Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1246 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1246 attempt 1 of 0 Mar 30 19:47:02 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1246: max number of retransmissions (8) reached STATE_MAIN_I3. Possible authentication failure: no acceptable response to our first encrypted message Mar 30 19:47:02 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1246: starting keying attempt 2 of an unlimited number Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: creating state object #1247 at 0x5605dd9f3ea0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: parent state #1247: new => STATE_UNDEFINED(ignore) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserting state object #1247 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 00 00 00 00 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: found hash chain 26 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: list 0x5605dd59d118 first entry (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserted state 0x5605dd9f3ea0 entry 0x5605dd9f44f0 next (nil) prev-next 0x5605dd59d118 into list Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: finding hash chain in icookie hash table Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 00 00 00 00 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: found hash chain 26 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: list 0x5605dd59d238 first entry (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserted state 0x5605dd9f3ea0 entry 0x5605dd9f4508 next (nil) prev-next 0x5605dd59d238 into list Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 0 seconds Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_SO_DISCARD, timeout in 0.000000 seconds for #1247 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: parent state #1247: STATE_UNDEFINED(ignore) => STATE_MAIN_I1(half-open-ike) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ignore states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: half-open-ike states: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: open-ike states: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: established-anonymous-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: established-authenticated-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: anonymous-ipsec states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: authenticated-ipsec states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: informational states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unknown states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: category states: 2 count states: 2 Mar 30 19:47:02 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: initiating Main Mode to replace #1246 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: **emit ISAKMP Message: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_SA (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: oakley_alg_makedb() processing ealg=5 halg=2 modp=2 eklen=0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: oakley_alg_makedb() returning 0x5605dd9f3a20 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Security Association Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DOI: ISAKMP_DOI_IPSEC (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ****emit IPsec DOI SIT: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IPsec DOI SIT: SIT_IDENTITY_ONLY (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ikev1_out_sa pcn: 0 has 1 valid proposals Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ikev1_out_sa pcn: 0 pn: 0<1 valid_count: 1 trans_cnt: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ****emit ISAKMP Proposal Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: proposal number: 0 (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: protocol ID: PROTO_ISAKMP (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SPI size: 0 (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: number of transforms: 1 (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: *****emit ISAKMP Transform Payload (ISAKMP): Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP transform number: 0 (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP transform ID: KEY_IKE (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_LIFE_TYPE (0x800b) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 1 (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [1 is OAKLEY_LIFE_SECONDS] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_LIFE_DURATION (0x800c) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 28800 (0x7080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_ENCRYPTION_ALGORITHM (0x8001) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 5 (0x5) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [5 is OAKLEY_3DES_CBC] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_HASH_ALGORITHM (0x8002) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 2 (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [2 is OAKLEY_SHA1] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_AUTHENTICATION_METHOD (0x8003) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 1 (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [1 is OAKLEY_PRESHARED_KEY] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_GROUP_DESCRIPTION (0x8004) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 2 (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [2 is OAKLEY_GROUP_MODP1024] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Transform Payload (ISAKMP): 32 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Proposal Payload: 40 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Security Association Payload: 52 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [Dead Peer Detection] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: V_ID af ca d7 13 68 a1 f1 c9 6b 86 96 fc 77 57 01 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [FRAGMENTATION] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: V_ID 40 48 b7 d5 6e bc e8 85 25 e7 de 7f 00 d6 c2 d3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nat traversal enabled: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nat add vid Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sending draft and RFC NATT VIDs Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [RFC 3947] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: V_ID 4a 13 1c 81 07 03 58 45 5c 57 28 f2 0e 95 45 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [draft-ietf-ipsec-nat-t-ike-03] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: V_ID 7d 94 19 a6 53 10 ca 6f 2c 17 9d 92 15 52 9d 56 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [draft-ietf-ipsec-nat-t-ike-02_n] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: V_ID 90 cb 80 91 3e bb 69 6e 08 63 81 b5 ec 42 7b 1f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [draft-ietf-ipsec-nat-t-ike-02] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: V_ID cd 60 46 43 35 df 21 f8 7c fd b2 fc 68 b6 a4 48 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: no IKEv1 message padding required Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Message: 200 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sending 200 bytes for reply packet for main_outI1 through eth1:500 to 10.2.128.241:500 (using #1247) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba 00 00 00 00 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 01 10 02 00 00 00 00 00 00 00 00 c8 0d 00 00 34 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 00 00 00 01 00 00 00 01 00 00 00 28 00 01 00 01 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 00 00 00 20 00 01 00 00 80 0b 00 01 80 0c 70 80 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 01 00 05 80 02 00 02 80 03 00 01 80 04 00 02 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 0d 00 00 14 af ca d7 13 68 a1 f1 c9 6b 86 96 fc Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 77 57 01 00 0d 00 00 14 40 48 b7 d5 6e bc e8 85 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 25 e7 de 7f 00 d6 c2 d3 0d 00 00 14 4a 13 1c 81 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 07 03 58 45 5c 57 28 f2 0e 95 45 2f 0d 00 00 14 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 7d 94 19 a6 53 10 ca 6f 2c 17 9d 92 15 52 9d 56 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 0d 00 00 14 90 cb 80 91 3e bb 69 6e 08 63 81 b5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ec 42 7b 1f 00 00 00 14 cd 60 46 43 35 df 21 f8 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 7c fd b2 fc 68 b6 a4 48 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: state #1247 requesting EVENT_SO_DISCARD to be deleted Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 500 ms Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 0.500000 seconds for #1247 Mar 30 19:47:02 vvr-10 pluto[24271]: vvr-0: deleting other state #1246 (STATE_MAIN_I3) "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: parent state #1246: STATE_MAIN_I3(open-ike) => delete Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: state #1246 requesting to delete non existing event Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: df 12 b5 bb 9e cf a8 8f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 51 31 b8 06 6f 65 ca 18 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: found hash chain 3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unhashing state object #1246 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: removing state 0x5605dd9f5f10 entry 0x5605dd9f6560 next (nil) prev-next 0x5605dd59d060 from list Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: removing state 0x5605dd9f5f10 entry 0x5605dd9f6578 next (nil) prev-next 0x5605dd59d170 from list Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: in connection_discard for connection conn_vvr-0-ipsectunnel-0-remote-0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: parent state #1246: STATE_MAIN_I3(open-ike) => STATE_UNDEFINED(ignore) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ignore states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: half-open-ike states: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: open-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: established-anonymous-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: established-authenticated-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: anonymous-ipsec states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: authenticated-ipsec states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: informational states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unknown states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: category states: 1 count states: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_shared_nss: free key 0x7f59cc0085a0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_skeyseed_nss: free key 0x7f59cc008700 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_skey_d_nss: free key 0x7f59cc008870 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_skey_ai_nss: free key 0x7f59cc017470 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_skey_ar_nss: free key NULL Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_skey_ei_nss: free key 0x7f59cc018ba0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_skey_er_nss: free key NULL Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_skey_pi_nss: free key NULL Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_skey_pr_nss: free key NULL Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: st->st_enc_key_nss: free key 0x7f59cc008b70 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: *received 120 bytes from 10.2.128.241:500 on eth1 (port=500) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 01 10 02 00 00 00 00 00 00 00 00 78 0d 00 00 34 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 00 00 00 01 00 00 00 01 00 00 00 28 00 01 00 01 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 00 00 00 20 00 01 00 00 80 0b 00 01 80 0c 70 80 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 01 00 05 80 02 00 02 80 03 00 01 80 04 00 02 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 0d 00 00 14 4a 13 1c 81 07 03 58 45 5c 57 28 f2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 0e 95 45 2f 00 00 00 14 af ca d7 13 68 a1 f1 c9 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 6b 86 96 fc 77 57 01 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_SA (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 120 (0x78) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: found hash chain 28 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: v1 state object not found Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 00 00 00 00 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: found hash chain 26 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1247, provided msgid 00000000 == 00000000 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: v1 state object #1247 found, in STATE_MAIN_I1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: #1247 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: got payload 0x2 (ISAKMP_NEXT_SA) needed: 0x2opt: 0x2080 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Security Association Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 52 (0x34) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DOI: ISAKMP_DOI_IPSEC (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: got payload 0x2000 (ISAKMP_NEXT_VID) needed: 0x0opt: 0x2080 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Vendor ID Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 20 (0x14) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: got payload 0x2000 (ISAKMP_NEXT_VID) needed: 0x0opt: 0x2080 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Vendor ID Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 20 (0x14) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: quirks.qnat_traversal_vid set to=89 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: received Vendor ID payload [RFC 3947] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: received Vendor ID payload [Dead Peer Detection] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ****parse IPsec DOI SIT: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IPsec DOI SIT: SIT_IDENTITY_ONLY (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ****parse ISAKMP Proposal Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 40 (0x28) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: proposal number: 0 (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: protocol ID: PROTO_ISAKMP (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SPI size: 0 (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: number of transforms: 1 (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: *****parse ISAKMP Transform Payload (ISAKMP): Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 32 (0x20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP transform number: 0 (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP transform ID: KEY_IKE (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_LIFE_TYPE (0x800b) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 1 (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [1 is OAKLEY_LIFE_SECONDS] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_LIFE_DURATION (0x800c) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 28800 (0x7080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_ENCRYPTION_ALGORITHM (0x8001) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 5 (0x5) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [5 is OAKLEY_3DES_CBC] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IKEv1 Oakley lookup by IKEv1 id: OAKLEY_3DES_CBC=5, found 3des_cbc Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ike_alg_enc_ok(ealg=5,key_len=0): blocksize=8, keydeflen=192, ret=1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IKEv1 Oakley lookup by IKEv1 id: OAKLEY_3DES_CBC=5, found 3des_cbc Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_HASH_ALGORITHM (0x8002) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 2 (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [2 is OAKLEY_SHA1] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IKEv1 Oakley lookup by IKEv1 id: OAKLEY_SHA1=2, found sha Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_AUTHENTICATION_METHOD (0x8003) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 1 (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [1 is OAKLEY_PRESHARED_KEY] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: started looking for secret for 10.2.128.240->10.2.128.241 of kind PPK_PSK Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: actually looking for secret for 10.2.128.240->10.2.128.241 of kind PPK_PSK Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: line 1: key type PPK_PSK(10.2.128.240) to type PPK_PSK Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 1: compared key 10.2.128.241 to 10.2.128.240 / 10.2.128.241 -> 4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 2: compared key 10.2.128.240 to 10.2.128.240 / 10.2.128.241 -> 12 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: line 1: match=12 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: best_match 0>12 best=0x5605dd9f4e70 (line=1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: concluding with best_match=12 best=0x5605dd9f4e70 (lineno=1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_GROUP_DESCRIPTION (0x8004) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length/value: 2 (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: [2 is OAKLEY_GROUP_MODP1024] Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Oakley Transform 0 accepted Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sender checking NAT-T: enabled and 89 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: returning NAT-T method NAT_TRAVERSAL_METHOD_IETF_RFC Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: enabling possible NAT-traversal with method RFC 3947 (NAT-Traversal) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0: pcw_work: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: asking crypto helper 0 to do build KE and nonce; request ID 169 (len=2800, pcw_work=0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 read fd: 12 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 doing build KE and nonce; request ID 169 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: Value of Prime: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ff ff ff ff ff ff ff ff c9 0f da a2 21 68 c2 34 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: c4 c6 62 8b 80 dc 1c d1 29 02 4e 08 8a 67 cc 74 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 02 0b be a6 3b 13 9b 22 51 4a 08 79 8e 34 04 dd Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ef 95 19 b3 cd 3a 43 1b 30 2b 0a 6d f2 5f 14 37 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 4f e1 35 6d 6d 51 c2 45 e4 85 b5 76 62 5e 7e c6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: f4 4c 42 e9 a6 37 ed 6b 0b ff 5c b6 f4 06 b7 ed Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ee 38 6b fb 5a 89 9f a5 ae 9f 24 11 7c 4b 1f e6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 49 28 66 51 ec e6 53 81 ff ff ff ff ff ff ff ff Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: Value of base: 02 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: generated dh priv and pub keys: 128 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: Local DH secret (pointer): 0x7f59cc0129e0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: Public DH value sent(computed in NSS): Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 5b e4 36 07 65 9c 1c 14 e0 98 e1 3a 60 6d 86 e5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 48 a0 38 e6 78 82 b6 6a 3b 49 a7 66 d7 e5 81 09 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 31 9e 0e fd d5 85 08 7d f7 f1 03 62 f6 6d 63 e3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 54 cc 66 11 95 5d a9 8a e8 ed c5 b3 08 cc bc 29 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 65 85 ed 46 90 e3 11 de 36 51 44 d2 27 c2 b5 b2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: aa d3 23 fb 8c 8b d0 90 5b ba fc da 3e 9a f2 09 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 8f 4d 82 a9 cd 4b 1c e4 20 1d dc 39 38 f7 ce d2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 71 87 43 95 65 3b 20 87 52 b7 0f 0c 7c a4 59 c4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: Local DH public value (pointer): 0x7f59cc0131f0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Generated nonce: ba c3 c8 b2 ef 6f 15 96 01 3f 61 53 f7 97 02 d6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Generated nonce: 62 d6 19 51 bf ea 3f 14 5c 2d 5b ea fb 8e c4 0d Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 finished build KE and nonce; request ID 169 time elapsed 3048 