
  Electric Fence 2.1 Copyright (C) 1987-1998 Bruce Perens.
../parentI1i1 ike_alg_register_enc(): Activating OAKLEY_TWOFISH_CBC_SSH: Ok (ret=0)
../parentI1i1 ike_alg_register_enc(): Activating OAKLEY_TWOFISH_CBC: Ok (ret=0)
../parentI1i1 ike_alg_register_enc(): Activating OAKLEY_SERPENT_CBC: Ok (ret=0)
../parentI1i1 ike_alg_register_enc(): Activating OAKLEY_AES_CBC: Ok (ret=0)
../parentI1i1 ike_alg_register_enc(): Activating OAKLEY_BLOWFISH_CBC: Ok (ret=0)
../parentI1i1 ike_alg_register_hash(): Activating OAKLEY_SHA2_512: Ok (ret=0)
../parentI1i1 ike_alg_register_hash(): Activating OAKLEY_SHA2_256: Ok (ret=0)
| interface "eth0" matched left side
../parentI1i1 added connection description "westnet--eastnet-ikev2"
RC=0 "westnet--eastnet-ikev2": 192.0.1.0/24===192.1.2.45<192.1.2.45>[@west,S=C]...192.1.2.23<192.1.2.23>[@east,S=C]===192.0.2.0/24; unrouted; eroute owner: #0
RC=0 "westnet--eastnet-ikev2":     myip=unset; hisip=unset;
RC=0 "westnet--eastnet-ikev2":   ike_life: 3600s; ipsec_life: 28800s; rekey_margin: 540s; rekey_fuzz: 100%; keyingtries: 3
RC=0 "westnet--eastnet-ikev2":   policy: PSK+ENCRYPT+TUNNEL+PFS+IKEV1_DISABLE+IKEv2ALLOW+IKEV2_PROPOSE; prio: 24,24; interface: eth0; 
RC=0 "westnet--eastnet-ikev2":   newest ISAKMP SA: #0; newest IPsec SA: #0; 
| interface "eth0" matched left side
| ICOOKIE:  00 01 02 03  04 05 06 07
| RCOOKIE:  00 00 00 00  00 00 00 00
| state hash entry 4
| inserting state object #1 on chain 4
../parentI1i1 initiating v2 parent SA
RC=133 STATE_PARENT_I1: initiate
sending 668 bytes for ikev2_parent_outI1_common through eth0:500 to 192.1.2.23:500 (using #1)
|   00 01 02 03  04 05 06 07  00 00 00 00  00 00 00 00
|   21 20 22 08  00 00 00 00  00 00 02 9c  22 80 01 94
|   02 00 00 28  01 01 00 04  03 00 00 08  01 00 00 0c
|   03 00 00 08  03 00 00 02  03 00 00 08  02 00 00 02
|   00 00 00 08  04 00 00 05  02 00 00 28  02 01 00 04
|   03 00 00 08  01 00 00 0c  03 00 00 08  03 00 00 02
|   03 00 00 08  02 00 00 01  00 00 00 08  04 00 00 05
|   02 00 00 28  03 01 00 04  03 00 00 08  01 00 00 03
|   03 00 00 08  03 00 00 02  03 00 00 08  02 00 00 02
|   00 00 00 08  04 00 00 05  02 00 00 28  04 01 00 04
|   03 00 00 08  01 00 00 03  03 00 00 08  03 00 00 02
|   03 00 00 08  02 00 00 01  00 00 00 08  04 00 00 05
|   02 00 00 28  05 01 00 04  03 00 00 08  01 00 00 03
|   03 00 00 08  03 00 00 02  03 00 00 08  02 00 00 02
|   00 00 00 08  04 00 00 02  02 00 00 28  06 01 00 04
|   03 00 00 08  01 00 00 03  03 00 00 08  03 00 00 02
|   03 00 00 08  02 00 00 01  00 00 00 08  04 00 00 02
|   02 00 00 28  07 01 00 04  03 00 00 08  01 00 00 0c
|   03 00 00 08  03 00 00 02  03 00 00 08  02 00 00 02
|   00 00 00 08  04 00 00 0e  02 00 00 28  08 01 00 04
|   03 00 00 08  01 00 00 0c  03 00 00 08  03 00 00 02
|   03 00 00 08  02 00 00 01  00 00 00 08  04 00 00 0e
|   02 00 00 28  09 01 00 04  03 00 00 08  01 00 00 03
|   03 00 00 08  03 00 00 02  03 00 00 08  02 00 00 02
|   00 00 00 08  04 00 00 0e  00 00 00 28  0a 01 00 04
|   03 00 00 08  01 00 00 03  03 00 00 08  03 00 00 02
|   03 00 00 08  02 00 00 01  00 00 00 08  04 00 00 0e
|   28 00 00 c8  00 05 00 00  ff bc 6a 92  a6 b9 55 9b
|   05 fa 96 a7  a4 35 07 b4  c1 e1 c0 86  1a 58 71 d9
|   ba 73 a1 63  11 37 88 c0  de bb 39 79  e7 ff 0c 52
|   b4 ce 60 50  eb 05 36 9e  a4 30 0d 2b  ff 3b 1b 29
|   9f 3b 80 2c  cb 13 31 8c  2a b9 e3 b5  62 7c b4 b3
|   5e b9 39 98  20 76 b5 7c  05 0d 7b 35  c3 c5 c7 cc
