1
|
Mar 31 12:47:24 charon 84020 12[NET] <con1|1> sending packet: from 192.168.1.1[500] to 192.168.1.2[500] (80 bytes)
|
2
|
Mar 31 12:47:24 charon 84020 12[ENC] <con1|1> generating INFORMATIONAL response 27 [ ]
|
3
|
Mar 31 12:47:24 charon 84020 12[ENC] <con1|1> parsed INFORMATIONAL request 27 [ ]
|
4
|
Mar 31 12:47:24 charon 84020 12[NET] <con1|1> received packet: from 192.168.1.2[500] to 192.168.1.1[500] (80 bytes)
|
5
|
Mar 31 12:47:22 charon 84020 12[CFG] trap not found, unable to acquire reqid 5001
|
6
|
Mar 31 12:47:22 charon 84020 12[KNL] creating acquire job for policy 192.168.1.1/32|/0 === 192.168.1.2/32|/0 with reqid {5001}
|
7
|
Mar 31 12:47:20 charon 84020 05[CFG] vici client 55 disconnected
|
8
|
Mar 31 12:47:20 charon 84020 05[CFG] vici client 55 requests: list-sas
|
9
|
Mar 31 12:47:20 charon 84020 13[CFG] vici client 55 registered for: list-sa
|
10
|
Mar 31 12:47:20 charon 84020 13[CFG] vici client 55 connected
|
11
|
Mar 31 12:47:14 charon 84020 05[CFG] vici client 54 disconnected
|
12
|
Mar 31 12:47:14 charon 84020 05[CFG] vici client 54 requests: list-sas
|
13
|
Mar 31 12:47:14 charon 84020 11[CFG] vici client 54 registered for: list-sa
|
14
|
Mar 31 12:47:14 charon 84020 05[CFG] vici client 54 connected
|
15
|
Mar 31 12:47:14 charon 84020 05[NET] <con1|1> sending packet: from 192.168.1.1[500] to 192.168.1.2[500] (80 bytes)
|
16
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> generating CREATE_CHILD_SA response 26 [ N(NO_PROP) ]
|
17
|
Mar 31 12:47:14 charon 84020 05[CHD] <con1|1> CHILD_SA con1{21} state change: INSTALLING => DESTROYING
|
18
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> failed to establish CHILD_SA, keeping IKE_SA
|
19
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> unable to install inbound and outbound IPsec SA (SAD) in kernel
|
20
|
Mar 31 12:47:14 charon 84020 05[CHD] <con1|1> using HMAC_SHA2_256_128 for integrity
|
21
|
Mar 31 12:47:14 charon 84020 05[CHD] <con1|1> using AES_CBC for encryption
|
22
|
Mar 31 12:47:14 charon 84020 05[CHD] <con1|1> CHILD_SA con1{21} state change: CREATED => INSTALLING
|
23
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: ::/0|/0, received: ::/0|/0 => match: ::/0|/0
|
24
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: ::/0|/0, received: 0.0.0.0/0|/0 => no match
|
25
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: 0.0.0.0/0|/0, received: ::/0|/0 => no match
|
26
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: 0.0.0.0/0|/0, received: 0.0.0.0/0|/0 => match: 0.0.0.0/0|/0
|
27
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: 10.0.6.1/32|/0, received: ::/0|/0 => no match
|
28
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: 10.0.6.1/32|/0, received: 0.0.0.0/0|/0 => match: 10.0.6.1/32|/0
|
29
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> selecting traffic selectors for other:
|
30
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: ::/0|/0, received: ::/0|/0 => match: ::/0|/0
|
31
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: ::/0|/0, received: 0.0.0.0/0|/0 => no match
|
32
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: 0.0.0.0/0|/0, received: ::/0|/0 => no match
|
33
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: 0.0.0.0/0|/0, received: 0.0.0.0/0|/0 => match: 0.0.0.0/0|/0
|
34
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: 10.0.6.2/32|/0, received: ::/0|/0 => no match
|
35
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> config: 10.0.6.2/32|/0, received: 0.0.0.0/0|/0 => match: 10.0.6.2/32|/0
|
36
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> selecting traffic selectors for us:
|
37
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> selected proposal: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_8192/NO_EXT_SEQ
|
38
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> configured proposals: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_8192/NO_EXT_SEQ
|
39
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> received proposals: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_8192/NO_EXT_SEQ
|
40
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> proposal matches
|
41
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> selecting proposal:
|
42
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> found matching child config "con1" with prio 30
|
43
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> candidate "con1" with prio 15+15
|
44
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> ::/0|/0
|
45
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> 0.0.0.0/0|/0
|
46
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> 10.0.6.1/32|/0
|
47
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> proposing traffic selectors for other:
|
48
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> ::/0|/0
|
49
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> 0.0.0.0/0|/0
|
50
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> 10.0.6.2/32|/0
|
51
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> proposing traffic selectors for us:
|
52
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> looking for a child config for 0.0.0.0/0|/0 ::/0|/0 === 0.0.0.0/0|/0 ::/0|/0
|
53
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> received ESP_TFC_PADDING_NOT_SUPPORTED, not using ESPv3 TFC padding
|
54
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> parsed CREATE_CHILD_SA request 26 [ N(ESP_TFC_PAD_N) SA No KE TSi TSr ]
|
55
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> received fragment #2 of 2, reassembled fragmented IKE message (1328 bytes)
|
56
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> parsed CREATE_CHILD_SA request 26 [ EF(2/2) ]
|
57
|
Mar 31 12:47:14 charon 84020 05[NET] <con1|1> received packet: from 192.168.1.2[500] to 192.168.1.1[500] (148 bytes)
|
58
|
Mar 31 12:47:14 charon 84020 11[IKE] <con1|1> nothing to initiate
|
59
|
Mar 31 12:47:14 charon 84020 11[IKE] <con1|1> activating new tasks
|
60
|
Mar 31 12:47:14 charon 84020 11[CHD] <con1|1> CHILD_SA con1{20} state change: INSTALLING => DESTROYING
|
61
|
Mar 31 12:47:14 charon 84020 11[ENC] <con1|1> parsed INFORMATIONAL response 15 [ D ]
|
62
|
Mar 31 12:47:14 charon 84020 11[NET] <con1|1> received packet: from 192.168.1.2[500] to 192.168.1.1[500] (80 bytes)
|
63
|
Mar 31 12:47:14 charon 84020 10[ENC] <con1|1> received fragment #1 of 2, waiting for complete IKE message
|
64
|
Mar 31 12:47:14 charon 84020 10[ENC] <con1|1> parsed CREATE_CHILD_SA request 26 [ EF(1/2) ]
|
65
|
Mar 31 12:47:14 charon 84020 10[NET] <con1|1> received packet: from 192.168.1.2[500] to 192.168.1.1[500] (1252 bytes)
|
66
|
Mar 31 12:47:14 charon 84020 10[NET] <con1|1> sending packet: from 192.168.1.1[500] to 192.168.1.2[500] (80 bytes)
|
67
|
Mar 31 12:47:14 charon 84020 10[ENC] <con1|1> generating INFORMATIONAL request 15 [ D ]
|
68
|
Mar 31 12:47:14 charon 84020 10[IKE] <con1|1> sending DELETE for ESP CHILD_SA with SPI c765cbee
|
69
|
Mar 31 12:47:14 charon 84020 10[IKE] <con1|1> CHILD_CREATE task
|
70
|
Mar 31 12:47:14 charon 84020 10[IKE] <con1|1> reinitiating already active tasks
|
71
|
Mar 31 12:47:14 charon 84020 10[IKE] <con1|1> failed to establish CHILD_SA, keeping IKE_SA
|
72
|
Mar 31 12:47:14 charon 84020 10[IKE] <con1|1> unable to install inbound and outbound IPsec SA (SAD) in kernel
|
73
|
Mar 31 12:47:14 charon 84020 10[CHD] <con1|1> using HMAC_SHA2_256_128 for integrity
|
74
|
Mar 31 12:47:14 charon 84020 10[CHD] <con1|1> using AES_CBC for encryption
|
75
|
Mar 31 12:47:14 charon 84020 10[CHD] <con1|1> CHILD_SA con1{20} state change: CREATED => INSTALLING
|
76
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: ::/0|/0, received: ::/0|/0 => match: ::/0|/0
|
77
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: ::/0|/0, received: 0.0.0.0/0|/0 => no match
|
78
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: 0.0.0.0/0|/0, received: ::/0|/0 => no match
|
79
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: 0.0.0.0/0|/0, received: 0.0.0.0/0|/0 => match: 0.0.0.0/0|/0
|
80
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: 10.0.6.1/32|/0, received: ::/0|/0 => no match
|
81
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: 10.0.6.1/32|/0, received: 0.0.0.0/0|/0 => match: 10.0.6.1/32|/0
|
82
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> selecting traffic selectors for other:
|
83
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: ::/0|/0, received: ::/0|/0 => match: ::/0|/0
|
84
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: ::/0|/0, received: 0.0.0.0/0|/0 => no match
|
85
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: 0.0.0.0/0|/0, received: ::/0|/0 => no match
|
86
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: 0.0.0.0/0|/0, received: 0.0.0.0/0|/0 => match: 0.0.0.0/0|/0
|
87
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: 10.0.6.2/32|/0, received: ::/0|/0 => no match
|
88
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> config: 10.0.6.2/32|/0, received: 0.0.0.0/0|/0 => match: 10.0.6.2/32|/0
|
89
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> selecting traffic selectors for us:
|
90
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> selected proposal: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_8192/NO_EXT_SEQ
|
91
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> configured proposals: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_8192/NO_EXT_SEQ