usec Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: #1247 send_crypto_helper_request:643 st->st_calculating = TRUE; Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: state #1247 requesting EVENT_v1_RETRANSMIT to be deleted Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 60 seconds Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 60 seconds and change Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_CRYPTO_FAILED, timeout in 60.000000 seconds for #1247 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: complete v1 state transition with STF_SUSPEND Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 has finished work (pcw_work now 1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 replies to request ID 169 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: calling continuation function 0x5605dd2c3530 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: main_inR1_outI2_continue for #1247: calculated ke+nonce, sending I2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: #1247 main_inR1_outI2_continue:917 st->st_calculating = FALSE; Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: **emit ISAKMP Message: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: saving DH priv (local secret) and pub key into state struct Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Key Exchange Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONCE (0xa) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 128 raw bytes of keyex value into ISAKMP Key Exchange Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keyex value 5b e4 36 07 65 9c 1c 14 e0 98 e1 3a 60 6d 86 e5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keyex value 48 a0 38 e6 78 82 b6 6a 3b 49 a7 66 d7 e5 81 09 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keyex value 31 9e 0e fd d5 85 08 7d f7 f1 03 62 f6 6d 63 e3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keyex value 54 cc 66 11 95 5d a9 8a e8 ed c5 b3 08 cc bc 29 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keyex value 65 85 ed 46 90 e3 11 de 36 51 44 d2 27 c2 b5 b2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keyex value aa d3 23 fb 8c 8b d0 90 5b ba fc da 3e 9a f2 09 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keyex value 8f 4d 82 a9 cd 4b 1c e4 20 1d dc 39 38 f7 ce d2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keyex value 71 87 43 95 65 3b 20 87 52 b7 0f 0c 7c a4 59 c4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Key Exchange Payload: 132 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Nonce Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 32 raw bytes of Ni into ISAKMP Nonce Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Ni ba c3 c8 b2 ef 6f 15 96 01 3f 61 53 f7 97 02 d6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Ni 62 d6 19 51 bf ea 3f 14 5c 2d 5b ea fb 8e c4 0d Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Nonce Payload: 36 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-T checking st_nat_traversal Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-T found (implies NAT_T_WITH_NATD) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sending NAT-D payloads Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: context 0x5605dd9f5f10 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD 97 87 84 66 cf 07 90 bc 6a bc 2f fa 72 23 cb 4c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD c6 0d f5 a4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hasher=0x5605dd5a3a20(20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: icookie= 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: rcookie= 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: ip= 0a 02 80 f1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: port=500 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 97 87 84 66 cf 07 90 bc 6a bc 2f fa 72 23 cb 4c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= c6 0d f5 a4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP NAT-D Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NATD_RFC (0x14) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 20 raw bytes of NAT-D into ISAKMP NAT-D Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-D 97 87 84 66 cf 07 90 bc 6a bc 2f fa 72 23 cb 4c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-D c6 0d f5 a4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP NAT-D Payload: 24 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: context 0x5605dd9f5f10 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD 59 2b 0d 3f e8 5b 98 26 57 7e cc 9f 58 5a 5c c0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD dc de d4 38 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hasher=0x5605dd5a3a20(20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: icookie= 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: rcookie= 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: ip= 0a 02 80 f0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: port=500 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 59 2b 0d 3f e8 5b 98 26 57 7e cc 9f 58 5a 5c c0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= dc de d4 38 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP NAT-D Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 20 raw bytes of NAT-D into ISAKMP NAT-D Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-D 59 2b 0d 3f e8 5b 98 26 57 7e cc 9f 58 5a 5c c0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-D dc de d4 38 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP NAT-D Payload: 24 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: no IKEv1 message padding required Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Message: 244 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: rehashing state object #1247 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: removing state 0x5605dd9f3ea0 entry 0x5605dd9f44f0 next (nil) prev-next 0x5605dd59d118 from list Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: found hash chain 28 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: list 0x5605dd59d128 first entry (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserted state 0x5605dd9f3ea0 entry 0x5605dd9f44f0 next (nil) prev-next 0x5605dd59d128 into list Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: complete v1 state transition with STF_OK Mar 30 19:47:02 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: transition from state STATE_MAIN_I1 to state STATE_MAIN_I2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer supports dpd Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: dpd is active locally Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: parent state #1247: STATE_MAIN_I1(half-open-ike) => STATE_MAIN_I2(open-ike) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ignore states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: half-open-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: open-ike states: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: established-anonymous-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: established-authenticated-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: anonymous-ipsec states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: authenticated-ipsec states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: informational states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unknown states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: category states: 1 count states: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: state #1247 requesting EVENT_CRYPTO_FAILED to be deleted Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sending reply packet to 10.2.128.241:500 (from port 500) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sending 244 bytes for STATE_MAIN_I1 through eth1:500 to 10.2.128.241:500 (using #1247) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 f4 0a 00 00 84 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 5b e4 36 07 65 9c 1c 14 e0 98 e1 3a 60 6d 86 e5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 48 a0 38 e6 78 82 b6 6a 3b 49 a7 66 d7 e5 81 09 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 31 9e 0e fd d5 85 08 7d f7 f1 03 62 f6 6d 63 e3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 54 cc 66 11 95 5d a9 8a e8 ed c5 b3 08 cc bc 29 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 65 85 ed 46 90 e3 11 de 36 51 44 d2 27 c2 b5 b2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: aa d3 23 fb 8c 8b d0 90 5b ba fc da 3e 9a f2 09 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 8f 4d 82 a9 cd 4b 1c e4 20 1d dc 39 38 f7 ce d2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 71 87 43 95 65 3b 20 87 52 b7 0f 0c 7c a4 59 c4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 14 00 00 24 ba c3 c8 b2 ef 6f 15 96 01 3f 61 53 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: f7 97 02 d6 62 d6 19 51 bf ea 3f 14 5c 2d 5b ea Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: fb 8e c4 0d 14 00 00 18 97 87 84 66 cf 07 90 bc Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 6a bc 2f fa 72 23 cb 4c c6 0d f5 a4 00 00 00 18 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 59 2b 0d 3f e8 5b 98 26 57 7e cc 9f 58 5a 5c c0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: dc de d4 38 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 500 ms Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 0.500000 seconds for #1247 Mar 30 19:47:02 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: STATE_MAIN_I2: sent MI2, expecting MR2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: modecfg pull: noquirk policy:push not-client Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: phase 1 is done, looking for phase 2 to unpend Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: *received 228 bytes from 10.2.128.241:500 on eth1 (port=500) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 e4 0a 00 00 84 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 27 4e f4 34 d4 e9 50 3d 36 bd 69 6a 33 ad b2 db Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: c4 da 6f 0c 5e 47 83 c2 19 74 5e a0 a3 cb 6a a8 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 18 f1 7d ec 90 bf 1c 0c f5 e3 ef 37 1f 85 3c 16 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 1c 77 90 41 95 05 d9 4c bd 9e cc 06 be 24 3f 51 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 0a 03 38 ca 19 46 80 f0 70 97 e8 66 f0 de a7 37 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 00 fa 4a f5 09 51 f8 ca 56 12 9e 50 f8 68 29 82 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 49 b7 d5 1e fa b5 a8 73 33 3e 4a 8f 12 32 ec f5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ce db 24 0a 7c 92 3a 4b 79 2b 3d 04 e5 33 8e 08 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 14 00 00 14 eb 8c 37 85 f8 8d 1a fc e8 cb 2c a8 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: e2 04 1d b7 14 00 00 18 59 2b 0d 3f e8 5b 98 26 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 57 7e cc 9f 58 5a 5c c0 dc de d4 38 00 00 00 18 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 67 a9 e8 02 ae f5 92 16 24 8b f3 67 52 a3 b9 0c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 79 7a c6 e5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 228 (0xe4) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: found hash chain 28 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1247, provided msgid 00000000 == 00000000 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: v1 state object #1247 found, in STATE_MAIN_I2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: #1247 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: got payload 0x10 (ISAKMP_NEXT_KE) needed: 0x410opt: 0x102080 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Key Exchange Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONCE (0xa) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 132 (0x84) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: got payload 0x400 (ISAKMP_NEXT_NONCE) needed: 0x400opt: 0x102080 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Nonce Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NATD_RFC (0x14) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 20 (0x14) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: got payload 0x100000 (ISAKMP_NEXT_NATD_RFC) needed: 0x0opt: 0x102080 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP NAT-D Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NATD_RFC (0x14) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 24 (0x18) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: got payload 0x100000 (ISAKMP_NEXT_NATD_RFC) needed: 0x0opt: 0x102080 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP NAT-D Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: length: 24 (0x18) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: **emit ISAKMP Message: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_ID (0x5) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: flags: ISAKMP_FLAG_v1_ENCRYPTION (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH public value received: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 27 4e f4 34 d4 e9 50 3d 36 bd 69 6a 33 ad b2 db Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: c4 da 6f 0c 5e 47 83 c2 19 74 5e a0 a3 cb 6a a8 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 18 f1 7d ec 90 bf 1c 0c f5 e3 ef 37 1f 85 3c 16 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 1c 77 90 41 95 05 d9 4c bd 9e cc 06 be 24 3f 51 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 0a 03 38 ca 19 46 80 f0 70 97 e8 66 f0 de a7 37 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 00 fa 4a f5 09 51 f8 ca 56 12 9e 50 f8 68 29 82 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 49 b7 d5 1e fa b5 a8 73 33 3e 4a 8f 12 32 ec f5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ce db 24 0a 7c 92 3a 4b 79 2b 3d 04 e5 33 8e 08 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: started looking for secret for 10.2.128.240->10.2.128.241 of kind PPK_PSK Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: actually looking for secret for 10.2.128.240->10.2.128.241 of kind PPK_PSK Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: line 1: key type PPK_PSK(10.2.128.240) to type PPK_PSK Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 1: compared key 10.2.128.241 to 10.2.128.240 / 10.2.128.241 -> 4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 2: compared key 10.2.128.240 to 10.2.128.240 / 10.2.128.241 -> 12 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: line 1: match=12 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: best_match 0>12 best=0x5605dd9f4e70 (line=1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: concluding with best_match=12 best=0x5605dd9f4e70 (lineno=1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: parent1 type: 2 group: 2 len: 2800 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Copying DH pub key pointer to be sent to a thread helper Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0: pcw_work: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: asking crypto helper 0 to do compute dh+iv (V1 Phase 1); request ID 170 (len=2800, pcw_work=0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 read fd: 12 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 doing compute dh+iv (V1 Phase 1); request ID 170 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer's g: 27 4e f4 34 d4 e9 50 3d 36 bd 69 6a 33 ad b2 db Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer's g: c4 da 6f 0c 5e 47 83 c2 19 74 5e a0 a3 cb 6a a8 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer's g: 18 f1 7d ec 90 bf 1c 0c f5 e3 ef 37 1f 85 3c 16 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer's g: 1c 77 90 41 95 05 d9 4c bd 9e cc 06 be 24 3f 51 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer's g: 0a 03 38 ca 19 46 80 f0 70 97 e8 66 f0 de a7 37 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer's g: 00 fa 4a f5 09 51 f8 ca 56 12 9e 50 f8 68 29 82 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer's g: 49 b7 d5 1e fa b5 a8 73 33 3e 4a 8f 12 32 ec f5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: peer's g: ce db 24 0a 7c 92 3a 4b 79 2b 3d 04 e5 33 8e 08 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Started DH shared-secret computation in NSS: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59d2c2e7b0/63) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 30 31 32 33 34 35 36 37 38 39 61 62 63 64 65 66 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 67 68 69 6a 6b 6c 6d 6e 6f 70 71 72 73 74 75 76 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 77 78 79 7a 41 42 43 44 45 46 47 48 49 4a 4b 4c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 4d 4e 4f 50 51 52 53 54 55 56 57 58 59 5a 21 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc017470, size: 79 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey psk for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: psk symkey from symkey(0x7f59cc017470) - next-byte(0) key-size(63) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc017470, size: 79 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: psk: key@0x7f59cc018ba0, size: 63 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc017470 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: created sha context 0x7f59cc010430 from key psk(0x7f59cc018ba0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: begin sha with context 0x7f59cc010430 from key psk(0x7f59cc018ba0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf sha: init 0x7f59cc008790 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc018ba0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: update bytes Ni 0x7f59d2c2e7ef (length 32) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: update bytes Nr 0x7f59d2c2e80f (length 16) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: final 0x7f59cc0102d0 (length 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc0102d0/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 45 a2 5c 77 95 f6 c1 6a c5 74 7d 00 5b 1b 08 a6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 4f 01 9f ea Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc017470, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc017470) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc017470, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc017470 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc018ba0) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc017470, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: created sha context 0x7f59cc010430 from key SKEYID(0x7f59cc017470) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: begin sha with context 0x7f59cc010430 from key SKEYID(0x7f59cc017470) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf sha: init 0x7f59cc008790 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc017470 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: update symkey g^xy 0x7f59cc008b70 (size 128) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 128 bytes of symkey 0x7f59cc008b70 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008b70, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 128 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: cf c6 f4 bc 86 37 b3 24 40 c9 1b 9b 46 55 3d 90 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 87 d9 52 39 cd 37 8d 06 bd 1c 0c 3e 7f 33 d1 a0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 9a 0e de 43 3f 39 09 3e 41 cb 57 38 94 8b e5 15 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 00 eb 6b c5 c0 5c 53 f6 ef bd bb 91 90 d7 b9 81 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: b8 98 3a 09 1f 2a 8b b3 05 79 dc 30 8a c0 f4 68 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: a3 29 58 17 b5 ea 00 eb 40 d8 23 89 fb f0 49 d5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 8d 56 f2 eb 83 33 ea fa 35 04 52 ca a6 b7 60 8a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 99 39 62 50 e5 0b e5 ce c1 62 c5 5d d5 19 d3 2a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 128 bytes at 0x7f59cc000fb0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: ba b0 29 c4 bf 96 59 57 e7 33 19 f7 72 69 79 10 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: ac 7e 77 4f 8d b3 34 5b d3 70 6d 62 08 07 bb 25 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 71 6c af 4d 9f 0f 3b ed db ea ad fb 76 63 f6 c6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 23 2e 9e d6 13 68 4f 76 40 48 71 fa 53 be c2 a7 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 12 f7 47 97 90 a0 d4 80 0c c6 ad e0 46 a9 f4 85 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: dd 47 e9 aa 24 54 45 37 f3 73 bf 9c 42 fd 92 43 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 9b 70 15 ae 9d b4 3b 75 90 32 22 07 3e 3a 21 24 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 14 28 f0 5e c9 b5 ea 3a 56 d0 34 89 aa ce 88 80 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: update