|   8c 0f ea b7  b6 4a 7d 7b  6b 8f 6b 4d  ab f4 ac 40
|   6d d2 01 26  b9 0a 98 ac  76 6e fa 37  a7 89 0c 43
|   94 ff 9a 77  61 5b 58 f5  2d 65 1b bf  a5 8d 2a 54
|   9a f8 b0 1a  a4 bc a3 d7  62 42 66 63  b1 55 d4 eb
|   da 9f 60 a6  a1 35 73 e6  a8 88 13 5c  dc 67 3d d4
|   83 02 99 03  f3 a9 0e ca  23 e1 ec 1e  27 03 31 b2
|   d0 50 f4 f7  58 f4 99 27  2b 80 00 14  b5 ce 84 19
|   09 5c 6e 2b  6b 62 d3 05  53 05 b3 c4  00 00 00 10
|   4f 45 ab ab  ab ab ab ab  ab ab ab ab
../parentI1i1 transition from state STATE_IKEv2_START to state STATE_PARENT_I1
../parentI1i1 STATE_PARENT_I1: sent v2I1, expected v2R1
| *received 56 bytes from 192.1.2.23:500 on eth0 (port=500)
|   00 01 02 03  04 05 06 07  00 00 00 00  00 00 00 00
|   29 20 22 20  00 00 00 00  00 00 00 38  00 80 00 1c
|   01 00 40 06  1e f3 91 b5  a5 e2 49 40  b9 31 35 70
|   9f a1 19 3d  44 2d 0a bc
| **parse ISAKMP Message:
|    initiator cookie:
|   00 01 02 03  04 05 06 07
|    responder cookie:
|   00 00 00 00  00 00 00 00
|    next payload type: ISAKMP_NEXT_v2N
|    ISAKMP version: IKEv2 version 2.0 (rfc4306)
|    exchange type: ISAKMP_v2_SA_INIT
|    flags: ISAKMP_FLAG_RESPONSE
|    message ID:  00 00 00 00
|    length: 56
|  processing version=2.0 packet with exchange type=ISAKMP_v2_SA_INIT (34)
| ICOOKIE:  00 01 02 03  04 05 06 07
| RCOOKIE:  00 00 00 00  00 00 00 00
| state hash entry 4
| v2 peer and cookies match on #1
| v2 state object #1 found, in STATE_PARENT_I1
| ***parse IKEv2 Notify Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    critical bit: Payload-Critical
|    length: 28
|    Protocol ID: PROTO_ISAKMP
|    SPI size: 0
|    Notify Message Type: v2N_COOKIE
| processing payload: ISAKMP_NEXT_v2N (len=28) 
| inR1OutI2 received a DOS COOKIE from the responder
| resend the I1 with a cookie payload
| dcookie received (instead of a R1):
|   1e f3 91 b5  a5 e2 49 40  b9 31 35 70  9f a1 19 3d
|   44 2d 0a bc
| next STATE_PARENT_I1 resend I1 with the dcookie
| **emit ISAKMP Message:
|    initiator cookie:
|   00 01 02 03  04 05 06 07
|    responder cookie:
|   00 00 00 00  00 00 00 00
|    next payload type: ISAKMP_NEXT_v2N
|    ISAKMP version: IKEv2 version 2.0 (rfc4306)
|    exchange type: ISAKMP_v2_SA_INIT
|    flags: ISAKMP_FLAG_INIT
|    message ID:  00 00 00 00
| Adding a v2N Payload
| ***emit IKEv2 Notify Payload:
|    next payload type: ISAKMP_NEXT_v2SA
|    critical bit: Payload-Critical
|    Protocol ID: PROTO_ISAKMP
|    SPI size: 0
|    Notify Message Type: v2N_COOKIE
| emitting 20 raw bytes of Notify data into IKEv2 Notify Payload
| Notify data  1e f3 91 b5  a5 e2 49 40  b9 31 35 70  9f a1 19 3d
|   44 2d 0a bc
| emitting length of IKEv2 Notify Payload: 28
| ***emit IKEv2 Security Association Payload:
|    next payload type: ISAKMP_NEXT_v2KE
|    critical bit: Payload-Critical
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 1
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 12
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 5
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 2
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 12
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 1
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 5
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 3
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 3
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 5
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 4
