac78 e6725f09 92f1eb30 675485eb
> 205458.174208 Cryp 30 14a53b8c d894df21 ff1a2cd9 74237bfb ae5bd60d 05ecd665 575beb96 1a1ccfc5
> 205458.174226 Cryp 30 fb1fd35d 0badf362 30f6fb22 ccc52dda d48d769a 64576f2b bde64a22 5d63dc8d
> 205458.174244 Cryp 30 e6859f35 d3a39077 99d8b588 3bc95f9e 5b5b172c 7e3f44ac 62d11cba e0f3c4b1
> 205458.174262 Cryp 30 d3d570dd 19ea62bf e3365e08 725d0823 46eae0b3 c92b3c07 37de8aca 21218268
> 205458.174281 Cryp 30 64ca5f7e 060a0d4d 085c61bc 360dea21 165a71ae 4498e9f5 32bb76cb 8b49fcd5
> 205458.174299 Cryp 30 3f754778 381b0210 efc126cb 9eee2bf9 23f33161 14fc0f62 7e74f163 afde6f72
> 205458.174332 Cryp 30 df8dbc61 ef182aa9 ecf5db81 cc556129 32f73f16 173029fa f46963b2 0f29ad2f
> 205458.174344 Cryp 30 7376c7cc b0446e12 
> 205458.174353 Cryp 50 crypto_update_iv: updated IV:
> 205458.174364 Cryp 50 7376c7cc b0446e12 
> 205458.174373 Mesg 70 message_send: message 0x82bae78
> 205458.174386 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205458.174398 Mesg 70 RCOOKIE: 0x5919b2bd1a9711f4
> 205458.174408 Mesg 70 NEXT_PAYLOAD: HASH
> 205458.174417 Mesg 70 VERSION: 16
> 205458.174427 Mesg 70 EXCH_TYPE: QUICK_MODE
> 205458.174438 Mesg 70 FLAGS: [ ENC ]
> 205458.174449 Mesg 70 MESSAGE_ID: 0x05309347
> 205458.174460 Mesg 70 LENGTH: 292
> 205458.174479 Mesg 70 message_send: e098ddad fecb4e73 5919b2bd 1a9711f4 08102001 05309347 00000124 2f61ff6d
> 205458.174499 Mesg 70 message_send: fdfe13dc 1e09a197 8a1256e4 c80aac78 e6725f09 92f1eb30 675485eb 14a53b8c
> 205458.174518 Mesg 70 message_send: d894df21 ff1a2cd9 74237bfb ae5bd60d 05ecd665 575beb96 1a1ccfc5 fb1fd35d
> 205458.174537 Mesg 70 message_send: 0badf362 30f6fb22 ccc52dda d48d769a 64576f2b bde64a22 5d63dc8d e6859f35
> 205458.174556 Mesg 70 message_send: d3a39077 99d8b588 3bc95f9e 5b5b172c 7e3f44ac 62d11cba e0f3c4b1 d3d570dd
> 205458.174574 Mesg 70 message_send: 19ea62bf e3365e08 725d0823 46eae0b3 c92b3c07 37de8aca 21218268 64ca5f7e
> 205458.174593 Mesg 70 message_send: 060a0d4d 085c61bc 360dea21 165a71ae 4498e9f5 32bb76cb 8b49fcd5 3f754778
> 205458.174612 Mesg 70 message_send: 381b0210 efc126cb 9eee2bf9 23f33161 14fc0f62 7e74f163 afde6f72 df8dbc61
> 205458.174630 Mesg 70 message_send: ef182aa9 ecf5db81 cc556129 32f73f16 173029fa f46963b2 0f29ad2f 7376c7cc
> 205458.174640 Mesg 70 message_send: b0446e12 
> 205458.174649 Exch 40 exchange_run: exchange 0x82baa58 finished step 1, advancing...