bytes CKI_i 0x7f59d2c2e91f (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: update bytes CKI_r 0x7f59d2c2e927 (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: update bytes 0 0x7f59d2c2e6ac (length 1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: final 0x7f59cc010200 (length 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc010200/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 75 08 e7 e0 87 b6 07 2b 06 5a 8a f2 18 30 8c 1d Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: df bc 42 2e Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc008870, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc008870) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008870, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc017470, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc008870 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc018ba0) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc008870, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: created sha context 0x7f59cc010430 from key SKEYID(0x7f59cc008870) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: begin sha with context 0x7f59cc010430 from key SKEYID(0x7f59cc008870) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf sha: init 0x7f59cc008790 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc008870 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update symkey SKEYID_d 0x7f59cc017470 (size 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 20 bytes of symkey 0x7f59cc017470 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc017470, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 32 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: ea 21 de 9a 0d 35 3f a5 d7 04 4e 34 43 6c 13 9a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 01 9e 93 22 9f 4b 78 6b 4c d7 c5 7b ac 41 72 e6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 32 bytes at 0x7f59cc018d80 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 75 08 e7 e0 87 b6 07 2b 06 5a 8a f2 18 30 8c 1d Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: df bc 42 2e 00 00 00 00 00 00 00 00 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update symkey g^xy 0x7f59cc008b70 (size 128) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 128 bytes of symkey 0x7f59cc008b70 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008b70, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 128 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: cf c6 f4 bc 86 37 b3 24 40 c9 1b 9b 46 55 3d 90 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 87 d9 52 39 cd 37 8d 06 bd 1c 0c 3e 7f 33 d1 a0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 9a 0e de 43 3f 39 09 3e 41 cb 57 38 94 8b e5 15 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 00 eb 6b c5 c0 5c 53 f6 ef bd bb 91 90 d7 b9 81 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: b8 98 3a 09 1f 2a 8b b3 05 79 dc 30 8a c0 f4 68 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: a3 29 58 17 b5 ea 00 eb 40 d8 23 89 fb f0 49 d5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 8d 56 f2 eb 83 33 ea fa 35 04 52 ca a6 b7 60 8a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 99 39 62 50 e5 0b e5 ce c1 62 c5 5d d5 19 d3 2a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 128 bytes at 0x7f59cc000fb0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: ba b0 29 c4 bf 96 59 57 e7 33 19 f7 72 69 79 10 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: ac 7e 77 4f 8d b3 34 5b d3 70 6d 62 08 07 bb 25 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 71 6c af 4d 9f 0f 3b ed db ea ad fb 76 63 f6 c6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 23 2e 9e d6 13 68 4f 76 40 48 71 fa 53 be c2 a7 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 12 f7 47 97 90 a0 d4 80 0c c6 ad e0 46 a9 f4 85 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: dd 47 e9 aa 24 54 45 37 f3 73 bf 9c 42 fd 92 43 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 9b 70 15 ae 9d b4 3b 75 90 32 22 07 3e 3a 21 24 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 14 28 f0 5e c9 b5 ea 3a 56 d0 34 89 aa ce 88 80 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update bytes CKI_i 0x7f59d2c2e91f (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update bytes CKI_r 0x7f59d2c2e927 (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update bytes 1 0x7f59d2c2e69c (length 1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: final 0x7f59cc010200 (length 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc010200/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 53 f0 bd b6 b6 a7 ee c7 76 b0 e0 a6 be 5a 8c 63 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 26 e6 b8 d9 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc008700, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc008700) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008700, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc008870, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc008700 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc018ba0) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc008700, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: created sha context 0x7f59cc010430 from key SKEYID(0x7f59cc008700) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: begin sha with context 0x7f59cc010430 from key SKEYID(0x7f59cc008700) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf sha: init 0x7f59cc008790 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc008700 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update symkey SKEYID_a 0x7f59cc008870 (size 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 20 bytes of symkey 0x7f59cc008870 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008870, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 32 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: fe ff d5 21 a3 a5 c6 53 84 24 49 8f 7c c3 85 a9 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 83 3a 04 d5 f3 cd 33 91 61 dd 53 c4 26 0d d9 2d Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 32 bytes at 0x7f59cc01a590 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 53 f0 bd b6 b6 a7 ee c7 76 b0 e0 a6 be 5a 8c 63 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 26 e6 b8 d9 00 00 00 00 00 00 00 00 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update symkey g^xy 0x7f59cc008b70 (size 128) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 128 bytes of symkey 0x7f59cc008b70 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008b70, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 128 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: cf c6 f4 bc 86 37 b3 24 40 c9 1b 9b 46 55 3d 90 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 87 d9 52 39 cd 37 8d 06 bd 1c 0c 3e 7f 33 d1 a0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 9a 0e de 43 3f 39 09 3e 41 cb 57 38 94 8b e5 15 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 00 eb 6b c5 c0 5c 53 f6 ef bd bb 91 90 d7 b9 81 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: b8 98 3a 09 1f 2a 8b b3 05 79 dc 30 8a c0 f4 68 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: a3 29 58 17 b5 ea 00 eb 40 d8 23 89 fb f0 49 d5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 8d 56 f2 eb 83 33 ea fa 35 04 52 ca a6 b7 60 8a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 99 39 62 50 e5 0b e5 ce c1 62 c5 5d d5 19 d3 2a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 128 bytes at 0x7f59cc000fb0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: ba b0 29 c4 bf 96 59 57 e7 33 19 f7 72 69 79 10 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: ac 7e 77 4f 8d b3 34 5b d3 70 6d 62 08 07 bb 25 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 71 6c af 4d 9f 0f 3b ed db ea ad fb 76 63 f6 c6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 23 2e 9e d6 13 68 4f 76 40 48 71 fa 53 be c2 a7 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 12 f7 47 97 90 a0 d4 80 0c c6 ad e0 46 a9 f4 85 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: dd 47 e9 aa 24 54 45 37 f3 73 bf 9c 42 fd 92 43 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 9b 70 15 ae 9d b4 3b 75 90 32 22 07 3e 3a 21 24 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 14 28 f0 5e c9 b5 ea 3a 56 d0 34 89 aa ce 88 80 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update bytes CKI_i 0x7f59d2c2e91f (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update bytes CKI_r 0x7f59d2c2e927 (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update bytes 2 0x7f59d2c2e69c (length 1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: final 0x7f59cc017450 (length 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc017450/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: bc f7 a8 3f f3 5c ae 92 d7 4f ce c8 ff e4 69 0c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 84 12 fa 96 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc0085a0, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc0085a0) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc0085a0, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc008700, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc0085a0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc008700) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008700, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc0085a0, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: appendix_b prf: created sha context 0x7f59cc010430 from key SKEYID_e(0x7f59cc0085a0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: appendix_b prf: begin sha with context 0x7f59cc010430 from key SKEYID_e(0x7f59cc0085a0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: appendix_b prf sha: init 0x7f59cc008790 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc0085a0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: appendix_b prf: update bytes 0 0x7f59d2c2e6dc (length 1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: appendix_b prf: final 0x7f59cc00a350 (length 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc00a350/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 44 e4 1d d6 be 00 0c 19 1d 3d 70 a4 6f 9d 53 79 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: 9a 35 31 bf Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc0102f0, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc0102f0) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc0102f0, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc0085a0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc0102f0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: key: symkey from symkey(0x7f59cc0085a0) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc0085a0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: key:: key@0x7f59cc0102f0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc008700) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008700, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc008510, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Kn prf: created sha context 0x7f59cc010430 from key SKEYID_e(0x7f59cc008510) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Kn prf: begin sha with context 0x7f59cc010430 from key SKEYID_e(0x7f59cc008510) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Kn prf sha: init 0x7f59cc008790 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc008510 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Kn prf: update symkey old_k 0x7f59cc0102f0 (size 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 20 bytes of symkey 0x7f59cc0102f0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc0102f0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 32 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 47 44 a7 26 ab fb be d4 55 61 f6 ad 3d 58 94 b6 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: wrapper: 1e db d0 d4 b6 76 4f c9 ed 76 3a 01 01 ee 75 6a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 32 bytes at 0x7f59cc01a590 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 44 e4 1d d6 be 00 0c 19 1d 3d 70 a4 6f 9d 53 79 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unwrapped: 9a 35 31 bf 00 00 00 00 00 00 00 00 00 00 00 00 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Kn prf: final 0x7f59cc017450 (length 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc017450/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: d0 b9 94 e3 89 8a 9e 0c c6 32 56 18 18 91 a2 6b Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: bytes: b3 19 df 4b Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc01d260, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc01d260) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc01d260, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc008510, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc01d260 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: concat: merge symkey(1: 0x7f59cc0085a0) symkey(2: 0x7f59cc008510) - derive(CONCATENATE_BASE_AND_KEY) target(SHA1_KEY_DERIVATION) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey 1: key@0x7f59cc0085a0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey 2: key@0x7f59cc008510, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: concat:: key@0x7f59cc01d260, size: 40 bytes, type/mechanism: SHA1_KEY_DERIVATION (0x00000392) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: append_symkey_symkey: free key 0x7f59cc0085a0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: old_k#N: free key 0x7f59cc0102f0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: old_k#final: free key 0x7f59cc008510 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey cryptkey for NSS algorithm: 3des_cbc, mechanism: DES3_CBC(307), flags: 300 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: cryptkey symkey from symkey(0x7f59cc01d260) - next-byte(0) key-size(24) flags(0x300) derive(EXTRACT_KEY_FROM_KEY) target(DES3_CBC) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc01d260, size: 40 bytes, type/mechanism: SHA1_KEY_DERIVATION (0x00000392) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: cryptkey: key@0x7f59cc008510, size: 24 bytes, type/mechanism: DES3_CBC (0x00000133) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: keymat: free key 0x7f59cc01d260 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: pointers skeyid_d 0x7f59cc017470, skeyid_a 0x7f59cc008870, skeyid_e 0x7f59cc008700, enc_key 0x7f59cc008510 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_i: 5b e4 36 07 65 9c 1c 14 e0 98 e1 3a 60 6d 86 e5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_i: 48 a0 38 e6 78 82 b6 6a 3b 49 a7 66 d7 e5 81 09 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_i: 31 9e 0e fd d5 85 08 7d f7 f1 03 62 f6 6d 63 e3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_i: 54 cc 66 11 95 5d a9 8a e8 ed c5 b3 08 cc bc 29 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_i: 65 85 ed 46 90 e3 11 de 36 51 44 d2 27 c2 b5 b2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_i: aa d3 23 fb 8c 8b d0 90 5b ba fc da 3e 9a f2 09 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_i: 8f 4d 82 a9 cd 4b 1c e4 20 1d dc 39 38 f7 ce d2 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_i: 71 87 43 95 65 3b 20 87 52 b7 0f 0c 7c a4 59 c4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_r: 27 4e f4 34 d4 e9 50 3d 36 bd 69 6a 33 ad b2 db Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_r: c4 da 6f 0c 5e 47 83 c2 19 74 5e a0 a3 cb 6a a8 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_r: 18 f1 7d ec 90 bf 1c 0c f5 e3 ef 37 1f 85 3c 16 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_r: 1c 77 90 41 95 05 d9 4c bd 9e cc 06 be 24 3f 51 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_r: 0a 03 38 ca 19 46 80 f0 70 97 e8 66 f0 de a7 37 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_r: 00 fa 4a f5 09 51 f8 ca 56 12 9e 50 f8 68 29 82 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_r: 49 b7 d5 1e fa b5 a8 73 33 3e 4a 8f 12 32 ec f5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: DH_r: ce db 24 0a 7c 92 3a 4b 79 2b 3d 04 e5 33 8e 08 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IV sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IV sha hasher: context 0x7f59cc010430 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IV 9d 5a 3e 2c f0 31 fa d6 85 77 37 ad 36 ee 25 22 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IV e2 7c b9 78 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: end of IV generation Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 finished compute dh+iv (V1 Phase 1); request ID 170 time elapsed 15483 usec Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: #1247 send_crypto_helper_request:643 st->st_calculating = TRUE; Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: state #1247 requesting EVENT_v1_RETRANSMIT to be deleted Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 60 seconds Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 60 seconds and change Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_CRYPTO_FAILED, timeout in 60.000000 seconds for #1247 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: complete v1 state transition with STF_SUSPEND Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 has finished work (pcw_work now 1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 replies to request ID 170 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: calling continuation function 0x5605dd2c2320 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: main_inR2_outI3_cryptotail for #1247: calculated DH, sending R1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: #1247 main_inR2_outI3_cryptotail:1648 st->st_calculating = FALSE; Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: thinking about whether to send my certificate: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: I have RSA key: OAKLEY_PRESHARED_KEY cert.type: 0?? Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sendcert: cert_alwayssend and I did not get a certificate request Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: so do not send cert. Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: I did not send a certificate because digital signatures are not being used. (PSK) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: I am not sending a certificate request Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: I will NOT send an initial contact payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: checking NAT-t: enabled and RFC 3947 (NAT-Traversal) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: context 0x5605dd9f5f10 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD 59 2b 0d 3f e8 5b 98 26 57 7e cc 9f 58 5a 5c c0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD dc de d4 38 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hasher=0x5605dd5a3a20(20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: icookie= 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: rcookie= 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: ip= 0a 02 80 f0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: port=500 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 59 2b 0d 3f e8 5b 98 26 57 7e cc 9f 58 5a 5c c0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= dc de d4 38 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: context 0x5605dd9f5f10 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD 97 87 84 66 cf 07 90 bc 6a bc 2f fa 72 23 cb 4c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NATD c6 0d f5 a4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hasher=0x5605dd5a3a20(20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: icookie= 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: rcookie= 14 18 72 15 2c a7 77 2f Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: ip= 0a 02 80 f1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: port=500 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 97 87 84 66 cf 07 90 bc 6a bc 2f fa 72 23 cb 4c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= c6 0d f5 a4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: expected NAT-D(me): 59 2b 0d 3f e8 5b 98 26 57 7e cc 9f 58 5a 5c c0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: expected NAT-D(me): dc de d4 38 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: expected NAT-D(him): Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 97 87 84 66 cf 07 90 bc 6a bc 2f fa 72 23 cb 4c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: c6 0d f5 a4 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: received NAT-D: 59 2b 0d 3f e8 5b 98 26 57 7e cc 9f 58 5a 5c c0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: received NAT-D: dc de d4 38 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: received NAT-D: 67 a9 e8 02 ae f5 92 16 24 8b f3 67 52 a3 b9 0c Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: received NAT-D: 79 7a c6 e5 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT_TRAVERSAL encaps using auto-detect Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT_TRAVERSAL that end is behind NAT 10.2.128.241 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT_TRAVERSAL nat_keepalive enabled 10.2.128.241 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-Traversal: Result using RFC 3947 (NAT-Traversal) sender port 500: peer behind NAT Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT_T_WITH_KA detected Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 20 seconds Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 20 seconds and change Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_NAT_T_KEEPALIVE, timeout in 20.000000 seconds Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Identification Payload (IPsec DOI): Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_HASH (0x8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ID type: ID_IPV4_ADDR (0x1) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Protocol ID: 0 (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: port: 0 (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 4 raw bytes of my identity into ISAKMP Identification Payload (IPsec DOI) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: my identity 0a 02 80 f0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Identification Payload (IPsec DOI): 12 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc018ba0) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc01d260, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: created sha context 0x5605dd9f39b0 from key symkey(0x7f59cc01d260) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: begin sha with context 0x5605dd9f39b0 from key symkey(0x7f59cc01d260) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf sha: init 0x5605dd9e9ff0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc01d260 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9e9f60 (length 128) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9f02a0 (length 128) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9f4300 (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9f4328 (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hashing 48 bytes of SA Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9f3c54 (length 48) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd5ac880 (length 8) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: hmac prf: final 0x7ffc2af99340 (length 20) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Hash Payload: Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 20 raw bytes of HASH_I into ISAKMP Hash Payload Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: HASH_I af af 19 08 c9 d9 60 a9 b2 27 ba ef 33 0d e1 4a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: HASH_I 1a 77 c4 f3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Hash Payload: 24 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: Not sending INITIAL_CONTACT Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: encrypting: 08 00 00 0c 01 00 00 00 0a 02 80 f0 00 00 00 18 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: encrypting: af af 19 08 c9 d9 60 a9 b2 27 ba ef 33 0d e1 4a Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: encrypting: 1a 77 c4 f3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IV: 9d 5a 3e 2c f0 31 fa d6 85 77 37 ad 36 ee 25 22 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: IV: e2 7c b9 78 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unpadded size is: 36 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting 4 zero bytes of encryption padding into ISAKMP Message Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: encrypting 40 using OAKLEY_3DES_CBC Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: do_3des init start Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NSS: do_3des init end Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: next IV: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: no IKEv1 message padding required Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Message: 68 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: complete v1 state transition with STF_OK Mar 30 19:47:02 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: parent state #1247: STATE_MAIN_I2(open-ike) => STATE_MAIN_I3(open-ike) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ignore states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: half-open-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: open-ike states: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: established-anonymous-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: established-authenticated-ike states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: anonymous-ipsec states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: authenticated-ipsec states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: informational states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: unknown states: 0 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: category states: 1 count states: 1 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: state #1247 requesting EVENT_CRYPTO_FAILED to be deleted Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-T: floating local port 500 to nat port 4500 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-T connection has wrong interface definition 10.2.128.240:4500 vs 10.2.128.240:500 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: NAT-T: updated to use interface eth1:4500 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sending reply packet to 10.2.128.241:4500 (from port 4500) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for STATE_MAIN_I2 through eth1:4500 to 10.2.128.241:4500 (using #1247) Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 80 b7 72 11 a2 f1 dd ba 14 18 72 15 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 2c a7 77 2f 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 7b ab 1f 3d ef 2a c1 76 3e 85 ad ab 17 38 63 df Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: 80 f1 13 d5 25 d6 f8 3f 21 27 13 22 68 ee 37 5e Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 500 ms Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 0.500000 seconds for #1247 Mar 30 19:47:02 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: STATE_MAIN_I3: sent MI3, expecting MR3 Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: modecfg pull: noquirk policy:push not-client Mar 30 19:47:02 vvr-10 pluto[24271]: | vvr-0: phase 1 is done, looking for phase 2 to unpend Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1247 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1247 attempt 2 of 0 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1247) Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 80 b7 72 11 a2 f1 dd ba 14 18 72 15 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: 2c a7 77 2f 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: 7b ab 1f 3d ef 2a c1 76 3e 85 ad ab 17 38 63 df Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: 80 f1 13 d5 25 d6 f8 3f 21 27 13 22 68 ee 37 5e Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 500 ms Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 0.500000 seconds for #1247 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1247 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1247 attempt 2 of 0 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1247) Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 80 b7 72 11 a2 f1 dd ba 14 18 72 15 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: 2c a7 77 2f 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: 7b ab 1f 3d ef 2a c1 76 3e 85 ad ab 17 38 63 df Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: 80 f1 13 d5 25 d6 f8 3f 21 27 13 22 68 ee 37 5e Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 1000 ms Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 1 seconds and change Mar 30 19:47:03 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 1.000000 seconds for #1247 Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1247 Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1247 attempt 2 of 0 Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1247) Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 80 b7 72 11 a2 f1 dd ba 14 18 72 15 Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: 2c a7 77 2f 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: 7b ab 1f 3d ef 2a c1 76 3e 85 ad ab 17 38 63 df Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: 80 f1 13 d5 25 d6 f8 3f 21 27 13 22 68 ee 37 5e Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 2000 ms Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 2 seconds and change Mar 30 19:47:04 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 2.000000 seconds for #1247 Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1247 Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1247 attempt 2 of 0 Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1247) Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 80 b7 72 11 a2 f1 dd ba 14 18 72 15 Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: 2c a7 77 2f 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: 7b ab 1f 3d ef 2a c1 76 3e 85 ad ab 17 38 63 df Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: 80 f1 13 d5 25 d6 f8 3f 21 27 13 22 68 ee 37 5e Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 4000 ms Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 4 seconds and change Mar 30 19:47:06 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 4.000000 seconds for #1247 Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1247 Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1247 attempt 2 of 0 Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1247) Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 80 b7 72 11 a2 f1 dd ba 14 18 72 15 Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: 2c a7 77 2f 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: 7b ab 1f 3d ef 2a c1 76 3e 85 ad ab 17 38 63 df Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: 80 f1 13 d5 25 d6 f8 3f 21 27 13 22 68 ee 37 5e Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 8000 ms Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 8 seconds and change Mar 30 19:47:10 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 8.000000 seconds for #1247 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: *received 228 bytes from 10.2.128.241:4500 on eth1 (port=4500) Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba 14 18 72 15 2c a7 77 2f Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 e4 0a 00 00 84 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 27 4e f4 34 d4 e9 50 3d 36 bd 69 6a 33 ad b2 db Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: c4 da 6f 0c 5e 47 83 c2 19 74 5e a0 a3 cb 6a a8 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 18 f1 7d ec 90 bf 1c 0c f5 e3 ef 37 1f 85 3c 16 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 1c 77 90 41 95 05 d9 4c bd 9e cc 06 be 24 3f 51 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 0a 03 38 ca 19 46 80 f0 70 97 e8 66 f0 de a7 37 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 00 fa 4a f5 09 51 f8 ca 56 12 9e 50 f8 68 29 82 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 49 b7 d5 1e fa b5 a8 73 33 3e 4a 8f 12 32 ec f5 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: ce db 24 0a 7c 92 3a 4b 79 2b 3d 04 e5 33 8e 08 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 14 00 00 14 eb 8c 37 85 f8 8d 1a fc e8 cb 2c a8 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: e2 04 1d b7 14 00 00 18 59 2b 0d 3f e8 5b 98 26 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 57 7e cc 9f 58 5a 5c c0 dc de d4 38 00 00 00 18 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 67 a9 e8 02 ae f5 92 16 24 8b f3 67 52 a3 b9 0c Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 79 7a c6 e5 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: 14 18 72 15 2c a7 77 2f Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: length: 228 (0xe4) Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 14 18 72 15 2c a7 77 2f Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: found hash chain 28 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1247, provided msgid 00000000 == 00000000 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: v1 state object #1247 found, in STATE_MAIN_I3 Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:12 vvr-10 pluto[24271]: | vvr-0: #1247 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:47:12 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: discarding duplicate packet; already STATE_MAIN_I3 Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1247 Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1247 attempt 2 of 0 Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1247) Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 80 b7 72 11 a2 f1 dd ba 14 18 72 15 Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: 2c a7 77 2f 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: 7b ab 1f 3d ef 2a c1 76 3e 85 ad ab 17 38 63 df Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: 80 f1 13 d5 25 d6 f8 3f 21 27 13 22 68 ee 37 5e Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 16000 ms Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 16 seconds and change Mar 30 19:47:18 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 16.000000 seconds for #1247 Mar 30 19:47:19 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_SHUNT_SCAN Mar 30 19:47:19 vvr-10 pluto[24271]: | vvr-0: expiring aged bare shunts Mar 30 19:47:19 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 20 seconds Mar 30 19:47:19 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 20 seconds and change Mar 30 19:47:19 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_SHUNT_SCAN, timeout in 20.000000 seconds Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: *received 228 bytes from 10.2.128.241:4500 on eth1 (port=4500) Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba 14 18 72 15 2c a7 77 2f Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 e4 0a 00 00 84 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 27 4e f4 34 d4 e9 50 3d 36 bd 69 6a 33 ad b2 db Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: c4 da 6f 0c 5e 47 83 c2 19 74 5e a0 a3 cb 6a a8 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 18 f1 7d ec 90 bf 1c 0c f5 e3 ef 37 1f 85 3c 16 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 1c 77 90 41 95 05 d9 4c bd 9e cc 06 be 24 3f 51 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 0a 03 38 ca 19 46 80 f0 70 97 e8 66 f0 de a7 37 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 00 fa 4a f5 09 51 f8 ca 56 12 9e 50 f8 68 29 82 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 49 b7 d5 1e fa b5 a8 73 33 3e 4a 8f 12 32 ec f5 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: ce db 24 0a 7c 92 3a 4b 79 2b 3d 04 e5 33 8e 08 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 14 00 00 14 eb 8c 37 85 f8 8d 1a fc e8 cb 2c a8 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: e2 04 1d b7 14 00 00 18 59 2b 0d 3f e8 5b 98 26 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 57 7e cc 9f 58 5a 5c c0 dc de d4 38 00 00 00 18 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 67 a9 e8 02 ae f5 92 16 24 8b f3 67 52 a3 b9 0c Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 79 7a c6 e5 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: 14 18 72 15 2c a7 77 2f Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: length: 228 (0xe4) Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 14 18 72 15 2c a7 77 2f Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: found hash chain 28 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1247, provided msgid 00000000 == 00000000 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: v1 state object #1247 found, in STATE_MAIN_I3 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: #1247 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:47:22 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: discarding duplicate packet; already STATE_MAIN_I3 Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_NAT_T_KEEPALIVE Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:22 vvr-10 pluto[24271]: | vvr-0: Sending of NAT-T KEEP-ALIVE enabled by per-conn configuration (nat_keepalive=yes) Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: *received 228 bytes from 10.2.128.241:4500 on eth1 (port=4500) Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba 14 18 72 15 2c a7 77 2f Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 e4 0a 00 00 84 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 27 4e f4 34 d4 e9 50 3d 36 bd 69 6a 33 ad b2 db Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: c4 da 6f 0c 5e 47 83 c2 19 74 5e a0 a3 cb 6a a8 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 18 f1 7d ec 90 bf 1c 0c f5 e3 ef 37 1f 85 3c 16 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 1c 77 90 41 95 05 d9 4c bd 9e cc 06 be 24 3f 51 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 0a 03 38 ca 19 46 80 f0 70 97 e8 66 f0 de a7 37 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 00 fa 4a f5 09 51 f8 ca 56 12 9e 50 f8 68 29 82 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 49 b7 d5 1e fa b5 a8 73 33 3e 4a 8f 12 32 ec f5 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: ce db 24 0a 7c 92 3a 4b 79 2b 3d 04 e5 33 8e 08 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 14 00 00 14 eb 8c 37 85 f8 8d 1a fc e8 cb 2c a8 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: e2 04 1d b7 14 00 00 18 59 2b 0d 3f e8 5b 98 26 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 57 7e cc 9f 58 5a 5c c0 dc de d4 38 00 00 00 18 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 67 a9 e8 02 ae f5 92 16 24 8b f3 67 52 a3 b9 0c Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 79 7a c6 e5 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: 14 18 72 15 2c a7 77 2f Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: length: 228 (0xe4) Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 14 18 72 15 2c a7 77 2f Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: found hash chain 28 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1247, provided msgid 00000000 == 00000000 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: v1 state object #1247 found, in STATE_MAIN_I3 Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:32 vvr-10 pluto[24271]: | vvr-0: #1247 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:47:32 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: discarding duplicate packet; already STATE_MAIN_I3 Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1247 Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1247 attempt 2 of 0 Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1247) Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 80 b7 72 11 a2 f1 dd ba 14 18 72 15 Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: 2c a7 77 2f 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: 7b ab 1f 3d ef 2a c1 76 3e 85 ad ab 17 38 63 df Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: 80 f1 13 d5 25 d6 f8 3f 21 27 13 22 68 ee 37 5e Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: ed ab 01 83 2e 0c c5 eb Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 32000 ms Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 32 seconds and change Mar 30 19:47:34 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 32.000000 seconds for #1247 Mar 30 19:47:39 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_SHUNT_SCAN Mar 30 19:47:39 vvr-10 pluto[24271]: | vvr-0: expiring aged bare shunts Mar 30 19:47:39 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 20 seconds Mar 30 19:47:39 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 20 seconds and change Mar 30 19:47:39 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_SHUNT_SCAN, timeout in 20.000000 seconds Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: *received 228 bytes from 10.2.128.241:4500 on eth1 (port=4500) Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba 14 18 72 15 2c a7 77 2f Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 e4 0a 00 00 84 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 27 4e f4 34 d4 e9 50 3d 36 bd 69 6a 33 ad b2 db Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: c4 da 6f 0c 5e 47 83 c2 19 74 5e a0 a3 cb 6a a8 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 18 f1 7d ec 90 bf 1c 0c f5 e3 ef 37 1f 85 3c 16 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 1c 77 90 41 95 05 d9 4c bd 9e cc 06 be 24 3f 51 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 0a 03 38 ca 19 46 80 f0 70 97 e8 66 f0 de a7 37 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 00 fa 4a f5 09 51 f8 ca 56 12 9e 50 f8 68 29 82 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 49 b7 d5 1e fa b5 a8 73 33 3e 4a 8f 12 32 ec f5 