|
92
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> received proposals: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_8192/NO_EXT_SEQ
|
93
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> proposal matches
|
94
|
Mar 31 12:47:14 charon 84020 10[CFG] <con1|1> selecting proposal:
|
95
|
Mar 31 12:47:14 charon 84020 10[IKE] <con1|1> received ESP_TFC_PADDING_NOT_SUPPORTED, not using ESPv3 TFC padding
|
96
|
Mar 31 12:47:14 charon 84020 10[IKE] <con1|1> received ESP_TFC_PADDING_NOT_SUPPORTED notify
|
97
|
Mar 31 12:47:14 charon 84020 10[ENC] <con1|1> parsed CREATE_CHILD_SA response 14 [ N(ESP_TFC_PAD_N) SA No KE TSi TSr ]
|
98
|
Mar 31 12:47:14 charon 84020 10[ENC] <con1|1> received fragment #2 of 2, reassembled fragmented IKE message (1328 bytes)
|
99
|
Mar 31 12:47:14 charon 84020 10[ENC] <con1|1> parsed CREATE_CHILD_SA response 14 [ EF(2/2) ]
|
100
|
Mar 31 12:47:14 charon 84020 10[NET] <con1|1> received packet: from 192.168.1.2[500] to 192.168.1.1[500] (148 bytes)
|
101
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> received fragment #1 of 2, waiting for complete IKE message
|
102
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> parsed CREATE_CHILD_SA response 14 [ EF(1/2) ]
|
103
|
Mar 31 12:47:14 charon 84020 05[NET] <con1|1> received packet: from 192.168.1.2[500] to 192.168.1.1[500] (1252 bytes)
|
104
|
Mar 31 12:47:14 charon 84020 05[NET] <con1|1> sending packet: from 192.168.1.1[500] to 192.168.1.2[500] (80 bytes)
|
105
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> generating INFORMATIONAL response 25 [ ]
|
106
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> parsed INFORMATIONAL request 25 [ ]
|
107
|
Mar 31 12:47:14 charon 84020 05[NET] <con1|1> received packet: from 192.168.1.2[500] to 192.168.1.1[500] (80 bytes)
|
108
|
Mar 31 12:47:14 charon 84020 05[NET] <con1|1> sending packet: from 192.168.1.1[500] to 192.168.1.2[500] (80 bytes)
|
109
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> generating INFORMATIONAL response 24 [ D ]
|
110
|
Mar 31 12:47:14 charon 84020 05[NET] <con1|1> sending packet: from 192.168.1.1[500] to 192.168.1.2[500] (148 bytes)
|
111
|
Mar 31 12:47:14 charon 84020 05[NET] <con1|1> sending packet: from 192.168.1.1[500] to 192.168.1.2[500] (1252 bytes)
|
112
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> generating CREATE_CHILD_SA request 14 [ EF(2/2) ]
|
113
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> generating CREATE_CHILD_SA request 14 [ EF(1/2) ]
|
114
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> splitting IKE message (1328 bytes) into 2 fragments
|
115
|
Mar 31 12:47:14 charon 84020 05[ENC] <con1|1> generating CREATE_CHILD_SA request 14 [ N(ESP_TFC_PAD_N) SA No KE TSi TSr ]
|
116
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> establishing CHILD_SA con1{20} reqid 5001
|
117
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> configured proposals: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_8192/NO_EXT_SEQ
|
118
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> ::/0|/0
|
119
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> 0.0.0.0/0|/0
|
120
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> 10.0.6.1/32|/0
|
121
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> proposing traffic selectors for other:
|
122
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> ::/0|/0
|
123
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> 0.0.0.0/0|/0
|
124
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> 10.0.6.2/32|/0
|
125
|
Mar 31 12:47:14 charon 84020 05[CFG] <con1|1> proposing traffic selectors for us:
|
126
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> activating CHILD_CREATE task
|
127
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> activating new tasks
|
128
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> queueing CHILD_CREATE task
|
129
|
Mar 31 12:47:14 charon 84020 05[CHD] <con1|1> CHILD_SA con1{1} state change: DELETED => DESTROYING
|
130
|
Mar 31 12:47:14 charon 84020 05[CHD] <con1|1> CHILD_SA con1{1} state change: DELETING => DELETED
|
131
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> CHILD_SA closed
|
132
|
Mar 31 12:47:14 charon 84020 05[CHD] <con1|1> CHILD_SA con1{1} state change: INSTALLED => DELETING
|
133
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> sending DELETE for ESP CHILD_SA with SPI c8971e31
|
134
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> closing CHILD_SA con1{1} with SPIs c8971e31_i (2100 bytes) cd3c00c2_o (3900 bytes) and TS 0.0.0.0/0|/0 ::/0|/0 === 0.0.0.0/0|/0 ::/0|/0
|
135
|
Mar 31 12:47:14 charon 84020 05[IKE] <con1|1> received DELETE for ESP CHILD_SA with SPI cd3c00c2
|