> 205458.174750 Trpt 30 transport_send_messages: message 0x82bae78 scheduled for retransmission 1 in 7 secs
> 205458.174779 Timr 10 timer_add_event: event message_send_expire(0x82bae78) added before connection_checker(0x82b4238), expiration in 7s
> 205458.191333 Negt 80 gen_g_xy: g^xy:
> 205458.191364 Negt 80 afcace62 d84fbef8 95af96a4 f7e7f12d f4fb1a20 34723d78 2bb6c1ec 953e245c
> 205458.191385 Negt 80 74371a2a f29ef0a9 fad1571d 6665ed87 f1965b9d 7bb029d4 11d08d9d e101b6d8
> 205458.191406 Negt 80 643dbcb5 8308a76b b1e1e317 3333d1fe 5d39247c 753e558a d6d26aa0 4720ae77
> 205458.191425 Negt 80 370ea82a 3fdaec82 ae638d08 313fb426 b7c9d991 ff8f50a2 5c25152d 471da96a
> 205458.361187 Trpt 70 transport_add: adding 0x82bb6a0
> 205458.361214 Mesg 90 message_alloc: allocated 0x82bb7c8
> 205458.361227 Mesg 70 message_recv: message 0x82bb7c8
> 205458.361242 Mesg 70 ICOOKIE: 0xe098ddadfecb4e73
> 205458.361279 Mesg 70 RCOOKIE: 0x5919b2bd1a9711f4
> 205458.361308 Mesg 70 NEXT_PAYLOAD: HASH
> 205458.361320 Mesg 70 VERSION: 16
> 205458.361330 Mesg 70 EXCH_TYPE: QUICK_MODE
> 205458.361341 Mesg 70 FLAGS: [ ENC ]
> 205458.361354 Mesg 70 MESSAGE_ID: 0x05309347
> 205458.361364 Mesg 70 LENGTH: 52
> 205458.361384 Mesg 70 message_recv: e098ddad fecb4e73 5919b2bd 1a9711f4 08102001 05309347 00000034 993b2b22
> 205458.361403 Mesg 70 message_recv: d20ec2d1 76753641 07f22a19 4229b56b 974ff38d 
> 205458.361415 SA   80 sa_reference: SA 0x82b5438 now has 8 references
> 205458.361425 Mesg 90 message_check_duplicate: last_received 0x82b5938
> 205458.361435 Mesg 20 message_free: freeing 0x82bae78
> 205458.361446 Timr 10 timer_remove_event: removing event message_send_expire(0x82bae78)
> 205458.361457 SA   80 sa_release: SA 0x82b5438 had 8 references
> 205458.361477 Cryp 10 crypto_decrypt: before decryption:
> 205458.361498 Cryp 10 993b2b22 d20ec2d1 76753641 07f22a19 4229b56b 974ff38d 
> 205458.361523 Cryp 30 crypto_decrypt: after decryption:
> 205458.361543 Cryp 30 00000018 e54ac4d2 58114842 e48f8752 ae5469eb 7b0895c7 
> 205458.361556 Mesg 50 message_parse_payloads: offset 28 payload HASH
> 205458.361567 Mesg 60 message_validate_payloads: payload HASH at 0x82bb3bc of message 0x82bb7c8
> 205458.361581 Exch 90 exchange_validate: checking for required HASH
> 205458.361595 Misc 30 ipsec_responder: phase 2 exchange 32 step 2
> 205458.361606 Negt 90 responder_recv_HASH: isakmp_sa 0x82b5438 isa 0x82b54e0
> 205458.361615 Negt 90 responder_recv_HASH: SKEYID_a:
> 205458.361631 Negt 90 0fd88436 1afdedb6 adde22ba 4d959bcf 47083117 
> 205458.361640 Cryp 60 hash_get: requested algorithm 1
> 205458.361659 Negt 90 responder_recv_HASH: message_id:
> 205458.361672 Negt 90 05309347 
> 205458.361680 Negt 90 responder_recv_HASH: NONCE_I_b:
> 205458.361693 Negt 90 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.361702 Negt 90 responder_recv_HASH: NONCE_R_b:
> 205458.361715 Negt 90 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.361735 Negt 90 responder_recv_HASH: computed HASH(3):
> 205458.361752 Negt 90 e54ac4d2 58114842 e48f8752 ae5469eb 7b0895c7 
> 205458.361764 Cryp 60 hash_get: requested algorithm 1
> 205458.361782 Negt 90 post_quick_mode: g^xy:
> 205458.361803 Negt 90 afcace62 d84fbef8 95af96a4 f7e7f12d f4fb1a20 34723d78 2bb6c1ec 953e245c
> 205458.361822 Negt 90 74371a2a f29ef0a9 fad1571d 6665ed87 f1965b9d 7bb029d4 11d08d9d e101b6d8
> 205458.361841 Negt 90 643dbcb5 8308a76b b1e1e317 3333d1fe 5d39247c 753e558a d6d26aa0 4720ae77
> 205458.361859 Negt 90 370ea82a 3fdaec82 ae638d08 313fb426 b7c9d991 ff8f50a2 5c25152d 471da96a
> 205458.361872 Negt 90 post_quick_mode: suite 1 proto 3
> 205458.361883 Negt 90 post_quick_mode: SPI:
> 205458.361895 Negt 90 95251d0f 
> 205458.361904 Negt 90 post_quick_mode: Ni_b:
> 205458.361918 Negt 90 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.361926 Negt 90 post_quick_mode: Nr_b:
> 205458.361939 Negt 90 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.361958 Negt 90 post_quick_mode: last KEYMAT:
> 205458.361975 Negt 90 83934dce 4be6d8e8 31eb75f3 2a582a29 0e80f642 
> 205458.361983 Negt 90 post_quick_mode: g^xy:
> 205458.362002 Negt 90 afcace62 d84fbef8 95af96a4 f7e7f12d f4fb1a20 34723d78 2bb6c1ec 953e245c
> 205458.362021 Negt 90 74371a2a f29ef0a9 fad1571d 6665ed87 f1965b9d 7bb029d4 11d08d9d e101b6d8
> 205458.362039 Negt 90 643dbcb5 8308a76b b1e1e317 3333d1fe 5d39247c 753e558a d6d26aa0 4720ae77
> 205458.362058 Negt 90 370ea82a 3fdaec82 ae638d08 313fb426 b7c9d991 ff8f50a2 5c25152d 471da96a
> 205458.362072 Negt 90 post_quick_mode: suite 1 proto 3
> 205458.362082 Negt 90 post_quick_mode: SPI:
> 205458.362092 Negt 90 95251d0f 
> 205458.362102 Negt 90 post_quick_mode: Ni_b:
> 205458.362116 Negt 90 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.362125 Negt 90 post_quick_mode: Nr_b:
> 205458.362138 Negt 90 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.362161 Negt 90 post_quick_mode: last KEYMAT:
> 205458.362177 Negt 90 1fa12e9b 7caa278c e343b6e7 7ab09de5 caa5f084 
> 205458.362186 Negt 90 post_quick_mode: g^xy:
> 205458.362204 Negt 90 afcace62 d84fbef8 95af96a4 f7e7f12d f4fb1a20 34723d78 2bb6c1ec 953e245c
> 205458.362223 Negt 90 74371a2a f29ef0a9 fad1571d 6665ed87 f1965b9d 7bb029d4 11d08d9d e101b6d8
> 205458.362260 Negt 90 643dbcb5 8308a76b b1e1e317 3333d1fe 5d39247c 753e558a d6d26aa0 4720ae77
> 205458.362282 Negt 90 370ea82a 3fdaec82 ae638d08 313fb426 b7c9d991 ff8f50a2 5c25152d 471da96a
> 205458.362312 Negt 90 post_quick_mode: suite 1 proto 3
> 205458.362323 Negt 90 post_quick_mode: SPI:
> 205458.362333 Negt 90 95251d0f 
> 205458.362342 Negt 90 post_quick_mode: Ni_b:
> 205458.362355 Negt 90 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.362363 Negt 90 post_quick_mode: Nr_b:
> 205458.362376 Negt 90 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.362400 Negt 90 post_quick_mode: KEYMAT:
> 205458.362421 Negt 90 83934dce 4be6d8e8 31eb75f3 2a582a29 0e80f642 1fa12e9b 7caa278c e343b6e7
> 205458.362434 Negt 90 7ab09de5 caa5f084 6f1bdd41 
> 205458.362442 Cryp 60 hash_get: requested algorithm 1
> 205458.362458 Negt 90 post_quick_mode: g^xy:
> 205458.362480 Negt 90 afcace62 d84fbef8 95af96a4 f7e7f12d f4fb1a20 34723d78 2bb6c1ec 953e245c
> 205458.362499 Negt 90 74371a2a f29ef0a9 fad1571d 6665ed87 f1965b9d 7bb029d4 11d08d9d e101b6d8