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: ce db 24 0a 7c 92 3a 4b 79 2b 3d 04 e5 33 8e 08 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 14 00 00 14 eb 8c 37 85 f8 8d 1a fc e8 cb 2c a8 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: e2 04 1d b7 14 00 00 18 59 2b 0d 3f e8 5b 98 26 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 57 7e cc 9f 58 5a 5c c0 dc de d4 38 00 00 00 18 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 67 a9 e8 02 ae f5 92 16 24 8b f3 67 52 a3 b9 0c Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 79 7a c6 e5 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: 14 18 72 15 2c a7 77 2f Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: length: 228 (0xe4) Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 14 18 72 15 2c a7 77 2f Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: found hash chain 28 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1247, provided msgid 00000000 == 00000000 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: v1 state object #1247 found, in STATE_MAIN_I3 Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:42 vvr-10 pluto[24271]: | vvr-0: #1247 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:47:42 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: discarding duplicate packet; already STATE_MAIN_I3 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_PENDING_PHASE2 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 120 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 120 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_PENDING_PHASE2, timeout in 120.000000 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: pending review: connection "conn_vvr-0-ipsectunnel-0-remote-0" checked Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: checking connection "conn_vvr-0-ipsectunnel-0-remote-0" for stuck phase 2s (waited 74767s, patience 3*25s) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: connection "conn_vvr-0-ipsectunnel-0-remote-0" stuck, restarting Mar 30 19:47:58 vvr-10 pluto[24271]: vvr-0: pending IPsec SA negotiation with 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" took too long -- replacing phase 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state #1247 requesting EVENT_v1_RETRANSMIT to be deleted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 0 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_SA_REPLACE, timeout in 0.000000 seconds for #1247 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_SA_REPLACE for parent state #1247 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: EVENT_SA_REPLACE{IF_USED} picked newest_isakmp_sa #0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: creating state object #1248 at 0x5605dd9f5f10 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: parent state #1248: new => STATE_UNDEFINED(ignore) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting state object #1248 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 00 00 00 00 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: found hash chain 26 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: list 0x5605dd59d118 first entry (nil) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserted state 0x5605dd9f5f10 entry 0x5605dd9f6560 next (nil) prev-next 0x5605dd59d118 into list Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: finding hash chain in icookie hash table Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 00 00 00 00 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: found hash chain 26 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: list 0x5605dd59d238 first entry 0x5605dd9f4508 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserted state 0x5605dd9f5f10 entry 0x5605dd9f6578 next 0x5605dd9f4508 prev-next 0x5605dd59d238 into list Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: updated next state 0x5605dd9f3ea0 entry 0x5605dd9f4508 next (nil) prev-next 0x5605dd9f6578 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 0 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_SO_DISCARD, timeout in 0.000000 seconds for #1248 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: parent state #1248: STATE_UNDEFINED(ignore) => STATE_MAIN_I1(half-open-ike) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ignore states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: half-open-ike states: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: open-ike states: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: established-anonymous-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: established-authenticated-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: anonymous-ipsec states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: authenticated-ipsec states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: informational states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unknown states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: category states: 2 count states: 2 Mar 30 19:47:58 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1248: initiating Main Mode to replace #1247 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: **emit ISAKMP Message: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_SA (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: oakley_alg_makedb() processing ealg=5 halg=2 modp=2 eklen=0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: oakley_alg_makedb() returning 0x5605dd9f06f0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Security Association Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DOI: ISAKMP_DOI_IPSEC (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ****emit IPsec DOI SIT: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IPsec DOI SIT: SIT_IDENTITY_ONLY (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ikev1_out_sa pcn: 0 has 1 valid proposals Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ikev1_out_sa pcn: 0 pn: 0<1 valid_count: 1 trans_cnt: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ****emit ISAKMP Proposal Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: proposal number: 0 (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: protocol ID: PROTO_ISAKMP (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SPI size: 0 (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: number of transforms: 1 (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: *****emit ISAKMP Transform Payload (ISAKMP): Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP transform number: 0 (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP transform ID: KEY_IKE (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_LIFE_TYPE (0x800b) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 1 (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [1 is OAKLEY_LIFE_SECONDS] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_LIFE_DURATION (0x800c) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 28800 (0x7080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_ENCRYPTION_ALGORITHM (0x8001) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 5 (0x5) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [5 is OAKLEY_3DES_CBC] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_HASH_ALGORITHM (0x8002) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 2 (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [2 is OAKLEY_SHA1] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_AUTHENTICATION_METHOD (0x8003) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 1 (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [1 is OAKLEY_PRESHARED_KEY] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******emit ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_GROUP_DESCRIPTION (0x8004) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 2 (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [2 is OAKLEY_GROUP_MODP1024] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Transform Payload (ISAKMP): 32 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Proposal Payload: 40 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Security Association Payload: 52 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [Dead Peer Detection] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: V_ID af ca d7 13 68 a1 f1 c9 6b 86 96 fc 77 57 01 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [FRAGMENTATION] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: V_ID 40 48 b7 d5 6e bc e8 85 25 e7 de 7f 00 d6 c2 d3 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nat traversal enabled: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nat add vid Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sending draft and RFC NATT VIDs Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [RFC 3947] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: V_ID 4a 13 1c 81 07 03 58 45 5c 57 28 f2 0e 95 45 2f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [draft-ietf-ipsec-nat-t-ike-03] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: V_ID 7d 94 19 a6 53 10 ca 6f 2c 17 9d 92 15 52 9d 56 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [draft-ietf-ipsec-nat-t-ike-02_n] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: V_ID 90 cb 80 91 3e bb 69 6e 08 63 81 b5 ec 42 7b 1f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: out_vid(): sending [draft-ietf-ipsec-nat-t-ike-02] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Vendor ID Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 16 raw bytes of V_ID into ISAKMP Vendor ID Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: V_ID cd 60 46 43 35 df 21 f8 7c fd b2 fc 68 b6 a4 48 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Vendor ID Payload: 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: no IKEv1 message padding required Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Message: 200 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sending 200 bytes for reply packet for main_outI1 through eth1:500 to 10.2.128.241:500 (using #1248) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b 00 00 00 00 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 01 10 02 00 00 00 00 00 00 00 00 c8 0d 00 00 34 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 00 00 00 01 00 00 00 01 00 00 00 28 00 01 00 01 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 00 00 00 20 00 01 00 00 80 0b 00 01 80 0c 70 80 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 80 01 00 05 80 02 00 02 80 03 00 01 80 04 00 02 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 0d 00 00 14 af ca d7 13 68 a1 f1 c9 6b 86 96 fc Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 77 57 01 00 0d 00 00 14 40 48 b7 d5 6e bc e8 85 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 25 e7 de 7f 00 d6 c2 d3 0d 00 00 14 4a 13 1c 81 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 07 03 58 45 5c 57 28 f2 0e 95 45 2f 0d 00 00 14 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 7d 94 19 a6 53 10 ca 6f 2c 17 9d 92 15 52 9d 56 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 0d 00 00 14 90 cb 80 91 3e bb 69 6e 08 63 81 b5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ec 42 7b 1f 00 00 00 14 cd 60 46 43 35 df 21 f8 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 7c fd b2 fc 68 b6 a4 48 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state #1248 requesting EVENT_SO_DISCARD to be deleted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 500 ms Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 0.500000 seconds for #1248 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state #1247 requesting event none to be deleted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state: 1247 requesting DPD event none to be deleted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: delete_pluto_event cannot delete NULL event Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 0 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_SA_EXPIRE, timeout in 0.000000 seconds for #1247 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_SA_EXPIRE for parent state #1247 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: EVENT_SA_EXPIRE picked newest_isakmp_sa Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: un-established partial ISAKMP SA timeout (SA expired) Mar 30 19:47:58 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1247: deleting state (STATE_MAIN_I3) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: parent state #1247: STATE_MAIN_I3(open-ike) => delete Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state #1247 requesting to delete non existing event Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 80 b7 72 11 a2 f1 dd ba Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 14 18 72 15 2c a7 77 2f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: found hash chain 28 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unhashing state object #1247 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: removing state 0x5605dd9f3ea0 entry 0x5605dd9f44f0 next (nil) prev-next 0x5605dd59d128 from list Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: removing state 0x5605dd9f3ea0 entry 0x5605dd9f4508 next (nil) prev-next 0x5605dd9f6578 from list Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: in connection_discard for connection conn_vvr-0-ipsectunnel-0-remote-0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: parent state #1247: STATE_MAIN_I3(open-ike) => STATE_UNDEFINED(ignore) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ignore states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: half-open-ike states: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: open-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: established-anonymous-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: established-authenticated-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: anonymous-ipsec states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: authenticated-ipsec states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: informational states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unknown states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: category states: 1 count states: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_shared_nss: free key 0x7f59cc008b70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_skeyseed_nss: free key 0x7f59cc018ba0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_skey_d_nss: free key 0x7f59cc017470 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_skey_ai_nss: free key 0x7f59cc008870 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_skey_ar_nss: free key NULL Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_skey_ei_nss: free key 0x7f59cc008700 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_skey_er_nss: free key NULL Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_skey_pi_nss: free key NULL Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_skey_pr_nss: free key NULL Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: st->st_enc_key_nss: free key 0x7f59cc008510 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: *received 120 bytes from 10.2.128.241:500 on eth1 (port=500) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 01 10 02 00 00 00 00 00 00 00 00 78 0d 00 00 34 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 00 00 00 01 00 00 00 01 00 00 00 28 00 01 00 01 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 00 00 00 20 00 01 00 00 80 0b 00 01 80 0c 70 80 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 80 01 00 05 80 02 00 02 80 03 00 01 80 04 00 02 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 0d 00 00 14 4a 13 1c 81 07 03 58 45 5c 57 28 f2 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 0e 95 45 2f 00 00 00 14 af ca d7 13 68 a1 f1 c9 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 6b 86 96 fc 77 57 01 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_SA (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 120 (0x78) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: found hash chain 29 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: v1 state object not found Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 00 00 00 00 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: found hash chain 26 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1248, provided msgid 00000000 == 00000000 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: v1 state object #1248 found, in STATE_MAIN_I1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: #1248 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: got payload 0x2 (ISAKMP_NEXT_SA) needed: 0x2opt: 0x2080 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Security Association Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 52 (0x34) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DOI: ISAKMP_DOI_IPSEC (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: got payload 0x2000 (ISAKMP_NEXT_VID) needed: 0x0opt: 0x2080 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Vendor ID Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_VID (0xd) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 20 (0x14) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: got payload 0x2000 (ISAKMP_NEXT_VID) needed: 0x0opt: 0x2080 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Vendor ID Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 20 (0x14) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: quirks.qnat_traversal_vid set to=89 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: received Vendor ID payload [RFC 3947] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: received Vendor ID payload [Dead Peer Detection] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ****parse IPsec DOI SIT: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IPsec DOI SIT: SIT_IDENTITY_ONLY (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ****parse ISAKMP Proposal Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 40 (0x28) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: proposal number: 0 (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: protocol ID: PROTO_ISAKMP (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SPI size: 0 (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: number of transforms: 1 (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: *****parse ISAKMP Transform Payload (ISAKMP): Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 32 (0x20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP transform number: 0 (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP transform ID: KEY_IKE (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_LIFE_TYPE (0x800b) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 1 (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [1 is OAKLEY_LIFE_SECONDS] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_LIFE_DURATION (0x800c) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 28800 (0x7080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_ENCRYPTION_ALGORITHM (0x8001) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 5 (0x5) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [5 is OAKLEY_3DES_CBC] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IKEv1 Oakley lookup by IKEv1 id: OAKLEY_3DES_CBC=5, found 3des_cbc Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ike_alg_enc_ok(ealg=5,key_len=0): blocksize=8, keydeflen=192, ret=1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IKEv1 Oakley lookup by IKEv1 id: OAKLEY_3DES_CBC=5, found 3des_cbc Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_HASH_ALGORITHM (0x8002) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 2 (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [2 is OAKLEY_SHA1] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IKEv1 Oakley lookup by IKEv1 id: OAKLEY_SHA1=2, found sha Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_AUTHENTICATION_METHOD (0x8003) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 1 (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [1 is OAKLEY_PRESHARED_KEY] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: started looking for secret for 10.2.128.240->10.2.128.241 of kind PPK_PSK Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: actually looking for secret for 10.2.128.240->10.2.128.241 of kind PPK_PSK Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: line 1: key type PPK_PSK(10.2.128.240) to type PPK_PSK Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 1: compared key 10.2.128.241 to 10.2.128.240 / 10.2.128.241 -> 4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 2: compared key 10.2.128.240 to 10.2.128.240 / 10.2.128.241 -> 12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: line 1: match=12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: best_match 0>12 best=0x5605dd9f4e70 (line=1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: concluding with best_match=12 best=0x5605dd9f4e70 (lineno=1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ******parse