Sep 21 07:16:33.685963: FIPS Product: YES Sep 21 07:16:33.685999: FIPS Kernel: NO Sep 21 07:16:33.686003: FIPS Mode: NO Sep 21 07:16:33.686005: NSS DB directory: sql:/etc/ipsec.d Sep 21 07:16:33.686187: Initializing NSS Sep 21 07:16:33.686192: Opening NSS database "sql:/etc/ipsec.d" read-only Sep 21 07:16:33.723853: NSS initialized Sep 21 07:16:33.723865: NSS crypto library initialized Sep 21 07:16:33.723867: FIPS HMAC integrity support [enabled] Sep 21 07:16:33.723868: FIPS mode disabled for pluto daemon Sep 21 07:16:33.786168: FIPS HMAC integrity verification self-test FAILED Sep 21 07:16:33.786273: libcap-ng support [enabled] Sep 21 07:16:33.786286: Linux audit support [enabled] Sep 21 07:16:33.786318: Linux audit activated Sep 21 07:16:33.786326: Starting Pluto (Libreswan Version v3.28-827-gc9aa82b8a6-master-s2 XFRM(netkey) esp-hw-offload FORK PTHREAD_SETSCHEDPRIO NSS (IPsec profile) DNSSEC SYSTEMD_WATCHDOG FIPS_CHECK LABELED_IPSEC SECCOMP LIBCAP_NG LINUX_AUDIT XAUTH_PAM NETWORKMANAGER CURL(non-NSS)) pid:14633 Sep 21 07:16:33.786329: core dump dir: /tmp Sep 21 07:16:33.786332: secrets file: /etc/ipsec.secrets Sep 21 07:16:33.786334: leak-detective disabled Sep 21 07:16:33.786336: NSS crypto [enabled] Sep 21 07:16:33.786338: XAUTH PAM support [enabled] Sep 21 07:16:33.786413: | libevent is using pluto's memory allocator Sep 21 07:16:33.786420: Initializing libevent in pthreads mode: headers: 2.1.8-stable (2010800); library: 2.1.8-stable (2010800) Sep 21 07:16:33.786437: | libevent_malloc: new ptr-libevent@0x56402f5041e0 size 40 Sep 21 07:16:33.786441: | libevent_malloc: new ptr-libevent@0x56402f505490 size 40 Sep 21 07:16:33.786445: | libevent_malloc: new ptr-libevent@0x56402f5054c0 size 40 Sep 21 07:16:33.786447: | creating event base Sep 21 07:16:33.786450: | libevent_malloc: new ptr-libevent@0x56402f505450 size 56 Sep 21 07:16:33.786453: | libevent_malloc: new ptr-libevent@0x56402f5054f0 size 664 Sep 21 07:16:33.786465: | libevent_malloc: new ptr-libevent@0x56402f505790 size 24 Sep 21 07:16:33.786469: | libevent_malloc: new ptr-libevent@0x56402f4f6e60 size 384 Sep 21 07:16:33.786480: | libevent_malloc: new ptr-libevent@0x56402f5057b0 size 16 Sep 21 07:16:33.786483: | libevent_malloc: new ptr-libevent@0x56402f5057d0 size 40 Sep 21 07:16:33.786486: | libevent_malloc: new ptr-libevent@0x56402f505800 size 48 Sep 21 07:16:33.786494: | libevent_realloc: new ptr-libevent@0x56402f487370 size 256 Sep 21 07:16:33.786497: | libevent_malloc: new ptr-libevent@0x56402f505840 size 16 Sep 21 07:16:33.786502: | libevent_free: release ptr-libevent@0x56402f505450 Sep 21 07:16:33.786506: | libevent initialized Sep 21 07:16:33.786510: | libevent_realloc: new ptr-libevent@0x56402f505860 size 64 Sep 21 07:16:33.786514: | global periodic timer EVENT_RESET_LOG_RATE_LIMIT enabled with interval of 3600 seconds Sep 21 07:16:33.786533: | init_nat_traversal() initialized with keep_alive=0s Sep 21 07:16:33.786536: NAT-Traversal support [enabled] Sep 21 07:16:33.786539: | global one-shot timer EVENT_NAT_T_KEEPALIVE initialized Sep 21 07:16:33.786546: | global one-shot timer EVENT_FREE_ROOT_CERTS initialized Sep 21 07:16:33.786549: | global periodic timer EVENT_REINIT_SECRET enabled with interval of 3600 seconds Sep 21 07:16:33.786587: | global one-shot timer EVENT_REVIVE_CONNS initialized Sep 21 07:16:33.786592: | global periodic timer EVENT_PENDING_DDNS enabled with interval of 60 seconds Sep 21 07:16:33.786595: | global periodic timer EVENT_PENDING_PHASE2 enabled with interval of 120 seconds Sep 21 07:16:33.786643: Encryption algorithms: Sep 21 07:16:33.786655: AES_CCM_16 IKEv1: ESP IKEv2: ESP FIPS {256,192,*128} aes_ccm, aes_ccm_c Sep 21 07:16:33.786659: AES_CCM_12 IKEv1: ESP IKEv2: ESP FIPS {256,192,*128} aes_ccm_b Sep 21 07:16:33.786663: AES_CCM_8 IKEv1: ESP IKEv2: ESP FIPS {256,192,*128} aes_ccm_a Sep 21 07:16:33.786667: 3DES_CBC IKEv1: IKE ESP IKEv2: IKE ESP FIPS [*192] 3des Sep 21 07:16:33.786670: CAMELLIA_CTR IKEv1: ESP IKEv2: ESP {256,192,*128} Sep 21 07:16:33.786678: CAMELLIA_CBC IKEv1: IKE ESP IKEv2: IKE ESP {256,192,*128} camellia Sep 21 07:16:33.786683: AES_GCM_16 IKEv1: ESP IKEv2: IKE ESP FIPS {256,192,*128} aes_gcm, aes_gcm_c Sep 21 07:16:33.786686: AES_GCM_12 IKEv1: ESP IKEv2: IKE ESP FIPS {256,192,*128} aes_gcm_b Sep 21 07:16:33.786690: AES_GCM_8 IKEv1: ESP IKEv2: IKE ESP FIPS {256,192,*128} aes_gcm_a Sep 21 07:16:33.786693: AES_CTR IKEv1: IKE ESP IKEv2: IKE ESP FIPS {256,192,*128} aesctr Sep 21 07:16:33.786697: AES_CBC IKEv1: IKE ESP IKEv2: IKE ESP FIPS {256,192,*128} aes Sep 21 07:16:33.786701: SERPENT_CBC IKEv1: IKE ESP IKEv2: IKE ESP {256,192,*128} serpent Sep 21 07:16:33.786705: TWOFISH_CBC IKEv1: IKE ESP IKEv2: IKE ESP {256,192,*128} twofish Sep 21 07:16:33.786708: TWOFISH_SSH IKEv1: IKE IKEv2: IKE ESP {256,192,*128} twofish_cbc_ssh Sep 21 07:16:33.786712: NULL_AUTH_AES_GMAC IKEv1: ESP IKEv2: ESP FIPS {256,192,*128} aes_gmac Sep 21 07:16:33.786715: NULL IKEv1: ESP IKEv2: ESP [] Sep 21 07:16:33.786718: CHACHA20_POLY1305 IKEv1: IKEv2: IKE ESP [*256] chacha20poly1305 Sep 21 07:16:33.786726: Hash algorithms: Sep 21 07:16:33.786729: MD5 IKEv1: IKE IKEv2: Sep 21 07:16:33.786732: SHA1 IKEv1: IKE IKEv2: FIPS sha Sep 21 07:16:33.786736: SHA2_256 IKEv1: IKE IKEv2: FIPS sha2, sha256 Sep 21 07:16:33.786739: SHA2_384 IKEv1: IKE IKEv2: FIPS sha384 Sep 21 07:16:33.786742: SHA2_512 IKEv1: IKE IKEv2: FIPS sha512 Sep 21 07:16:33.786755: PRF algorithms: Sep 21 07:16:33.786759: HMAC_MD5 IKEv1: IKE IKEv2: IKE md5 Sep 21 07:16:33.786762: HMAC_SHA1 IKEv1: IKE IKEv2: IKE FIPS sha, sha1 Sep 21 07:16:33.786766: HMAC_SHA2_256 IKEv1: IKE IKEv2: IKE FIPS sha2, sha256, sha2_256 Sep 21 07:16:33.786769: HMAC_SHA2_384 IKEv1: IKE IKEv2: IKE FIPS sha384, sha2_384 Sep 21 07:16:33.786772: HMAC_SHA2_512 IKEv1: IKE IKEv2: IKE FIPS sha512, sha2_512 Sep 21 07:16:33.786775: AES_XCBC IKEv1: IKEv2: IKE aes128_xcbc Sep 21 07:16:33.786804: Integrity algorithms: Sep 21 07:16:33.786811: HMAC_MD5_96 IKEv1: IKE ESP AH IKEv2: IKE ESP AH md5, hmac_md5 Sep 21 07:16:33.786816: HMAC_SHA1_96 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS sha, sha1, sha1_96, hmac_sha1 Sep 21 07:16:33.786820: HMAC_SHA2_512_256 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS sha512, sha2_512, sha2_512_256, hmac_sha2_512 Sep 21 07:16:33.786824: HMAC_SHA2_384_192 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS sha384, sha2_384, sha2_384_192, hmac_sha2_384 Sep 21 07:16:33.786828: HMAC_SHA2_256_128 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS sha2, sha256, sha2_256, sha2_256_128, hmac_sha2_256 Sep 21 07:16:33.786830: HMAC_SHA2_256_TRUNCBUG IKEv1: ESP AH IKEv2: AH Sep 21 07:16:33.786834: AES_XCBC_96 IKEv1: ESP AH IKEv2: IKE ESP AH aes_xcbc, aes128_xcbc, aes128_xcbc_96 Sep 21 07:16:33.786837: AES_CMAC_96 IKEv1: ESP AH IKEv2: ESP AH FIPS aes_cmac Sep 21 07:16:33.786840: NONE IKEv1: ESP IKEv2: IKE ESP FIPS null Sep 21 07:16:33.786853: DH algorithms: Sep 21 07:16:33.786857: NONE IKEv1: IKEv2: IKE ESP AH FIPS null, dh0 Sep 21 07:16:33.786860: MODP1536 IKEv1: IKE ESP AH IKEv2: IKE ESP AH dh5 Sep 21 07:16:33.786863: MODP2048 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS dh14 Sep 21 07:16:33.786869: MODP3072 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS dh15 Sep 21 07:16:33.786872: MODP4096 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS dh16 Sep 21 07:16:33.786875: MODP6144 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS dh17 Sep 21 07:16:33.786878: MODP8192 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS dh18 Sep 21 07:16:33.786881: DH19 IKEv1: IKE IKEv2: IKE ESP AH FIPS ecp_256, ecp256 Sep 21 07:16:33.786884: DH20 IKEv1: IKE IKEv2: IKE ESP AH FIPS ecp_384, ecp384 Sep 21 07:16:33.786887: DH21 IKEv1: IKE IKEv2: IKE ESP AH FIPS ecp_521, ecp521 Sep 21 07:16:33.786890: DH31 IKEv1: IKE IKEv2: IKE ESP AH curve25519 Sep 21 07:16:33.786893: testing CAMELLIA_CBC: Sep 21 07:16:33.786895: Camellia: 16 bytes with 128-bit key Sep 21 07:16:33.787025: Camellia: 16 bytes with 128-bit key Sep 21 07:16:33.787058: Camellia: 16 bytes with 256-bit key Sep 21 07:16:33.787091: Camellia: 16 bytes with 256-bit key Sep 21 07:16:33.787122: testing AES_GCM_16: Sep 21 07:16:33.787126: empty string Sep 21 07:16:33.787153: one block Sep 21 07:16:33.787178: two blocks Sep 21 07:16:33.787206: two blocks with associated data Sep 21 07:16:33.787235: testing AES_CTR: Sep 21 07:16:33.787239: Encrypting 16 octets using AES-CTR with 128-bit key Sep 21 07:16:33.787267: Encrypting 32 octets using AES-CTR with 128-bit key Sep 21 07:16:33.787298: Encrypting 36 octets using AES-CTR with 128-bit key Sep 21 07:16:33.787329: Encrypting 16 octets using AES-CTR with 192-bit key Sep 21 07:16:33.787358: Encrypting 32 octets using AES-CTR with 192-bit key Sep 21 07:16:33.787388: Encrypting 36 octets using AES-CTR with 192-bit key Sep 21 07:16:33.787418: Encrypting 16 octets using AES-CTR with 256-bit key Sep 21 07:16:33.787449: Encrypting 32 octets using AES-CTR with 256-bit key Sep 21 07:16:33.787479: Encrypting 36 octets using AES-CTR with 256-bit key Sep 21 07:16:33.787510: testing AES_CBC: Sep 21 07:16:33.787514: Encrypting 16 bytes (1 block) using AES-CBC with 128-bit key Sep 21 07:16:33.787543: Encrypting 32 bytes (2 blocks) using AES-CBC with 128-bit key Sep 21 07:16:33.787576: Encrypting 48 bytes (3 blocks) using AES-CBC with 128-bit key Sep 21 07:16:33.787612: Encrypting 64 bytes (4 blocks) using AES-CBC with 128-bit key Sep 21 07:16:33.787650: testing AES_XCBC: Sep 21 07:16:33.787654: RFC 3566 Test Case #1: AES-XCBC-MAC-96 with 0-byte input Sep 21 07:16:33.787788: RFC 3566 Test Case #2: AES-XCBC-MAC-96 with 3-byte input Sep 21 07:16:33.787935: RFC 3566 Test Case #3: AES-XCBC-MAC-96 with 16-byte input Sep 21 07:16:33.788072: RFC 3566 Test Case #4: AES-XCBC-MAC-96 with 20-byte input Sep 21 07:16:33.788211: RFC 3566 Test Case #5: AES-XCBC-MAC-96 with 32-byte input Sep 21 07:16:33.788352: RFC 3566 Test Case #6: AES-XCBC-MAC-96 with 34-byte input Sep 21 07:16:33.788494: RFC 3566 Test Case #7: AES-XCBC-MAC-96 with 1000-byte input Sep 21 07:16:33.788823: RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 16) Sep 21 07:16:33.788966: RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 10) Sep 21 07:16:33.789117: RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 18) Sep 21 07:16:33.789377: testing HMAC_MD5: Sep 21 07:16:33.789382: RFC 2104: MD5_HMAC test 1 Sep 21 07:16:33.789573: RFC 2104: MD5_HMAC test 2 Sep 21 07:16:33.789742: RFC 2104: MD5_HMAC test 3 Sep 21 07:16:33.789948: 8 CPU cores online Sep 21 07:16:33.789955: starting up 7 crypto helpers Sep 21 07:16:33.789987: started thread for crypto helper 0 Sep 21 07:16:33.790010: started thread for crypto helper 1 Sep 21 07:16:33.790015: | starting up helper thread 1 Sep 21 07:16:33.790029: | status value returned by setting the priority of this thread (crypto