> 205458.362518 Negt 90 643dbcb5 8308a76b b1e1e317 3333d1fe 5d39247c 753e558a d6d26aa0 4720ae77
> 205458.362536 Negt 90 370ea82a 3fdaec82 ae638d08 313fb426 b7c9d991 ff8f50a2 5c25152d 471da96a
> 205458.362549 Negt 90 post_quick_mode: suite 1 proto 3
> 205458.362559 Negt 90 post_quick_mode: SPI:
> 205458.362569 Negt 90 7f5b3143 
> 205458.362578 Negt 90 post_quick_mode: Ni_b:
> 205458.362591 Negt 90 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.362600 Negt 90 post_quick_mode: Nr_b:
> 205458.362614 Negt 90 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.362633 Negt 90 post_quick_mode: last KEYMAT:
> 205458.362651 Negt 90 e77e1943 f17af309 9109dabc a6938815 7f321ea0 
> 205458.362662 Negt 90 post_quick_mode: g^xy:
> 205458.362681 Negt 90 afcace62 d84fbef8 95af96a4 f7e7f12d f4fb1a20 34723d78 2bb6c1ec 953e245c
> 205458.362699 Negt 90 74371a2a f29ef0a9 fad1571d 6665ed87 f1965b9d 7bb029d4 11d08d9d e101b6d8
> 205458.362718 Negt 90 643dbcb5 8308a76b b1e1e317 3333d1fe 5d39247c 753e558a d6d26aa0 4720ae77
> 205458.362736 Negt 90 370ea82a 3fdaec82 ae638d08 313fb426 b7c9d991 ff8f50a2 5c25152d 471da96a
> 205458.362749 Negt 90 post_quick_mode: suite 1 proto 3
> 205458.362759 Negt 90 post_quick_mode: SPI:
> 205458.362770 Negt 90 7f5b3143 
> 205458.362779 Negt 90 post_quick_mode: Ni_b:
> 205458.362792 Negt 90 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.362801 Negt 90 post_quick_mode: Nr_b:
> 205458.362814 Negt 90 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.362836 Negt 90 post_quick_mode: last KEYMAT:
> 205458.362853 Negt 90 653221b9 c9197f5d bf157a15 c4c262e9 47291309 
> 205458.362862 Negt 90 post_quick_mode: g^xy:
> 205458.362880 Negt 90 afcace62 d84fbef8 95af96a4 f7e7f12d f4fb1a20 34723d78 2bb6c1ec 953e245c
> 205458.362899 Negt 90 74371a2a f29ef0a9 fad1571d 6665ed87 f1965b9d 7bb029d4 11d08d9d e101b6d8
> 205458.362917 Negt 90 643dbcb5 8308a76b b1e1e317 3333d1fe 5d39247c 753e558a d6d26aa0 4720ae77
> 205458.362936 Negt 90 370ea82a 3fdaec82 ae638d08 313fb426 b7c9d991 ff8f50a2 5c25152d 471da96a
> 205458.362950 Negt 90 post_quick_mode: suite 1 proto 3
> 205458.362960 Negt 90 post_quick_mode: SPI:
> 205458.362970 Negt 90 7f5b3143 
> 205458.362978 Negt 90 post_quick_mode: Ni_b:
> 205458.362991 Negt 90 c7d873ec 1fbdb1c9 2a7f1a1c 854cb556 
> 205458.362999 Negt 90 post_quick_mode: Nr_b:
> 205458.363012 Negt 90 81c908fb dc0e8db0 0867ad45 fe3fff1a 
> 205458.363035 Negt 90 post_quick_mode: KEYMAT:
> 205458.363056 Negt 90 e77e1943 f17af309 9109dabc a6938815 7f321ea0 653221b9 c9197f5d bf157a15
> 205458.363069 Negt 90 c4c262e9 47291309 dae81205 
> 205458.363086 Mesg 20 message_free: freeing 0x82b5938
> 205458.363099 SA   80 sa_release: SA 0x82b5438 had 7 references
> 205458.363112 Cryp 50 crypto_update_iv: updated IV:
> 205458.363126 Cryp 50 4229b56b 974ff38d 
> 205458.363139 Exch 10 exchange_finalize: 0x82baa58 incoming-dia-albany <no policy> policy responder phase 2 doi 1 exchange 32 step 2
> 205458.363150 Exch 10 exchange_finalize: icookie e098ddadfecb4e73 rcookie 5919b2bd1a9711f4
> 205458.363161 Exch 10 exchange_finalize: msgid 05309347 sa_list 0x82bab18 
> 205458.363174 SA   90 sa_find: no SA matched query