ISAKMP Oakley attribute: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af+type: OAKLEY_GROUP_DESCRIPTION (0x8004) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length/value: 2 (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: [2 is OAKLEY_GROUP_MODP1024] Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Oakley Transform 0 accepted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sender checking NAT-T: enabled and 89 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: returning NAT-T method NAT_TRAVERSAL_METHOD_IETF_RFC Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: enabling possible NAT-traversal with method RFC 3947 (NAT-Traversal) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0: pcw_work: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: asking crypto helper 0 to do build KE and nonce; request ID 171 (len=2800, pcw_work=0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 read fd: 12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 doing build KE and nonce; request ID 171 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: Value of Prime: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ff ff ff ff ff ff ff ff c9 0f da a2 21 68 c2 34 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: c4 c6 62 8b 80 dc 1c d1 29 02 4e 08 8a 67 cc 74 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 02 0b be a6 3b 13 9b 22 51 4a 08 79 8e 34 04 dd Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ef 95 19 b3 cd 3a 43 1b 30 2b 0a 6d f2 5f 14 37 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 4f e1 35 6d 6d 51 c2 45 e4 85 b5 76 62 5e 7e c6 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: f4 4c 42 e9 a6 37 ed 6b 0b ff 5c b6 f4 06 b7 ed Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ee 38 6b fb 5a 89 9f a5 ae 9f 24 11 7c 4b 1f e6 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 49 28 66 51 ec e6 53 81 ff ff ff ff ff ff ff ff Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: Value of base: 02 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: generated dh priv and pub keys: 128 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: Local DH secret (pointer): 0x7f59cc003720 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: Public DH value sent(computed in NSS): Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af f8 4a ed d5 5f da 94 d0 1e aa 3b 3e 1b a4 be Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: e5 62 f4 df 54 28 2f 4e 1d ab a7 ba e0 a0 c4 b4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: b0 e6 52 1b ac 22 e3 6d 78 bf b3 ca db 58 51 dc Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 5b c8 ec 2e 83 36 84 ce c7 13 05 0a da 67 ec cd Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 3d f9 58 97 3f 80 44 a3 c5 d2 c1 74 fc 6a 9b 4f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 49 92 52 cb d3 e5 4f 71 68 c4 57 3e 80 d2 77 77 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ca 4e b3 4e 06 65 04 3b 36 ad 01 7f 7e 01 a8 f3 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: e1 cc 4d b4 23 71 58 a7 85 71 7e 15 5e 0b a9 4d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: Local DH public value (pointer): 0x7f59cc0131f0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Generated nonce: 9b 77 6f 1f 00 a1 65 96 8c 5a 31 5c 56 6b 48 f8 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Generated nonce: 11 7c df 08 d5 71 0b 20 98 87 13 2a a4 d6 8f 12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 finished build KE and nonce; request ID 171 time elapsed 1512 usec Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: #1248 send_crypto_helper_request:643 st->st_calculating = TRUE; Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state #1248 requesting EVENT_v1_RETRANSMIT to be deleted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 60 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 60 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_CRYPTO_FAILED, timeout in 60.000000 seconds for #1248 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: complete v1 state transition with STF_SUSPEND Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 has finished work (pcw_work now 1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 replies to request ID 171 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: calling continuation function 0x5605dd2c3530 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: main_inR1_outI2_continue for #1248: calculated ke+nonce, sending I2 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: #1248 main_inR1_outI2_continue:917 st->st_calculating = FALSE; Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: **emit ISAKMP Message: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: saving DH priv (local secret) and pub key into state struct Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Key Exchange Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONCE (0xa) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 128 raw bytes of keyex value into ISAKMP Key Exchange Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keyex value af f8 4a ed d5 5f da 94 d0 1e aa 3b 3e 1b a4 be Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keyex value e5 62 f4 df 54 28 2f 4e 1d ab a7 ba e0 a0 c4 b4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keyex value b0 e6 52 1b ac 22 e3 6d 78 bf b3 ca db 58 51 dc Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keyex value 5b c8 ec 2e 83 36 84 ce c7 13 05 0a da 67 ec cd Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keyex value 3d f9 58 97 3f 80 44 a3 c5 d2 c1 74 fc 6a 9b 4f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keyex value 49 92 52 cb d3 e5 4f 71 68 c4 57 3e 80 d2 77 77 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keyex value ca 4e b3 4e 06 65 04 3b 36 ad 01 7f 7e 01 a8 f3 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keyex value e1 cc 4d b4 23 71 58 a7 85 71 7e 15 5e 0b a9 4d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Key Exchange Payload: 132 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Nonce Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 32 raw bytes of Ni into ISAKMP Nonce Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Ni 9b 77 6f 1f 00 a1 65 96 8c 5a 31 5c 56 6b 48 f8 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Ni 11 7c df 08 d5 71 0b 20 98 87 13 2a a4 d6 8f 12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Nonce Payload: 36 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-T checking st_nat_traversal Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-T found (implies NAT_T_WITH_NATD) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sending NAT-D payloads Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: context 0x5605dd9f6720 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD 61 6c 7a c5 2e 97 3f 07 39 c4 e5 1a df 94 7f 6c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD 0d ef 7a 7a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hasher=0x5605dd5a3a20(20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: icookie= 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: rcookie= 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: ip= 0a 02 80 f1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: port=500 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 61 6c 7a c5 2e 97 3f 07 39 c4 e5 1a df 94 7f 6c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 0d ef 7a 7a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP NAT-D Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NATD_RFC (0x14) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 20 raw bytes of NAT-D into ISAKMP NAT-D Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-D 61 6c 7a c5 2e 97 3f 07 39 c4 e5 1a df 94 7f 6c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-D 0d ef 7a 7a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP NAT-D Payload: 24 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: context 0x5605dd9f6720 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD 63 4a d5 46 e8 64 14 6e 23 cb cc 4c 7b 09 c2 13 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD bd 84 0f 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hasher=0x5605dd5a3a20(20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: icookie= 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: rcookie= 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: ip= 0a 02 80 f0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: port=500 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 63 4a d5 46 e8 64 14 6e 23 cb cc 4c 7b 09 c2 13 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= bd 84 0f 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP NAT-D Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 20 raw bytes of NAT-D into ISAKMP NAT-D Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-D 63 4a d5 46 e8 64 14 6e 23 cb cc 4c 7b 09 c2 13 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-D bd 84 0f 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP NAT-D Payload: 24 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: no IKEv1 message padding required Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Message: 244 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: rehashing state object #1248 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: removing state 0x5605dd9f5f10 entry 0x5605dd9f6560 next (nil) prev-next 0x5605dd59d118 from list Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: found hash chain 29 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: list 0x5605dd59d130 first entry (nil) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserted state 0x5605dd9f5f10 entry 0x5605dd9f6560 next (nil) prev-next 0x5605dd59d130 into list Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: updated next entry is (nil) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: complete v1 state transition with STF_OK Mar 30 19:47:58 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1248: transition from state STATE_MAIN_I1 to state STATE_MAIN_I2 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer supports dpd Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: dpd is active locally Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: parent state #1248: STATE_MAIN_I1(half-open-ike) => STATE_MAIN_I2(open-ike) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ignore states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: half-open-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: open-ike states: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: established-anonymous-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: established-authenticated-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: anonymous-ipsec states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: authenticated-ipsec states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: informational states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unknown states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: category states: 1 count states: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state #1248 requesting EVENT_CRYPTO_FAILED to be deleted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sending reply packet to 10.2.128.241:500 (from port 500) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sending 244 bytes for STATE_MAIN_I1 through eth1:500 to 10.2.128.241:500 (using #1248) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 f4 0a 00 00 84 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: af f8 4a ed d5 5f da 94 d0 1e aa 3b 3e 1b a4 be Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: e5 62 f4 df 54 28 2f 4e 1d ab a7 ba e0 a0 c4 b4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: b0 e6 52 1b ac 22 e3 6d 78 bf b3 ca db 58 51 dc Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 5b c8 ec 2e 83 36 84 ce c7 13 05 0a da 67 ec cd Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 3d f9 58 97 3f 80 44 a3 c5 d2 c1 74 fc 6a 9b 4f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 49 92 52 cb d3 e5 4f 71 68 c4 57 3e 80 d2 77 77 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ca 4e b3 4e 06 65 04 3b 36 ad 01 7f 7e 01 a8 f3 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: e1 cc 4d b4 23 71 58 a7 85 71 7e 15 5e 0b a9 4d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 14 00 00 24 9b 77 6f 1f 00 a1 65 96 8c 5a 31 5c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 56 6b 48 f8 11 7c df 08 d5 71 0b 20 98 87 13 2a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: a4 d6 8f 12 14 00 00 18 61 6c 7a c5 2e 97 3f 07 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 39 c4 e5 1a df 94 7f 6c 0d ef 7a 7a 00 00 00 18 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 63 4a d5 46 e8 64 14 6e 23 cb cc 4c 7b 09 c2 13 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bd 84 0f 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 500 ms Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 0.500000 seconds for #1248 Mar 30 19:47:58 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1248: STATE_MAIN_I2: sent MI2, expecting MR2 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: modecfg pull: noquirk policy:push not-client Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: phase 1 is done, looking for phase 2 to unpend Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: *received 228 bytes from 10.2.128.241:500 on eth1 (port=500) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 e4 0a 00 00 84 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 89 9b ba 62 9d b3 88 ed 6e 18 47 24 00 5b 20 11 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 70 5e 16 39 16 2f 96 06 7c 40 14 b8 c3 f6 2a 7d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 1f f0 57 bf aa 31 db 83 9f 5b 4a 83 4b d5 5d 3b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 41 9f 70 28 8c de ed 41 48 30 7b bf 52 6a 59 58 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 00 c7 a1 b0 f9 96 5e 4d 1b de 3f 03 2c ad 05 1e Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 88 40 d0 8f 02 aa 81 7d e6 26 34 eb d3 ef e0 a1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 2e 53 5f 16 4b 42 a2 ac 6b 24 ff f3 5c 23 2e bb Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: c3 4f 16 e6 99 a2 05 df f6 b5 85 f3 23 b9 23 18 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 14 00 00 14 c5 33 e8 18 19 b9 0a 9f 16 43 79 64 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 2c 9a 81 3b 14 00 00 18 63 4a d5 46 e8 64 14 6e Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 23 cb cc 4c 7b 09 c2 13 bd 84 0f 20 00 00 00 18 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 06 50 89 c4 99 58 cc 0a e4 83 df f1 03 ae 5a a0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 82 76 92 70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 228 (0xe4) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: found hash chain 29 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1248, provided msgid 00000000 == 00000000 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: v1 state object #1248 found, in STATE_MAIN_I2 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: #1248 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: got payload 0x10 (ISAKMP_NEXT_KE) needed: 0x410opt: 0x102080 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Key Exchange Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONCE (0xa) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 132 (0x84) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: got payload 0x400 (ISAKMP_NEXT_NONCE) needed: 0x400opt: 0x102080 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP Nonce Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NATD_RFC (0x14) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 20 (0x14) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: got payload 0x100000 (ISAKMP_NEXT_NATD_RFC) needed: 0x0opt: 0x102080 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP NAT-D Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NATD_RFC (0x14) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 24 (0x18) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: got payload 0x100000 (ISAKMP_NEXT_NATD_RFC) needed: 0x0opt: 0x102080 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***parse ISAKMP NAT-D Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: length: 24 (0x18) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: **emit ISAKMP Message: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_ID (0x5) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: flags: ISAKMP_FLAG_v1_ENCRYPTION (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH public value received: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 89 9b ba 62 9d b3 88 ed 6e 18 47 24 00 5b 20 11 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 70 5e 16 39 16 2f 96 06 7c 40 14 b8 c3 f6 2a 7d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 1f f0 57 bf aa 31 db 83 9f 5b 4a 83 4b d5 5d 3b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 41 9f 70 28 8c de ed 41 48 30 7b bf 52 6a 59 58 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 00 c7 a1 b0 f9 96 5e 4d 1b de 3f 03 2c ad 05 1e Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 88 40 d0 8f 02 aa 81 7d e6 26 34 eb d3 ef e0 a1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 2e 53 5f 16 4b 42 a2 ac 6b 24 ff f3 5c 23 2e bb Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: c3 4f 16 e6 99 a2 05 df f6 b5 85 f3 23 b9 23 18 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: started looking for secret for 10.2.128.240->10.2.128.241 of kind PPK_PSK Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: actually looking for secret for 10.2.128.240->10.2.128.241 of kind PPK_PSK Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: line 1: key type PPK_PSK(10.2.128.240) to type PPK_PSK Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 1: compared key 10.2.128.241 to 10.2.128.240 / 10.2.128.241 -> 4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 2: compared key 10.2.128.240 to 10.2.128.240 / 10.2.128.241 -> 12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: line 1: match=12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: best_match 0>12 best=0x5605dd9f4e70 (line=1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: concluding with best_match=12 best=0x5605dd9f4e70 (lineno=1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: parent1 type: 2 group: 2 len: 2800 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Copying DH pub key pointer to be sent to a thread helper Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0: pcw_work: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: asking crypto helper 0 to do compute dh+iv (V1 Phase 1); request ID 172 (len=2800, pcw_work=0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 read fd: 12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 doing compute dh+iv (V1 Phase 1); request ID 172 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer's g: 89 9b ba 62 9d b3 88 ed 6e 18 47 24 00 5b 20 11 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer's g: 70 5e 16 39 16 2f 96 06 7c 40 14 b8 c3 f6 2a 7d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer's g: 1f f0 57 bf aa 31 db 83 9f 5b 4a 83 4b d5 5d 3b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer's g: 41 9f 70 28 8c de ed 41 48 30 7b bf 52 6a 59 58 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer's g: 00 c7 a1 b0 f9 96 5e 4d 1b de 3f 03 2c ad 05 1e Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer's g: 88 40 d0 8f 02 aa 81 7d e6 26 34 eb d3 ef e0 a1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer's g: 2e 53 5f 16 4b 42 a2 ac 6b 24 ff f3 5c 23 2e bb Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: peer's g: c3 4f 16 e6 99 a2 05 df f6 b5 85 f3 23 b9 23 18 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Started DH shared-secret computation in NSS: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59d2c2e7b0/63) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: 30 31 32 33 34 35 36 37 38 39 61 62 63 64 65 66 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: 67 68 69 6a 6b 6c 6d 6e 6f 70 71 72 73 74 75 76 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: 77 78 79 7a 41 42 43 44 45 46 47 48 49 4a 4b 4c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: 4d 4e 4f 50 51 52 53 54 55 56 57 58 59 5a 21 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc008870, size: 79 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey psk for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: psk symkey from symkey(0x7f59cc008870) - next-byte(0) key-size(63) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008870, size: 79 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: psk: key@0x7f59cc008700, size: 63 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc008870 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: created sha context 