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 3
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 1
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 5
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 5
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 3
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 6
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 3
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 1
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 7
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 12
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 14
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 8
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 12
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 1
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 14
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_P
|    prop #: 9
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 3
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 14
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| ****emit IKEv2 Proposal Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    prop #: 10
|    proto ID: 1
|    spi size: 0
|    # transforms: 4
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 1
|    transform ID: 3
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 3
|    transform ID: 2
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_T
|    transform type: 2
|    transform ID: 1
| emitting length of IKEv2 Transform Substructure Payload: 8
| *****emit IKEv2 Transform Substructure Payload:
|    next payload type: ISAKMP_NEXT_NONE
|    transform type: 4
|    transform ID: 14
| emitting length of IKEv2 Transform Substructure Payload: 8
| emitting length of IKEv2 Proposal Substructure Payload: 40
| emitting length of IKEv2 Security Association Payload: 404
| ***emit IKEv2 Key Exchange Payload:
|    next payload type: ISAKMP_NEXT_v2Ni
|    transform type: 5
| emitting 192 raw bytes of ikev2 g^x into IKEv2 Key Exchange Payload
| ikev2 g^x  ff bc 6a 92  a6 b9 55 9b  05 fa 96 a7  a4 35 07 b4
|   c1 e1 c0 86  1a 58 71 d9  ba 73 a1 63  11 37 88 c0
|   de bb 39 79  e7 ff 0c 52  b4 ce 60 50  eb 05 36 9e
|   a4 30 0d 2b  ff 3b 1b 29  9f 3b 80 2c  cb 13 31 8c
|   2a b9 e3 b5  62 7c b4 b3  5e b9 39 98  20 76 b5 7c
|   05 0d 7b 35  c3 c5 c7 cc  8c 0f ea b7  b6 4a 7d 7b
|   6b 8f 6b 4d  ab f4 ac 40  6d d2 01 26  b9 0a 98 ac
|   76 6e fa 37  a7 89 0c 43  94 ff 9a 77  61 5b 58 f5
|   2d 65 1b bf  a5 8d 2a 54  9a f8 b0 1a  a4 bc a3 d7
|   62 42 66 63  b1 55 d4 eb  da 9f 60 a6  a1 35 73 e6
|   a8 88 13 5c  dc 67 3d d4  83 02 99 03  f3 a9 0e ca
|   23 e1 ec 1e  27 03 31 b2  d0 50 f4 f7  58 f4 99 27
| emitting length of IKEv2 Key Exchange Payload: 200
| ***emit IKEv2 Nonce Payload:
|    next payload type: ISAKMP_NEXT_v2V
|    critical bit: Payload-Critical
| emitting 16 raw bytes of IKEv2 nonce into IKEv2 Nonce Payload
| IKEv2 nonce  b5 ce 84 19  09 5c 6e 2b  6b 62 d3 05  53 05 b3 c4
| emitting length of IKEv2 Nonce Payload: 20
| ***emit ISAKMP Vendor ID Payload:
|    next payload type: ISAKMP_NEXT_NONE
| emitting 12 raw bytes of Vendor ID into ISAKMP Vendor ID Payload
| Vendor ID  4f 45 ab ab  ab ab ab ab  ab ab ab ab
| emitting length of ISAKMP Vendor ID Payload: 16
| emitting length of ISAKMP Message: 696
sending 696 bytes for ikev2_parent_outI1_common through eth0:500 to 192.1.2.23:500 (using #1)