> 205458.363242 Sdep 10 pf_key_v2_set_spi: satype 3 dst 192.168.12.21 SPI 0x95251d0f
> 205458.363289 Timr 10 timer_add_event: event sa_soft_expire(0x82bab18) added before sa_soft_expire(0x82b5438), expiration in 1051s
> 205458.363319 SA   80 sa_reference: SA 0x82bab18 now has 3 references
> 205458.363333 Timr 10 timer_add_event: event sa_hard_expire(0x82bab18) added before sa_soft_expire(0x82b5438), expiration in 1200s
> 205458.363343 SA   80 sa_reference: SA 0x82bab18 now has 4 references
> 205458.363356 Sdep 80 pf_key_v2_write: iov[0]:
> 205458.363371 Sdep 80 02030003 1c000000 05000000 94140000 
> 205458.363381 Sdep 80 pf_key_v2_write: iov[1]:
> 205458.363395 Sdep 80 02001300 02000000 00000000 00000000 
> 205458.363404 Sdep 80 pf_key_v2_write: iov[2]:
> 205458.363418 Sdep 80 02000100 95251d0f 00010303 00000000 
> 205458.363427 Sdep 80 pf_key_v2_write: iov[3]:
> 205458.363447 Sdep 80 04000300 00000000 00000000 00000000 b0040000 00000000 00000000 00000000
> 205458.363457 Sdep 80 pf_key_v2_write: iov[4]:
> 205458.363476 Sdep 80 04000400 00000000 00000000 00000000 38040000 00000000 00000000 00000000
> 205458.363489 Sdep 80 pf_key_v2_write: iov[5]:
> 205458.363508 Sdep 80 03000500 00000000 02000000 4041bc66 00000000 00000000 
> 205458.363517 Sdep 80 pf_key_v2_write: iov[6]:
> 205458.363534 Sdep 80 03000600 00000000 02000000 4041b615 00000000 00000000 
> 205458.363543 Sdep 80 pf_key_v2_write: iov[7]:
> 205458.363561 Sdep 80 04000800 a0000000 7caa278c e343b6e7 7ab09de5 caa5f084 6f1bdd41 b52b847c
> 205458.363570 Sdep 80 pf_key_v2_write: iov[8]:
> 205458.363588 Sdep 80 04000900 c0000000 83934dce 4be6d8e8 31eb75f3 2a582a29 0e80f642 1fa12e9b
> 205458.449087 Sdep 80 pf_key_v2_read: msg:
> 205458.449136 Sdep 80 02030003 1b000000 05000000 94140000 02000100 95251d0f 00010303 00000000
> 205458.449158 Sdep 80 04000300 00000000 00000000 00000000 b0040000 00000000 00000000 00000000
> 205458.449178 Sdep 80 04000400 00000000 00000000 00000000 38040000 00000000 00000000 00000000
> 205458.449198 Sdep 80 04000200 00000000 00000000 00000000 a2cd3e40 00000000 00000000 00000000
> 205458.449220 Sdep 80 03000500 00200000 02000000 4041bc66 00000000 00000000 03000600 00200000
> 205458.449241 Sdep 80 02000000 4041b615 00000000 00000000 03000700 ff000000 02000000 00000000
> 205458.449258 Sdep 80 00000000 00000000 02001300 02000000 00000000 00000000 
> 205458.449275 Sdep 50 pf_key_v2_set_spi: done
> 205458.449334 Sdep 10 pf_key_v2_set_spi: satype 3 dst 192.168.18.102 SPI 0x7f5b3143
> 205458.449355 Sdep 80 pf_key_v2_write: iov[0]:
> 205458.449371 Sdep 80 02020003 1c000000 04000000 94140000 
> 205458.449381 Sdep 80 pf_key_v2_write: iov[1]:
> 205458.449395 Sdep 80 02001300 02000000 00000000 00000000 
> 205458.449404 Sdep 80 pf_key_v2_write: iov[2]:
> 205458.449419 Sdep 80 02000100 7f5b3143 00010303 00000000 
> 205458.449427 Sdep 80 pf_key_v2_write: iov[3]:
> 205458.449447 Sdep 80 04000300 00000000 00000000 00000000 b0040000 00000000 00000000 00000000
> 205458.449457 Sdep 80 pf_key_v2_write: iov[4]:
> 205458.449476 Sdep 80 04000400 00000000 00000000 00000000 38040000 00000000 00000000 00000000