0x7f59cc010430 from key psk(0x7f59cc008700) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: begin sha with context 0x7f59cc010430 from key psk(0x7f59cc008700) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf sha: init 0x7f59cc008790 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc008700 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: update bytes Ni 0x7f59d2c2e7ef (length 32) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: update bytes Nr 0x7f59d2c2e80f (length 16) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID psk prf: final 0x7f59cc0086e0 (length 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc0086e0/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: ca dd 63 20 c4 26 0d b4 51 d4 05 d2 6f c1 4c e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: cc 1d 27 6c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc008870, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc008870) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008870, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc008700, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc008870 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc008700) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008700, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc008870, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: created sha context 0x7f59cc010430 from key SKEYID(0x7f59cc008870) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: begin sha with context 0x7f59cc010430 from key SKEYID(0x7f59cc008870) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf sha: init 0x7f59cc008790 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc008870 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: update symkey g^xy 0x7f59cc008510 (size 128) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 128 bytes of symkey 0x7f59cc008510 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008510, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 128 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 58 8e 91 a6 84 87 98 3f 4b ef 61 f9 61 60 2c ca Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 3d 1f 48 67 82 e8 35 fc df 85 18 41 9b b7 5c 2e Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: f1 e9 cb dc 37 ab 7e 9b 68 e9 75 0a 26 9f 8b 0a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 41 05 5d bb c4 32 6f 7c 69 d2 16 e0 cf 7f c0 7d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 19 e6 b3 b4 21 b9 b6 a9 ff bc f9 d5 79 94 fd 82 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 93 78 19 5d 45 73 3d 9e 83 0c b4 09 11 c2 35 80 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: a1 f0 a7 be 80 df 84 32 bf 70 21 2e ae 2a 65 46 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: bb 0a 10 5d 33 81 1d 62 02 88 cd a4 d5 01 f3 2f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 128 bytes at 0x7f59cc000fb0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: aa b7 a8 cd a3 8a bd 9d 27 cc 52 70 37 55 40 70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 15 ee 50 70 f4 58 8d db a8 83 49 44 96 f2 28 4c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: bd 00 cf c0 bf e7 6b 31 15 3e e4 70 16 36 3e 93 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 2e dc 2e 60 e1 c6 0e d5 65 17 03 0c 27 f5 91 81 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 8b 41 cf 5c 50 2f 81 b5 1c fc 29 a1 13 d2 c9 43 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: d7 8b 22 ca 64 a1 bd 5e f5 84 bf 2f 90 6c 77 89 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 27 ea 32 fe 93 15 18 27 2e 33 27 bc c3 d0 cb c4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 26 1f 57 cc ae 27 2d e3 fd 61 d9 9f 42 91 b3 10 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: update bytes CKI_i 0x7f59d2c2e91f (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: update bytes CKI_r 0x7f59d2c2e927 (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: update bytes 0 0x7f59d2c2e6ac (length 1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_d prf: final 0x7f59cc00a350 (length 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc00a350/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: 6f 68 be ed 01 f4 ea 6b 7d 55 f0 89 d6 ac 0a fe Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: da df 4f 89 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc017470, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc017470) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc017470, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc008870, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc017470 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc008700) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008700, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc017470, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: created sha context 0x7f59cc010430 from key SKEYID(0x7f59cc017470) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: begin sha with context 0x7f59cc010430 from key SKEYID(0x7f59cc017470) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf sha: init 0x7f59cc008790 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc017470 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update symkey SKEYID_d 0x7f59cc008870 (size 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 20 bytes of symkey 0x7f59cc008870 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008870, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 32 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 16 38 0d 3d f6 9c 9e 90 03 71 ba da 7a 71 81 45 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 50 33 cc 28 33 69 04 5b 27 21 cd c4 93 be 79 7d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 32 bytes at 0x7f59cc018d80 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 6f 68 be ed 01 f4 ea 6b 7d 55 f0 89 d6 ac 0a fe Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: da df 4f 89 00 00 00 00 00 00 00 00 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update symkey g^xy 0x7f59cc008510 (size 128) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 128 bytes of symkey 0x7f59cc008510 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008510, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 128 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 58 8e 91 a6 84 87 98 3f 4b ef 61 f9 61 60 2c ca Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 3d 1f 48 67 82 e8 35 fc df 85 18 41 9b b7 5c 2e Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: f1 e9 cb dc 37 ab 7e 9b 68 e9 75 0a 26 9f 8b 0a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 41 05 5d bb c4 32 6f 7c 69 d2 16 e0 cf 7f c0 7d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 19 e6 b3 b4 21 b9 b6 a9 ff bc f9 d5 79 94 fd 82 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 93 78 19 5d 45 73 3d 9e 83 0c b4 09 11 c2 35 80 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: a1 f0 a7 be 80 df 84 32 bf 70 21 2e ae 2a 65 46 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: bb 0a 10 5d 33 81 1d 62 02 88 cd a4 d5 01 f3 2f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 128 bytes at 0x7f59cc000fb0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: aa b7 a8 cd a3 8a bd 9d 27 cc 52 70 37 55 40 70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 15 ee 50 70 f4 58 8d db a8 83 49 44 96 f2 28 4c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: bd 00 cf c0 bf e7 6b 31 15 3e e4 70 16 36 3e 93 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 2e dc 2e 60 e1 c6 0e d5 65 17 03 0c 27 f5 91 81 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 8b 41 cf 5c 50 2f 81 b5 1c fc 29 a1 13 d2 c9 43 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: d7 8b 22 ca 64 a1 bd 5e f5 84 bf 2f 90 6c 77 89 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 27 ea 32 fe 93 15 18 27 2e 33 27 bc c3 d0 cb c4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 26 1f 57 cc ae 27 2d e3 fd 61 d9 9f 42 91 b3 10 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update bytes CKI_i 0x7f59d2c2e91f (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update bytes CKI_r 0x7f59d2c2e927 (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: update bytes 1 0x7f59d2c2e69c (length 1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_a prf: final 0x7f59cc00a350 (length 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc00a350/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: a0 c7 a1 16 73 a3 30 27 df 9d a6 80 71 ad db ff Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: eb da bc e4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc018ba0, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc018ba0) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc018ba0, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc017470, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc018ba0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc008700) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008700, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: created sha context 0x7f59cc010430 from key SKEYID(0x7f59cc018ba0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: begin sha with context 0x7f59cc010430 from key SKEYID(0x7f59cc018ba0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf sha: init 0x7f59cc008790 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc018ba0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update symkey SKEYID_a 0x7f59cc017470 (size 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 20 bytes of symkey 0x7f59cc017470 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc017470, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 32 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: be 08 ab 96 0f 2f 4a 25 91 40 64 bc ac bb 38 25 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 66 06 41 61 b0 f2 6f 43 f8 89 ed 41 85 c4 15 de Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 32 bytes at 0x7f59cc01a590 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: a0 c7 a1 16 73 a3 30 27 df 9d a6 80 71 ad db ff Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: eb da bc e4 00 00 00 00 00 00 00 00 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update symkey g^xy 0x7f59cc008510 (size 128) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 128 bytes of symkey 0x7f59cc008510 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008510, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 128 bytes, type/mechanism: CONCATENATE_DATA_AND_BASE (0x00000363) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 128 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 58 8e 91 a6 84 87 98 3f 4b ef 61 f9 61 60 2c ca Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 3d 1f 48 67 82 e8 35 fc df 85 18 41 9b b7 5c 2e Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: f1 e9 cb dc 37 ab 7e 9b 68 e9 75 0a 26 9f 8b 0a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 41 05 5d bb c4 32 6f 7c 69 d2 16 e0 cf 7f c0 7d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 19 e6 b3 b4 21 b9 b6 a9 ff bc f9 d5 79 94 fd 82 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 93 78 19 5d 45 73 3d 9e 83 0c b4 09 11 c2 35 80 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: a1 f0 a7 be 80 df 84 32 bf 70 21 2e ae 2a 65 46 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: bb 0a 10 5d 33 81 1d 62 02 88 cd a4 d5 01 f3 2f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 128 bytes at 0x7f59cc000fb0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: aa b7 a8 cd a3 8a bd 9d 27 cc 52 70 37 55 40 70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 15 ee 50 70 f4 58 8d db a8 83 49 44 96 f2 28 4c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: bd 00 cf c0 bf e7 6b 31 15 3e e4 70 16 36 3e 93 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 2e dc 2e 60 e1 c6 0e d5 65 17 03 0c 27 f5 91 81 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 8b 41 cf 5c 50 2f 81 b5 1c fc 29 a1 13 d2 c9 43 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: d7 8b 22 ca 64 a1 bd 5e f5 84 bf 2f 90 6c 77 89 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 27 ea 32 fe 93 15 18 27 2e 33 27 bc c3 d0 cb c4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: 26 1f 57 cc ae 27 2d e3 fd 61 d9 9f 42 91 b3 10 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update bytes CKI_i 0x7f59d2c2e91f (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update bytes CKI_r 0x7f59d2c2e927 (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: update bytes 2 0x7f59d2c2e69c (length 1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: SKEYID_e prf: final 0x7f59cc0036e0 (length 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc0036e0/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: 54 54 3a 15 fc e2 6b 83 75 6c 40 0a 5d da 6c 96 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: 87 53 98 39 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc008b70, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc008b70) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008b70, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc008b70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc018ba0) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc008b70, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: appendix_b prf: created sha context 0x7f59cc010430 from key SKEYID_e(0x7f59cc008b70) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: appendix_b prf: begin sha with context 0x7f59cc010430 from key SKEYID_e(0x7f59cc008b70) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: appendix_b prf sha: init 0x7f59cc008790 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc008b70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: appendix_b prf: update bytes 0 0x7f59d2c2e6dc (length 1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: appendix_b prf: final 0x7f59cc0172f0 (length 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc0172f0/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: b2 1f 07 86 f7 ec 1b 5b 88 9e 2f 7d a8 94 29 de Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: cf 96 a6 86 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc01d260, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc01d260) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc01d260, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc008b70, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc01d260 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: key: symkey from symkey(0x7f59cc008b70) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008b70, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: key:: key@0x7f59cc01d260, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc018ba0) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc018ba0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc0102f0, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Kn prf: created sha context 0x7f59cc010430 from key SKEYID_e(0x7f59cc0102f0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Kn prf: begin sha with context 0x7f59cc010430 from key SKEYID_e(0x7f59cc0102f0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Kn prf sha: init 0x7f59cc008790 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc0102f0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Kn prf: update symkey old_k 0x7f59cc01d260 (size 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracting all 20 bytes of symkey 0x7f59cc01d260 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc01d260, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key: key@0x7f59cc008990, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sizeof bytes 32 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: cb 9c d4 40 ed 0c 25 77 e6 74 db f0 48 28 17 d5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: wrapper: 18 51 f1 8a 16 85 61 f3 81 01 42 d8 dc 5b 85 b7 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: slot_key:: free key 0x7f59cc008990 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: nss hmac digest hack extracted len 32 bytes at 0x7f59cc01a590 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: b2 1f 07 86 f7 ec 1b 5b 88 9e 2f 7d a8 94 29 de Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unwrapped: cf 96 a6 86 00 00 00 00 00 00 00 00 00 00 00 00 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Kn prf: final 0x7f59cc0036e0 (length 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ephemeral_key: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes merge symkey(0x5605dd9ea5d0) bytes(0x7f59cc0036e0/20) - derive(CONCATENATE_DATA_AND_BASE) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x5605dd9ea5d0, size: 16 bytes, type/mechanism: AES_KEY_GEN (0x00001080) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: 3e ee b6 d5 53 c7 38 2f ad 5e 56 e6 01 e9 92 f1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: bytes: da 18 7a de Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: key@0x7f59cc0085a0, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey final for non-NSS algorithm: NULL (legacy hack), mechanism: EXTRACT_KEY_FROM_KEY(869), flags: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final symkey from symkey(0x7f59cc0085a0) - next-byte(0) key-size(20) flags(0x0) derive(EXTRACT_KEY_FROM_KEY) target(EXTRACT_KEY_FROM_KEY) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc0085a0, size: 36 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: final: key@0x7f59cc0102f0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey_from_bytes: free key 0x7f59cc0085a0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: concat: merge symkey(1: 0x7f59cc008b70) symkey(2: 0x7f59cc0102f0) - derive(CONCATENATE_BASE_AND_KEY) target(SHA1_KEY_DERIVATION) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey 1: key@0x7f59cc008b70, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey 2: key@0x7f59cc0102f0, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: concat:: key@0x7f59cc0085a0, size: 40 bytes, type/mechanism: SHA1_KEY_DERIVATION (0x00000392) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: append_symkey_symkey: free key 0x7f59cc008b70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: old_k#N: free key 0x7f59cc01d260 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: old_k#final: free key 0x7f59cc0102f0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey cryptkey for NSS algorithm: 3des_cbc, mechanism: DES3_CBC(307), flags: 300 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: cryptkey symkey from symkey(0x7f59cc0085a0) - next-byte(0) key-size(24) flags(0x300) derive(EXTRACT_KEY_FROM_KEY) target(DES3_CBC) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc0085a0, size: 40 bytes, type/mechanism: SHA1_KEY_DERIVATION (0x00000392) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: cryptkey: key@0x7f59cc0102f0, size: 24 bytes, type/mechanism: DES3_CBC (0x00000133) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: keymat: free key 0x7f59cc0085a0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: pointers skeyid_d 0x7f59cc008870, skeyid_a 0x7f59cc017470, skeyid_e 0x7f59cc018ba0, enc_key 0x7f59cc0102f0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_i: af f8 4a ed d5 5f da 94 d0 1e aa 3b 3e 1b a4 be Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_i: e5 62 f4 df 54 28 2f 4e 1d ab a7 ba e0 a0 c4 b4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_i: b0 e6 52 1b ac 22 e3 6d 78 bf b3 ca db 58 51 dc Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_i: 5b c8 ec 2e 83 36 84 ce c7 13 05 0a da 67 ec cd Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_i: 3d f9 58 97 3f 80 44 a3 c5 d2 c1 74 fc 6a 9b 4f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_i: 49 92 52 cb d3 e5 4f 71 68 c4 57 3e 80 d2 77 77 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_i: ca 4e b3 4e 06 65 04 3b 36 ad 01 7f 7e 01 a8 f3 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_i: e1 cc 4d b4 23 71 58 a7 85 71 7e 15 5e 0b a9 4d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_r: 89 9b ba 62 9d b3 88 ed 6e 18 47 24 00 5b 20 11 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_r: 70 5e 16 39 16 2f 96 06 7c 40 14 b8 c3 f6 2a 7d Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_r: 1f f0 57 bf aa 31 db 83 9f 5b 4a 83 4b d5 5d 3b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_r: 41 9f 70 28 8c de ed 41 48 30 7b bf 52 6a 59 58 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_r: 00 c7 a1 b0 f9 96 5e 4d 1b de 3f 03 2c ad 05 1e Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_r: 88 40 d0 8f 02 aa 81 7d e6 26 34 eb d3 ef e0 a1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_r: 2e 53 5f 16 4b 42 a2 ac 6b 24 ff f3 5c 23 2e bb Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: DH_r: c3 4f 16 e6 99 a2 05 df f6 b5 85 f3 23 b9 23 18 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IV sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IV sha hasher: context 0x7f59cc010430 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IV e1 26 b6 9a 90 b9 bf c9 03 38 e4 bc 5d 72 6b 9f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IV 41 2c a4 c6 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: end of IV generation Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 finished compute dh+iv (V1 Phase 1); request ID 172 time elapsed 19588 usec Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: #1248 send_crypto_helper_request:643 st->st_calculating = TRUE; Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state #1248 requesting EVENT_v1_RETRANSMIT to be deleted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 60 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 60 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_CRYPTO_FAILED, timeout in 60.000000 seconds for #1248 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: complete v1 state transition with STF_SUSPEND Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 has finished work (pcw_work now 1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: crypto helper 0 replies to request ID 172 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: calling continuation function 0x5605dd2c2320 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: main_inR2_outI3_cryptotail for #1248: calculated DH, sending R1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: #1248 main_inR2_outI3_cryptotail:1648 st->st_calculating = FALSE; Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: thinking about whether to send my certificate: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: I have RSA key: OAKLEY_PRESHARED_KEY cert.type: 0?? Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sendcert: cert_alwayssend and I did not get a certificate request Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: so do not send cert. Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: I did not send a certificate because digital signatures are not being used. (PSK) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: I am not sending a certificate request Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: I will NOT send an initial contact payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: checking NAT-t: enabled and RFC 3947 (NAT-Traversal) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: context 0x5605dd9f6720 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD 63 4a d5 46 e8 64 14 6e 23 cb cc 4c 7b 09 c2 13 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD bd 84 0f 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hasher=0x5605dd5a3a20(20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: icookie= 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: rcookie= 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: ip= 0a 02 80 f0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: port=500 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 63 4a d5 46 e8 64 14 6e 23 cb cc 4c 7b 09 c2 13 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= bd 84 0f 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: mapped mechanism 220 to tag 4 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD sha hasher: context 0x5605dd9f6720 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD 61 6c 7a c5 2e 97 3f 07 39 c4 e5 1a df 94 7f 6c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NATD 0d ef 7a 7a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hasher=0x5605dd5a3a20(20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: icookie= 91 1f 46 79 4e 25 69 8b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: rcookie= 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: ip= 0a 02 80 f1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: port=500 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 61 6c 7a c5 2e 97 3f 07 39 c4 e5 1a df 94 7f 6c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: natd_hash: hash= 0d ef 7a 7a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: expected NAT-D(me): 63 4a d5 46 e8 64 14 6e 23 cb cc 4c 7b 09 c2 13 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: expected NAT-D(me): bd 84 0f 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: expected NAT-D(him): Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 61 6c 7a c5 2e 97 3f 07 39 c4 e5 1a df 94 7f 6c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 0d ef 7a 7a Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: received NAT-D: 63 4a d5 46 e8 64 14 6e 23 cb cc 4c 7b 09 c2 13 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: received NAT-D: bd 84 0f 20 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: received NAT-D: 06 50 89 c4 99 58 cc 0a e4 83 df f1 03 ae 5a a0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: received NAT-D: 82 76 92 70 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT_TRAVERSAL encaps using auto-detect Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT_TRAVERSAL that end is behind NAT 10.2.128.241 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT_TRAVERSAL nat_keepalive enabled 10.2.128.241 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-Traversal: Result using RFC 3947 (NAT-Traversal) sender port 500: peer behind NAT Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT_T_WITH_KA detected Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 20 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 20 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_NAT_T_KEEPALIVE, timeout in 20.000000 seconds Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Identification Payload (IPsec DOI): Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_HASH (0x8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ID type: ID_IPV4_ADDR (0x1) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Protocol ID: 0 (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: port: 0 (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 4 raw bytes of my identity into ISAKMP Identification Payload (IPsec DOI) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: my identity 0a 02 80 f0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Identification Payload (IPsec DOI): 12 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: extract symkey clone for NSS algorithm: sha, mechanism: SHA_1_HMAC(545), flags: 800 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone symkey from symkey(0x7f59cc008700) - next-byte(0) key-size(20) flags(0x800) derive(EXTRACT_KEY_FROM_KEY) target(SHA_1_HMAC) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: symkey: key@0x7f59cc008700, size: 20 bytes, type/mechanism: EXTRACT_KEY_FROM_KEY (0x00000365) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: key@0x7f59cc0085a0, size: 20 bytes, type/mechanism: SHA_1_HMAC (0x00000221) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: created sha context 0x5605dd9f39b0 from key symkey(0x7f59cc0085a0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: begin sha with context 0x5605dd9f39b0 from key symkey(0x7f59cc0085a0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf sha: init 0x5605dd9ea020 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: clone: free key 0x7f59cc0085a0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9e9f60 (length 128) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9f02a0 (length 128) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9f6370 (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9f6398 (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hashing 48 bytes of SA Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd9f3b94 (length 48) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: update bytes data 0x5605dd5ac880 (length 8) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: hmac prf: final 0x7ffc2af99340 (length 20) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ***emit ISAKMP Hash Payload: Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_NONE (0x0) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 20 raw bytes of HASH_I into ISAKMP Hash Payload Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: HASH_I d8 f6 53 9e 5d 65 e4 a3 70 fa 5b 69 5f 67 3c a6 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: HASH_I a9 59 c1 bd Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Hash Payload: 24 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: Not sending INITIAL_CONTACT Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: encrypting: 08 00 00 0c 01 00 00 00 0a 02 80 f0 00 00 00 18 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: encrypting: d8 f6 53 9e 5d 65 e4 a3 70 fa 5b 69 5f 67 3c a6 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: encrypting: a9 59 c1 bd Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IV: e1 26 b6 9a 90 b9 bf c9 03 38 e4 bc 5d 72 6b 9f Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: IV: 41 2c a4 c6 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unpadded size is: 36 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting 4 zero bytes of encryption padding into ISAKMP Message Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: encrypting 40 using OAKLEY_3DES_CBC Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: do_3des init start Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NSS: do_3des init end Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: next IV: 5f 2d 1d e4 a0 24 45 10 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: no IKEv1 message padding required Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: emitting length of ISAKMP Message: 68 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: complete v1 state transition with STF_OK Mar 30 19:47:58 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1248: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: parent state #1248: STATE_MAIN_I2(open-ike) => STATE_MAIN_I3(open-ike) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: ignore states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: half-open-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: open-ike states: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: established-anonymous-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: established-authenticated-ike states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: anonymous-ipsec states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: authenticated-ipsec states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: informational states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: unknown states: 0 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: category states: 1 count states: 1 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: state #1248 requesting EVENT_CRYPTO_FAILED to be deleted Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-T: floating local port 500 to nat port 4500 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-T connection has wrong interface definition 10.2.128.240:4500 vs 10.2.128.240:500 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: NAT-T: updated to use interface eth1:4500 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sending reply packet to 10.2.128.241:4500 (from port 4500) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for STATE_MAIN_I2 through eth1:4500 to 10.2.128.241:4500 (using #1248) Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 91 1f 46 79 4e 25 69 8b 03 de 7a 6b Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 9d 7d 7e e5 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 5b 85 94 c5 e1 ff 0b 2c 34 77 75 c7 c0 b0 c7 9c Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 79 5b b4 75 70 24 a2 0a 31 28 7c cc b9 c6 c6 ae Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: 5f 2d 1d e4 a0 24 45 10 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 500 ms Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 0.500000 seconds for #1248 Mar 30 19:47:58 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1248: STATE_MAIN_I3: sent MI3, expecting MR3 Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: modecfg pull: noquirk policy:push not-client Mar 30 19:47:58 vvr-10 pluto[24271]: | vvr-0: phase 1 is done, looking for phase 2 to unpend Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_SHUNT_SCAN Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: expiring aged bare shunts Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 20 seconds Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 20 seconds and change Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_SHUNT_SCAN, timeout in 20.000000 seconds Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1248 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1248 attempt 1 of 0 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1248) Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 91 1f 46 79 4e 25 69 8b 03 de 7a 6b Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 9d 7d 7e e5 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 5b 85 94 c5 e1 ff 0b 2c 34 77 75 c7 c0 b0 c7 9c Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 79 5b b4 75 70 24 a2 0a 31 28 7c cc b9 c6 c6 ae Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 5f 2d 1d e4 a0 24 45 10 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 500 ms Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 0 seconds and change Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 0.500000 seconds for #1248 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1248 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1248 attempt 1 of 0 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1248) Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 91 1f 46 79 4e 25 69 8b 03 de 7a 6b Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 9d 7d 7e e5 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 5b 85 94 c5 e1 ff 0b 2c 34 77 75 c7 c0 b0 c7 9c Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 79 5b b4 75 70 24 a2 0a 31 28 7c cc b9 c6 c6 ae Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: 5f 2d 1d e4 a0 24 45 10 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 1000 ms Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 1 seconds and change Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 1.000000 seconds for #1248 Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_PENDING_DDNS Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: event_schedule called for 60 seconds Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 60 seconds and change Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_PENDING_DDNS, timeout in 60.000000 seconds Mar 30 19:47:59 vvr-10 pluto[24271]: | vvr-0: elapsed time in connection_check_ddns for hostname lookup 0.000000 Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1248 Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1248 attempt 1 of 0 Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1248) Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 91 1f 46 79 4e 25 69 8b 03 de 7a 6b Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: 9d 7d 7e e5 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: 5b 85 94 c5 e1 ff 0b 2c 34 77 75 c7 c0 b0 c7 9c Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: 79 5b b4 75 70 24 a2 0a 31 28 7c cc b9 c6 c6 ae Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: 5f 2d 1d e4 a0 24 45 10 Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 2000 ms Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 2 seconds and change Mar 30 19:48:00 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 2.000000 seconds for #1248 Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1248 Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1248 attempt 1 of 0 Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1248) Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 91 1f 46 79 4e 25 69 8b 03 de 7a 6b Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: 9d 7d 7e e5 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: 5b 85 94 c5 e1 ff 0b 2c 34 77 75 c7 c0 b0 c7 9c Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: 79 5b b4 75 70 24 a2 0a 31 28 7c cc b9 c6 c6 ae Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: 5f 2d 1d e4 a0 24 45 10 Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 4000 ms Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 4 seconds and change Mar 30 19:48:02 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 4.000000 seconds for #1248 Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1248 Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for 10.2.128.241 "conn_vvr-0-ipsectunnel-0-remote-0" #1248 attempt 1 of 0 Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: sending 72 bytes for EVENT_v1_RETRANSMIT through eth1:4500 to 10.2.128.241:4500 (using #1248) Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: 00 00 00 00 91 1f 46 79 4e 25 69 8b 03 de 7a 6b Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: 9d 7d 7e e5 05 10 02 01 00 00 00 00 00 00 00 44 Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: 5b 85 94 c5 e1 ff 0b 2c 34 77 75 c7 c0 b0 c7 9c Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: 79 5b b4 75 70 24 a2 0a 31 28 7c cc b9 c6 c6 ae Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: 5f 2d 1d e4 a0 24 45 10 Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: event_schedule_ms called for about 8000 ms Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: event_schedule_tv called for about 8 seconds and change Mar 30 19:48:06 vvr-10 pluto[24271]: | vvr-0: inserting event EVENT_v1_RETRANSMIT, timeout in 8.000000 seconds for #1248 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: *received 228 bytes from 10.2.128.241:4500 on eth1 (port=4500) Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 04 10 02 00 00 00 00 00 00 00 00 e4 0a 00 00 84 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 89 9b ba 62 9d b3 88 ed 6e 18 47 24 00 5b 20 11 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 70 5e 16 39 16 2f 96 06 7c 40 14 b8 c3 f6 2a 7d Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 1f f0 57 bf aa 31 db 83 9f 5b 4a 83 4b d5 5d 3b Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 41 9f 70 28 8c de ed 41 48 30 7b bf 52 6a 59 58 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 00 c7 a1 b0 f9 96 5e 4d 1b de 3f 03 2c ad 05 1e Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 88 40 d0 8f 02 aa 81 7d e6 26 34 eb d3 ef e0 a1 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 2e 53 5f 16 4b 42 a2 ac 6b 24 ff f3 5c 23 2e bb Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: c3 4f 16 e6 99 a2 05 df f6 b5 85 f3 23 b9 23 18 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 14 00 00 14 c5 33 e8 18 19 b9 0a 9f 16 43 79 64 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 2c 9a 81 3b 14 00 00 18 63 4a d5 46 e8 64 14 6e Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 23 cb cc 4c 7b 09 c2 13 bd 84 0f 20 00 00 00 18 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 06 50 89 c4 99 58 cc 0a e4 83 df f1 03 ae 5a a0 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 82 76 92 70 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: **parse ISAKMP Message: Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: initiator cookie: Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 91 1f 46 79 4e 25 69 8b Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: responder cookie: Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: next payload type: ISAKMP_NEXT_KE (0x4) Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: ISAKMP version: ISAKMP Version 1.0 (rfc2407) (0x10) Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: exchange type: ISAKMP_XCHG_IDPROT (0x2) Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: flags: none (0x0) Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: message ID: 00 00 00 00 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: length: 228 (0xe4) Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: processing version=1.0 packet with exchange type=ISAKMP_XCHG_IDPROT (2) Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: finding hash chain in state hash table Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: ICOOKIE: 91 1f 46 79 4e 25 69 8b Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: RCOOKIE: 03 de 7a 6b 9d 7d 7e e5 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: found hash chain 29 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: v1 peer and cookies match on #1248, provided msgid 00000000 == 00000000 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: v1 state object #1248 found, in STATE_MAIN_I3 Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0" Mar 30 19:48:08 vvr-10 pluto[24271]: | vvr-0: #1248 state_busy:2408 st != NULL && st->st_calculating == FALSE; Mar 30 19:48:08 vvr-10 pluto[24271]: vvr-0: "conn_vvr-0-ipsectunnel-0-remote-0" #1248: discarding duplicate packet; already STATE_MAIN_I3 Mar 30 19:48:14 vvr-10 pluto[24271]: | vvr-0: handling event EVENT_v1_RETRANSMIT for parent state #1248 Mar 30 19:48:14 vvr-10 pluto[24271]: | vvr-0: processing connection "conn_vvr-0-ipsectunnel-0-remote-0"