|   00 01 02 03  04 05 06 07  00 00 00 00  00 00 00 00
|   29 20 22 08  00 00 00 00  00 00 02 b8  21 80 00 1c
|   01 00 40 06  1e f3 91 b5  a5 e2 49 40  b9 31 35 70
|   9f a1 19 3d  44 2d 0a bc  22 80 01 94  02 00 00 28
|   01 01 00 04  03 00 00 08  01 00 00 0c  03 00 00 08
|   03 00 00 02  03 00 00 08  02 00 00 02  00 00 00 08
|   04 00 00 05  02 00 00 28  02 01 00 04  03 00 00 08
|   01 00 00 0c  03 00 00 08  03 00 00 02  03 00 00 08
|   02 00 00 01  00 00 00 08  04 00 00 05  02 00 00 28
|   03 01 00 04  03 00 00 08  01 00 00 03  03 00 00 08
|   03 00 00 02  03 00 00 08  02 00 00 02  00 00 00 08
|   04 00 00 05  02 00 00 28  04 01 00 04  03 00 00 08
|   01 00 00 03  03 00 00 08  03 00 00 02  03 00 00 08
|   02 00 00 01  00 00 00 08  04 00 00 05  02 00 00 28
|   05 01 00 04  03 00 00 08  01 00 00 03  03 00 00 08
|   03 00 00 02  03 00 00 08  02 00 00 02  00 00 00 08
|   04 00 00 02  02 00 00 28  06 01 00 04  03 00 00 08
|   01 00 00 03  03 00 00 08  03 00 00 02  03 00 00 08
|   02 00 00 01  00 00 00 08  04 00 00 02  02 00 00 28
|   07 01 00 04  03 00 00 08  01 00 00 0c  03 00 00 08
|   03 00 00 02  03 00 00 08  02 00 00 02  00 00 00 08
|   04 00 00 0e  02 00 00 28  08 01 00 04  03 00 00 08
|   01 00 00 0c  03 00 00 08  03 00 00 02  03 00 00 08
|   02 00 00 01  00 00 00 08  04 00 00 0e  02 00 00 28
|   09 01 00 04  03 00 00 08  01 00 00 03  03 00 00 08
|   03 00 00 02  03 00 00 08  02 00 00 02  00 00 00 08
|   04 00 00 0e  00 00 00 28  0a 01 00 04  03 00 00 08
|   01 00 00 03  03 00 00 08  03 00 00 02  03 00 00 08
|   02 00 00 01  00 00 00 08  04 00 00 0e  28 00 00 c8
|   00 05 00 00  ff bc 6a 92  a6 b9 55 9b  05 fa 96 a7
|   a4 35 07 b4  c1 e1 c0 86  1a 58 71 d9  ba 73 a1 63
|   11 37 88 c0  de bb 39 79  e7 ff 0c 52  b4 ce 60 50
|   eb 05 36 9e  a4 30 0d 2b  ff 3b 1b 29  9f 3b 80 2c
|   cb 13 31 8c  2a b9 e3 b5  62 7c b4 b3  5e b9 39 98
|   20 76 b5 7c  05 0d 7b 35  c3 c5 c7 cc  8c 0f ea b7
|   b6 4a 7d 7b  6b 8f 6b 4d  ab f4 ac 40  6d d2 01 26
|   b9 0a 98 ac  76 6e fa 37  a7 89 0c 43  94 ff 9a 77
|   61 5b 58 f5  2d 65 1b bf  a5 8d 2a 54  9a f8 b0 1a
|   a4 bc a3 d7  62 42 66 63  b1 55 d4 eb  da 9f 60 a6
|   a1 35 73 e6  a8 88 13 5c  dc 67 3d d4  83 02 99 03
|   f3 a9 0e ca  23 e1 ec 1e  27 03 31 b2  d0 50 f4 f7
|   58 f4 99 27  2b 80 00 14  b5 ce 84 19  09 5c 6e 2b
|   6b 62 d3 05  53 05 b3 c4  00 00 00 10  4f 45 70 6c
|   75 74 6f 75  6e 69 74 30
../parentI1i1 transition from state STATE_PARENT_I1 to state STATE_PARENT_I1
../parentI1i1 STATE_PARENT_I1: sent v2I1, expected v2R1
| ICOOKIE:  00 01 02 03  04 05 06 07
| RCOOKIE:  00 00 00 00  00 00 00 00
| state hash entry 4
../parentI1i1 leak: saved received dcookie
../parentI1i1 leak: saved first packet
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_prop
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: long term secret
../parentI1i1 leak: msg_digest
../parentI1i1 leak: ikev2_outI1 KE
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_prop
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: db_v2_trans
../parentI1i1 leak: db_v2_prop_conj
../parentI1i1 leak: host_pair
../parentI1i1 leak: host ip
../parentI1i1 leak: keep id name
../parentI1i1 leak: host ip
../parentI1i1 leak: keep id name
../parentI1i1 leak: connection name
../parentI1i1 leak: struct connection
../parentI1i1 leak: policies path
../parentI1i1 leak: ocspcerts path
../parentI1i1 leak: aacerts path