helper 1) 22 Sep 21 07:16:33.790032: | crypto helper 1 waiting (nothing to do) Sep 21 07:16:33.790036: started thread for crypto helper 2 Sep 21 07:16:33.790041: | starting up helper thread 2 Sep 21 07:16:33.790052: | status value returned by setting the priority of this thread (crypto helper 2) 22 Sep 21 07:16:33.790056: | crypto helper 2 waiting (nothing to do) Sep 21 07:16:33.790057: started thread for crypto helper 3 Sep 21 07:16:33.790069: | starting up helper thread 0 Sep 21 07:16:33.790075: started thread for crypto helper 4 Sep 21 07:16:33.790083: | starting up helper thread 3 Sep 21 07:16:33.790100: | status value returned by setting the priority of this thread (crypto helper 3) 22 Sep 21 07:16:33.790103: | crypto helper 3 waiting (nothing to do) Sep 21 07:16:33.790075: | status value returned by setting the priority of this thread (crypto helper 0) 22 Sep 21 07:16:33.790110: | crypto helper 0 waiting (nothing to do) Sep 21 07:16:33.790148: started thread for crypto helper 5 Sep 21 07:16:33.790174: started thread for crypto helper 6 Sep 21 07:16:33.790185: | starting up helper thread 5 Sep 21 07:16:33.790193: | starting up helper thread 6 Sep 21 07:16:33.790197: | status value returned by setting the priority of this thread (crypto helper 5) 22 Sep 21 07:16:33.790188: | checking IKEv1 state table Sep 21 07:16:33.790175: | starting up helper thread 4 Sep 21 07:16:33.790212: | MAIN_R0: category: half-open IKE SA flags: 0: Sep 21 07:16:33.790215: | -> MAIN_R1 EVENT_SO_DISCARD Sep 21 07:16:33.790217: | status value returned by setting the priority of this thread (crypto helper 4) 22 Sep 21 07:16:33.790220: | MAIN_I1: category: half-open IKE SA flags: 0: Sep 21 07:16:33.790201: | status value returned by setting the priority of this thread (crypto helper 6) 22 Sep 21 07:16:33.790201: | crypto helper 5 waiting (nothing to do) Sep 21 07:16:33.790223: | -> MAIN_I2 EVENT_RETRANSMIT Sep 21 07:16:33.790237: | MAIN_R1: category: open IKE SA flags: 200: Sep 21 07:16:33.790238: | crypto helper 4 waiting (nothing to do) Sep 21 07:16:33.790239: | -> MAIN_R2 EVENT_RETRANSMIT Sep 21 07:16:33.790247: | -> UNDEFINED EVENT_RETRANSMIT Sep 21 07:16:33.790249: | crypto helper 6 waiting (nothing to do) Sep 21 07:16:33.790250: | -> UNDEFINED EVENT_RETRANSMIT Sep 21 07:16:33.790258: | MAIN_I2: category: open IKE SA flags: 0: Sep 21 07:16:33.790261: | -> MAIN_I3 EVENT_RETRANSMIT Sep 21 07:16:33.790263: | -> UNDEFINED EVENT_RETRANSMIT Sep 21 07:16:33.790265: | -> UNDEFINED EVENT_RETRANSMIT Sep 21 07:16:33.790268: | MAIN_R2: category: open IKE SA flags: 0: Sep 21 07:16:33.790270: | -> MAIN_R3 EVENT_SA_REPLACE Sep 21 07:16:33.790273: | -> MAIN_R3 EVENT_SA_REPLACE Sep 21 07:16:33.790275: | -> UNDEFINED EVENT_SA_REPLACE Sep 21 07:16:33.790278: | MAIN_I3: category: open IKE SA flags: 0: Sep 21 07:16:33.790280: | -> MAIN_I4 EVENT_SA_REPLACE Sep 21 07:16:33.790282: | -> MAIN_I4 EVENT_SA_REPLACE Sep 21 07:16:33.790284: | -> UNDEFINED EVENT_SA_REPLACE Sep 21 07:16:33.790287: | MAIN_R3: category: established IKE SA flags: 200: Sep 21 07:16:33.790289: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790292: | MAIN_I4: category: established IKE SA flags: 0: Sep 21 07:16:33.790294: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790297: | AGGR_R0: category: half-open IKE SA flags: 0: Sep 21 07:16:33.790299: | -> AGGR_R1 EVENT_SO_DISCARD Sep 21 07:16:33.790302: | AGGR_I1: category: half-open IKE SA flags: 0: Sep 21 07:16:33.790304: | -> AGGR_I2 EVENT_SA_REPLACE Sep 21 07:16:33.790307: | -> AGGR_I2 EVENT_SA_REPLACE Sep 21 07:16:33.790310: | AGGR_R1: category: open IKE SA flags: 200: Sep 