> 205458.449489 Sdep 80 pf_key_v2_write: iov[5]:
> 205458.449506 Sdep 80 03000500 00000000 02000000 4041b615 00000000 00000000 
> 205458.449515 Sdep 80 pf_key_v2_write: iov[6]:
> 205458.449532 Sdep 80 03000600 00000000 02000000 4041bc66 00000000 00000000 
> 205458.449541 Sdep 80 pf_key_v2_write: iov[7]:
> 205458.449559 Sdep 80 04000800 a0000000 c9197f5d bf157a15 c4c262e9 47291309 dae81205 00000000
> 205458.449568 Sdep 80 pf_key_v2_write: iov[8]:
> 205458.449586 Sdep 80 04000900 c0000000 e77e1943 f17af309 9109dabc a6938815 7f321ea0 653221b9
> 205458.535069 Sdep 80 pf_key_v2_read: msg:
> 205458.535117 Sdep 80 02020003 1b000000 04000000 94140000 02000100 7f5b3143 00010303 00000000
> 205458.535139 Sdep 80 04000300 00000000 00000000 00000000 b0040000 00000000 00000000 00000000
> 205458.535159 Sdep 80 04000400 00000000 00000000 00000000 38040000 00000000 00000000 00000000
> 205458.535179 Sdep 80 04000200 00000000 00000000 00000000 a2cd3e40 00000000 00000000 00000000
> 205458.535201 Sdep 80 03000500 00200000 02000000 4041b615 00000000 00000000 03000600 00200000
> 205458.535221 Sdep 80 02000000 4041bc66 00000000 00000000 03000700 ff000000 02000000 00000000
> 205458.535260 Sdep 80 00000000 00000000 02001300 02000000 00000000 00000000 
> 205458.535298 Sdep 50 pf_key_v2_set_spi: done
> 205458.535327 Exch 50 ipsec_finalize_exchange: src 10.43.1.0 255.255.255.0 dst 10.44.1.0 255.255.255.0 tproto 0 sport 0 dport 0
> 205458.535354 Sdep 50 pf_key_v2_flow: src 10.43.1.0 255.255.255.0 dst 10.44.1.0 255.255.255.0
> 205458.535370 Sdep 80 pf_key_v2_write: iov[0]:
> 205458.535386 Sdep 80 020e0000 12000000 06000000 94140000 
> 205458.535396 Sdep 80 pf_key_v2_write: iov[1]:
> 205458.535410 Sdep 80 02001300 00000000 00000000 00000000 
> 205458.535419 Sdep 80 pf_key_v2_write: iov[2]:
> 205458.535436 Sdep 80 03000500 00180000 02000000 0a2b0100 00000000 00000000 
> 205458.535445 Sdep 80 pf_key_v2_write: iov[3]:
> 205458.535462 Sdep 80 03000600 00180000 02000000 0a2c0100 00000000 00000000 
> 205458.535471 Sdep 80 pf_key_v2_write: iov[4]:
> 205458.535491 Sdep 80 08001200 02000200 00000000 00000000 30003200 02020000 00000000 00000000
> 205458.535511 Sdep 80 02000000 4041bc66 00000000 00000000 02000000 4041b615 00000000 00000000
> 205458.535552 Sdep 80 pf_key_v2_read: msg:
> 205458.535580 Sdep 80 020e0000 1c000300 06000000 94140000 03000500 ff180000 02000000 0a2b0100
> 205458.535601 Sdep 80 00000000 00000000 03000600 ff180000 02000000 0a2c0100 00000000 00000000
> 205458.535622 Sdep 80 04000300 00000000 00000000 00000000 00000000 00000000 00000000 00000000
> 205458.535641 Sdep 80 04000400 00000000 00000000 00000000 00000000 00000000 00000000 00000000
> 205458.535660 Sdep 80 04000200 00000000 00000000 00000000 a2cd3e40 00000000 00000000 00000000
> 205458.535679 Sdep 80 08001200 02000200 71010000 00000000 30003200 02020000 00000000 00000000
> 205458.535697 Sdep 80 02000000 4041bc66 00000000 00000000 02000000 4041b615 00000000 00000000
> 205458.535711 Sdep 50 pf_key_v2_flow: SPDADD: done
> 205458.535734 Sdep 50 pf_key_v2_flow: src 10.44.1.0 255.255.255.0 dst 10.43.1.0 255.255.255.0
> 205458.535749 Sdep 80 pf_key_v2_write: iov[0]:
> 205458.535764 Sdep 80 020e0000 12000000 07000000 94140000 
> 205458.535773 Sdep 80 pf_key_v2_write: iov[1]:
> 205458.535786 Sdep 80 02001300 00000000 00000000 00000000 
> 205458.535795 Sdep 80 pf_key_v2_write: iov[2]:
> 205458.535811 Sdep 80 03000500 00180000 02000000 0a2c0100 00000000 00000000 
> 205458.535820 Sdep 80 pf_key_v2_write: iov[3]:
> 205458.535836 Sdep 80 03000600 00180000 02000000 0a2b0100 00000000 00000000 
> 205458.535847 Sdep 80 pf_key_v2_write: iov[4]:
> 205458.535868 Sdep 80 08001200 02000100 00000000 00000000 30003200 02010000 00000000 00000000
> 205458.535887 Sdep 80 02000000 4041b615 00000000 00000000 02000000 4041bc66 00000000 00000000
> 205458.535920 Sdep 80 pf_key_v2_read: msg:
> 205458.535947 Sdep 80 020e0000 1c000300 07000000 94140000 03000500 ff180000 02000000 0a2c0100
> 205458.535968 Sdep 80 00000000 00000000 03000600 ff180000 02000000 0a2b0100 00000000 00000000
> 205458.535987 Sdep 80 04000300 00000000 00000000 00000000 00000000 00000000 00000000 00000000
> 205458.536007 Sdep 80 04000400 00000000 00000000 00000000 00000000 00000000 00000000 00000000
> 205458.536027 Sdep 80 04000200 00000000 00000000 00000000 a2cd3e40 00000000 00000000 00000000
> 205458.536046 Sdep 80 08001200 02000100 78010000 00000000 30003200 02010000 00000000 00000000
> 205458.536065 Sdep 80 02000000 4041b615 00000000 00000000 02000000 4041bc66 00000000 00000000
> 205458.536079 Sdep 50 pf_key_v2_flow: SPDADD: done
> 205458.536091 SA   90 sa_find: no SA matched query
> 205458.536104 SA   80 sa_release: SA 0x82bab18 had 4 references
> 205458.536116 Timr 10 timer_remove_event: removing event exchange_free_aux(0x82baa58)
> 205458.536125 Exch 80 exchange_free_aux: freeing exchange 0x82baa58
> 205458.536135 Mesg 20 message_free: freeing 0x82bb7c8
> 205458.536145 Trpt 70 transport_release: freeing 0x82bb6a0
> 205458.536157 SA   80 sa_release: SA 0x82b5438 had 6 references
> 205503.644808 Timr 10 timer_handle_expirations: event message_send_expire(0x82b7f38)
> 205503.644848 Mesg 70 message_send: message 0x82b7f38
> 205503.644865 Mesg 70 ICOOKIE: 0x31339bcacab6e9b9
> 205503.644880 Mesg 70 RCOOKIE: 0x0000000000000000
> 205503.644895 Mesg 70 NEXT_PAYLOAD: SA
> 205503.644930 Mesg 70 VERSION: 16
> 205503.644945 Mesg 70 EXCH_TYPE: ID_PROT
> 205503.644956 Mesg 70 FLAGS: [ ]
> 205503.644967 Mesg 70 MESSAGE_ID: 0x00000000
> 205503.644977 Mesg 70 LENGTH: 80
> 
> -
> : send the line "unsubscribe linux-net" in
> the body of a message to majordomo@vger.kernel.org
> More majordomo info at  http://vger.kernel.org/majordomo-info.html

-- 

-> Jean-Francois Dive
--> jef@linuxbe.org

  I think that God in creating Man somewhat overestimated his ability.
  -- Oscar Wilde
-
: send the line "unsubscribe linux-net" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html

[Index of Archives]     [Netdev]     [Ethernet Bridging]     [Linux 802.1Q VLAN]     [Linux Wireless]     [Kernel Newbies]     [Security]     [Linux for Hams]     [Netfilter]     [Git]     [Bugtraq]     [Yosemite News and Information]     [MIPS Linux]     [ARM Linux]     [Linux RAID]     [Linux PCI]     [Linux Admin]     [Samba]

  Powered by Linux