../parentI1i1 leak: certs path
../parentI1i1 leak: private path
../parentI1i1 leak: crls path
../parentI1i1 leak: cacert path
../parentI1i1 leak: acert path
../parentI1i1 leak: 7 * default conf
../parentI1i1 leak: 2 * hasher name
TCPDUMP output
reading from file parentI1i1.pcap, link-type NULL (BSD loopback)
IP (tos 0x0, ttl 64, id 0, offset 0, flags [none], proto UDP (17), length 696, bad cksum 0 (->f3ee)!)
    192.1.2.45.500 > 192.1.2.23.500: [no cksum] isakmp 2.0 msgid 00000000 cookie 0001020304050607->0000000000000000: parent_sa ikev2_init[I]:
    (sa[C]: len=400
        (p: #1 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=aes )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp1536 ))
        (p: #2 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=aes )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp1536 ))
        (p: #3 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp1536 ))
        (p: #4 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp1536 ))
        (p: #5 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp1024 ))
        (p: #6 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp1024 ))
        (p: #7 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=aes )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp2048 ))
        (p: #8 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=aes )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp2048 ))
        (p: #9 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp2048 ))
        (p: #10 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp2048 )))
    (v2ke: len=192 group=modp1536)
    (nonce[C]: len=16 nonce=(b5ce8419095c6e2b6b62d3055305b3c4) )
    (v2vid: len=12 vid=OEababababab)
IP (tos 0x0, ttl 64, id 0, offset 0, flags [none], proto UDP (17), length 724, bad cksum 0 (->f3d2)!)
    192.1.2.45.500 > 192.1.2.23.500: [no cksum] isakmp 2.0 msgid 00000000 cookie 0001020304050607->0000000000000000: parent_sa ikev2_init[I]:
    (n[C]: prot_id=isakmp type=16390(cookie) data=(1ef391b5a5e24940b931...5305b3c4000000104f45706c75746f756e697430))
    (sa[C]: len=400
        (p: #1 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=aes )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp1536 ))
        (p: #2 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=aes )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp1536 ))
        (p: #3 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp1536 ))
        (p: #4 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp1536 ))
        (p: #5 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp1024 ))
        (p: #6 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp1024 ))
        (p: #7 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=aes )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp2048 ))
        (p: #8 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=aes )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp2048 ))
        (p: #9 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-sha )
            (t: #4 type=dh id=modp2048 ))
        (p: #10 protoid=isakmp transform=4 len=40
            (t: #1 type=encr id=3des )
            (t: #2 type=integ id=hmac-sha )
            (t: #3 type=prf id=hmac-md5 )
            (t: #4 type=dh id=modp2048 )))
    (v2ke: len=192 group=modp1536)
    (nonce[C]: len=16 nonce=(b5ce8419095c6e2b6b62d3055305b3c4) )
    (v2vid: len=12 vid=OEababababab)