21 07:16:33.790312: | -> AGGR_R2 EVENT_SA_REPLACE Sep 21 07:16:33.790314: | -> AGGR_R2 EVENT_SA_REPLACE Sep 21 07:16:33.790317: | AGGR_I2: category: established IKE SA flags: 200: Sep 21 07:16:33.790319: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790322: | AGGR_R2: category: established IKE SA flags: 0: Sep 21 07:16:33.790324: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790327: | QUICK_R0: category: established CHILD SA flags: 0: Sep 21 07:16:33.790332: | -> QUICK_R1 EVENT_RETRANSMIT Sep 21 07:16:33.790334: | QUICK_I1: category: established CHILD SA flags: 0: Sep 21 07:16:33.790337: | -> QUICK_I2 EVENT_SA_REPLACE Sep 21 07:16:33.790339: | QUICK_R1: category: established CHILD SA flags: 0: Sep 21 07:16:33.790342: | -> QUICK_R2 EVENT_SA_REPLACE Sep 21 07:16:33.790344: | QUICK_I2: category: established CHILD SA flags: 200: Sep 21 07:16:33.790347: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790349: | QUICK_R2: category: established CHILD SA flags: 0: Sep 21 07:16:33.790352: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790354: | INFO: category: informational flags: 0: Sep 21 07:16:33.790357: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790359: | INFO_PROTECTED: category: informational flags: 0: Sep 21 07:16:33.790362: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790364: | XAUTH_R0: category: established IKE SA flags: 0: Sep 21 07:16:33.790366: | -> XAUTH_R1 EVENT_NULL Sep 21 07:16:33.790369: | XAUTH_R1: category: established IKE SA flags: 0: Sep 21 07:16:33.790372: | -> MAIN_R3 EVENT_SA_REPLACE Sep 21 07:16:33.790374: | MODE_CFG_R0: category: informational flags: 0: Sep 21 07:16:33.790377: | -> MODE_CFG_R1 EVENT_SA_REPLACE Sep 21 07:16:33.790379: | MODE_CFG_R1: category: established IKE SA flags: 0: Sep 21 07:16:33.790382: | -> MODE_CFG_R2 EVENT_SA_REPLACE Sep 21 07:16:33.790385: | MODE_CFG_R2: category: established IKE SA flags: 0: Sep 21 07:16:33.790387: | -> UNDEFINED EVENT_NULL Sep 21 07:16:33.790390: | MODE_CFG_I1: category: established IKE SA flags: 0: Sep 21 07:16:33.790392: | -> MAIN_I4 EVENT_SA_REPLACE Sep 21 07:16:33.790394: | XAUTH_I0: category: established IKE SA flags: 0: Sep 21 07:16:33.790397: | -> XAUTH_I1 EVENT_RETRANSMIT Sep 21 07:16:33.790399: | XAUTH_I1: category: established IKE SA flags: 0: Sep 21 07:16:33.790402: | -> MAIN_I4 EVENT_RETRANSMIT Sep 21 07:16:33.790408: | checking IKEv2 state table Sep 21 07:16:33.790414: | PARENT_I0: category: ignore flags: 0: Sep 21 07:16:33.790417: | -> PARENT_I1 EVENT_RETRANSMIT send-request (initiate IKE_SA_INIT) Sep 21 07:16:33.790419: | PARENT_I1: category: half-open IKE SA flags: 0: Sep 21 07:16:33.790422: | -> PARENT_I1 EVENT_RETAIN send-request (Initiator: process SA_INIT reply notification) Sep 21 07:16:33.790425: | -> PARENT_I2 EVENT_RETRANSMIT send-request (Initiator: process IKE_SA_INIT reply, initiate IKE_AUTH) Sep 21 07:16:33.790428: | PARENT_I2: category: open IKE SA flags: 0: Sep 21 07:16:33.790431: | -> PARENT_I2 EVENT_NULL (Initiator: process INVALID_SYNTAX AUTH notification) Sep 21 07:16:33.790433: | -> PARENT_I2 EVENT_NULL (Initiator: process AUTHENTICATION_FAILED AUTH notification) Sep 21 07:16:33.790436: | -> PARENT_I2 EVENT_NULL (Initiator: process UNSUPPORTED_CRITICAL_PAYLOAD AUTH notification) Sep 21 07:16:33.790439: | -> V2_IPSEC_I EVENT_SA_REPLACE (Initiator: process IKE_AUTH response) Sep 21 07:16:33.790441: | -> PARENT_I2 EVENT_NULL (IKE SA: process IKE_AUTH response containing unknown notification) Sep 21 07:16:33.790444: | PARENT_I3: category: established IKE SA flags: 0: Sep 21 07:16:33.790447: | -> PARENT_I3 EVENT_RETAIN (I3: Informational Request) Sep 21 07:16:33.790449: | -> PARENT_I3 EVENT_RETAIN (I3: Informational Response) Sep 21 07:16:33.790452: | -> PARENT_I3 EVENT_RETAIN (I3: INFORMATIONAL Request) Sep 21 07:16:33.790454: | -> PARENT_I3 EVENT_RETAIN (I3: INFORMATIONAL Response) Sep 21 07:16:33.790457: | PARENT_R0: category: half-open IKE SA flags: 0: Sep 21 07:16:33.790459: | -> PARENT_R1 EVENT_SO_DISCARD send-request (Respond to IKE_SA_INIT) Sep 21 07:16:33.790462: | PARENT_R1: category: half-open IKE SA flags: 0: Sep 21 07:16:33.790465: | -> PARENT_R1 EVENT_SA_REPLACE send-request (Responder: process IKE_AUTH request (no SKEYSEED)) Sep 21 07:16:33.790467: | -> V2_IPSEC_R EVENT_SA_REPLACE send-request (Responder: process IKE_AUTH request) Sep 21 07:16:33.790470: | PARENT_R2: category: established IKE SA flags: 0: Sep 21 07:16:33.790475: | -> PARENT_R2 EVENT_RETAIN (R2: process Informational Request) Sep 21 07:16:33.790477: | -> PARENT_R2 EVENT_RETAIN (R2: process Informational Response) Sep 21 07:16:33.790480: | -> PARENT_R2 EVENT_RETAIN (R2: process INFORMATIONAL Request) Sep 21 07:16:33.790483: | -> PARENT_R2 EVENT_RETAIN (R2: process INFORMATIONAL Response) Sep 21 07:16:33.790485: | V2_CREATE_I0: category: established IKE SA flags: 0: Sep 21 07:16:33.790488: | -> V2_CREATE_I EVENT_RETRANSMIT send-request (Initiate CREATE_CHILD_SA IPsec SA) Sep 21 07:16:33.790491: | V2_CREATE_I: category: established IKE SA flags: 0: Sep 21 07:16:33.790493: | -> V2_IPSEC_I EVENT_SA_REPLACE (Process CREATE_CHILD_SA IPsec SA Response) Sep 21 07:16:33.790496: | V2_REKEY_IKE_I0: category: established IKE SA flags: 0: Sep 21 07:16:33.790499: | -> V2_REKEY_IKE_I EVENT_RETRANSMIT send-request (Initiate CREATE_CHILD_SA IKE Rekey) Sep 21 07:16:33.790502: | V2_REKEY_IKE_I: category: established IKE SA flags: 0: Sep 21 07:16:33.790505: | -> PARENT_I3 EVENT_SA_REPLACE (Process CREATE_CHILD_SA IKE Rekey Response) Sep 21 07:16:33.790508: | V2_REKEY_CHILD_I0: category: established IKE SA flags: 0: Sep 21 07:16:33.790510: | -> V2_REKEY_CHILD_I EVENT_RETRANSMIT send-request (Initiate CREATE_CHILD_SA IPsec Rekey SA) Sep 21 07:16:33.790513: | V2_REKEY_CHILD_I: category: established IKE SA flags: 0: Sep 21 07:16:33.790516: | V2_CREATE_R: category: established IKE SA flags: 0: Sep 21 07:16:33.790519: | -> V2_IPSEC_R EVENT_SA_REPLACE send-request (Respond to CREATE_CHILD_SA IPsec SA Request) Sep 21 07:16:33.790522: | V2_REKEY_IKE_R: category: established IKE SA flags: 0: Sep 21 07:16:33.790524: | -> PARENT_R2 EVENT_SA_REPLACE send-request (Respond to CREATE_CHILD_SA IKE Rekey) Sep 21 07:16:33.790527: | V2_REKEY_CHILD_R: category: established IKE SA flags: 0: Sep 21 07:16:33.790530: | V2_IPSEC_I: category: established CHILD SA flags: 0: Sep 21 07:16:33.790533: | V2_IPSEC_R: category: established CHILD SA flags: 0: Sep 21 07:16:33.790536: | IKESA_DEL: category: established IKE SA flags: 0: Sep 21 07:16:33.790538: | -> IKESA_DEL EVENT_RETAIN (IKE_SA_DEL: process INFORMATIONAL) Sep 21 07:16:33.790541: | CHILDSA_DEL: category: informational flags: 0: Sep 21 07:16:33.790584: Using Linux XFRM/NETKEY IPsec interface code on 5.2.11+ Sep 21 07:16:33.790649: | Hard-wiring algorithms Sep 21 07:16:33.790652: | adding AES_CCM_16 to kernel algorithm db Sep 21 07:16:33.790656: | adding AES_CCM_12 to kernel algorithm db Sep 21 07:16:33.790658: | adding AES_CCM_8 to kernel algorithm db Sep 21 07:16:33.790661: | adding 3DES_CBC to kernel algorithm db Sep 21 07:16:33.790664: | adding CAMELLIA_CBC to kernel algorithm db Sep 21 07:16:33.790666: | adding AES_GCM_16 to kernel algorithm db Sep 21 07:16:33.790668: | adding AES_GCM_12 to kernel algorithm db Sep 21 07:16:33.790670: | adding AES_GCM_8 to kernel algorithm db Sep 21 07:16:33.790673: | adding AES_CTR to kernel algorithm db Sep 21 07:16:33.790675: | adding AES_CBC to kernel algorithm db Sep 21 07:16:33.790677: | adding SERPENT_CBC to kernel algorithm db Sep 21 07:16:33.790680: | adding TWOFISH_CBC to kernel algorithm db Sep 21 07:16:33.790682: | adding NULL_AUTH_AES_GMAC to kernel algorithm db Sep 21 07:16:33.790685: | adding NULL to kernel algorithm db Sep 21 07:16:33.790687: | adding CHACHA20_POLY1305 to kernel algorithm db Sep 21 07:16:33.790689: | adding HMAC_MD5_96 to kernel algorithm db Sep 21 07:16:33.790692: | adding HMAC_SHA1_96 to kernel algorithm db Sep 21 07:16:33.790694: | adding HMAC_SHA2_512_256 to kernel algorithm db Sep 21 07:16:33.790696: | adding HMAC_SHA2_384_192 to kernel algorithm db Sep 21 07:16:33.790699: | adding HMAC_SHA2_256_128 to kernel algorithm db Sep 21 07:16:33.790701: | adding HMAC_SHA2_256_TRUNCBUG to kernel algorithm db Sep 21 07:16:33.790704: | adding AES_XCBC_96 to kernel algorithm db Sep 21 07:16:33.790706: | adding AES_CMAC_96 to kernel algorithm db Sep 21 07:16:33.790708: | adding NONE to kernel algorithm db Sep 21 07:16:33.790731: | net.ipv6.conf.all.disable_ipv6=1 ignore ipv6 holes Sep 21 07:16:33.790737: | global periodic timer EVENT_SHUNT_SCAN enabled with interval of 20 seconds Sep 21 07:16:33.790739: | setup kernel fd callback Sep 21 07:16:33.790742: | add_fd_read_event_handler: new KERNEL_XRM_FD-pe@0x56402f50af00 Sep 21 07:16:33.790746: | libevent_malloc: new ptr-libevent@0x56402f517020 size 128 Sep 21 07:16:33.790749: | libevent_malloc: new ptr-libevent@0x56402f50a1e0 size 16 Sep 21 07:16:33.790755: | add_fd_read_event_handler: new KERNEL_ROUTE_FD-pe@0x56402f50aec0 Sep 21 07:16:33.790758: | libevent_malloc: new ptr-libevent@0x56402f5170b0 size 128 Sep 21 07:16:33.790760: | libevent_malloc: new ptr-libevent@0x56402f50a200 size 16 Sep 21 07:16:33.790994: | global one-shot timer EVENT_CHECK_CRLS initialized Sep 21 07:16:33.791005: selinux support is enabled. Sep 21 07:16:33.791082: systemd watchdog not enabled - not sending watchdog keepalives Sep 21 07:16:33.791248: | unbound context created - setting debug level to 5 Sep 21 07:16:33.791272: | /etc/hosts lookups activated Sep 21 07:16:33.791285: | /etc/resolv.conf usage activated Sep 21 07:16:33.791348: | outgoing-port-avoid set 0-65535 Sep 21 07:16:33.791379: | outgoing-port-permit set 32768-60999 Sep 21 07:16:33.791381: | Loading dnssec root key from:/var/lib/unbound/root.key Sep 21 07:16:33.791384: | No additional dnssec trust anchors defined via dnssec-trusted= option Sep 21 07:16:33.791387: | Setting up events, loop start Sep 21 07:16:33.791390: | add_fd_read_event_handler: new PLUTO_CTL_FD-pe@0x56402f505450 Sep 21 07:16:33.791393: | libevent_malloc: new ptr-libevent@0x56402f5215a0 size 128 Sep 21 07:16:33.791397: | libevent_malloc: new ptr-libevent@0x56402f521630 size 16 Sep 21 07:16:33.791403: | libevent_realloc: new ptr-libevent@0x56402f4856c0 size 256 Sep 21 07:16:33.791405: | libevent_malloc: new ptr-libevent@0x56402f521650 size 8 Sep 21 07:16:33.791408: | libevent_realloc: new ptr-libevent@0x56402f516420 size 144 Sep 21 07:16:33.791411: | libevent_malloc: new ptr-libevent@0x56402f521670 size 152 Sep 21 07:16:33.791414: | libevent_malloc: new ptr-libevent@0x56402f521710 size 16 Sep 21 07:16:33.791418: | signal event handler PLUTO_SIGCHLD installed Sep 21 07:16:33.791421: | libevent_malloc: new ptr-libevent@0x56402f521730 size 8 Sep 21 07:16:33.791423: | libevent_malloc: new ptr-libevent@0x56402f521750 size 152 Sep 21 07:16:33.791426: | signal event handler PLUTO_SIGTERM installed Sep 21 07:16:33.791429: | libevent_malloc: new ptr-libevent@0x56402f5217f0 size 8 Sep 21 07:16:33.791431: | libevent_malloc: new ptr-libevent@0x56402f521810 size 152 Sep 21 07:16:33.791434: | signal event handler PLUTO_SIGHUP installed Sep 21 07:16:33.791437: | libevent_malloc: new ptr-libevent@0x56402f5218b0 size 8 Sep 21 07:16:33.791439: | libevent_realloc: release ptr-libevent@0x56402f516420 Sep 21 07:16:33.791442: | libevent_realloc: new ptr-libevent@0x56402f5218d0 size 256 Sep 21 07:16:33.791445: | libevent_malloc: new ptr-libevent@0x56402f516420 size 152 Sep 21 07:16:33.791447: | signal event handler PLUTO_SIGSYS installed Sep 21 07:16:33.791788: | created addconn helper (pid:14710) using fork+execve Sep 21 07:16:33.791804: | forked child 14710 Sep 21 07:16:33.791845: | accept(whackctlfd, (struct sockaddr *)&whackaddr, &whackaddrlen) -> fd@16 (in whack_handle() at rcv_whack.c:721) Sep 21 07:16:33.791860: | pluto_sd: executing action action: reloading(4), status 0 Sep 21 07:16:33.791867: listening for IKE messages Sep 21 07:16:33.791903: | Inspecting interface lo Sep 21 07:16:33.791909: | found lo with address 127.0.0.1 Sep 21 07:16:33.791912: | Inspecting interface eth0 Sep 21 07:16:33.791916: | found eth0 with address 192.0.3.254 Sep 21 07:16:33.791918: | Inspecting interface eth1 Sep 21 07:16:33.791922: | found eth1 with address 192.1.3.33 Sep 21 07:16:33.791994: Kernel supports NIC esp-hw-offload Sep 21 07:16:33.792012: adding interface eth1/eth1 (esp-hw-offload not supported by kernel) 192.1.3.33:500 Sep 21 07:16:33.792034: | NAT-Traversal: Trying sockopt style NAT-T Sep 21 07:16:33.792043: | NAT-Traversal: ESPINUDP(2) setup succeeded for sockopt style NAT-T family IPv4 Sep 21 07:16:33.792047: adding interface eth1/eth1 192.1.3.33:4500 Sep 21 07:16:33.792192: adding interface eth0/eth0 (esp-hw-offload not supported by kernel) 192.0.3.254:500 Sep 21 07:16:33.792214: | NAT-Traversal: Trying sockopt style NAT-T Sep 21 07:16:33.792218: | NAT-Traversal: ESPINUDP(2) setup succeeded for sockopt style NAT-T family IPv4 Sep 21 07:16:33.792221: adding interface eth0/eth0 192.0.3.254:4500 Sep 21 07:16:33.792347: adding interface lo/lo (esp-hw-offload not supported by kernel) 127.0.0.1:500 Sep 21 07:16:33.792367: | NAT-Traversal: Trying sockopt style NAT-T Sep 21 07:16:33.792371: | NAT-Traversal: ESPINUDP(2) setup succeeded for sockopt style NAT-T family IPv4 Sep 21 07:16:33.792375: adding interface lo/lo 127.0.0.1:4500 Sep 21 07:16:33.792429: | no interfaces to sort Sep 21 07:16:33.792433: | FOR_EACH_UNORIENTED_CONNECTION_... in check_orientations Sep 21 07:16:33.792442: | add_fd_read_event_handler: new ethX-pe@0x56402f521c40 Sep 21 07:16:33.792445: | libevent_malloc: new ptr-libevent@0x56402f521c80 size 128 Sep 21 07:16:33.792448: | libevent_malloc: new ptr-libevent@0x56402f521d10 size 16 Sep 21 07:16:33.792456: | setup callback for interface lo 127.0.0.1:4500 fd 22 Sep 21 07:16:33.792459: | add_fd_read_event_handler: new ethX-pe@0x56402f521d30 Sep 21 07:16:33.792461: | libevent_malloc: new ptr-libevent@0x56402f521d70 size 128 Sep 21 07:16:33.792464: | libevent_malloc: new ptr-libevent@0x56402f521e00 size 16 Sep 21 07:16:33.792468: | setup callback for interface lo 127.0.0.1:500 fd 21 Sep 21 07:16:33.792471: | add_fd_read_event_handler: new ethX-pe@0x56402f521e20 Sep 21 07:16:33.792473: | libevent_malloc: new ptr-libevent@0x56402f521e60 size 128 Sep 21 07:16:33.792476: | libevent_malloc: new ptr-libevent@0x56402f521ef0 size 16 Sep 21 07:16:33.792480: | setup callback for interface eth0 192.0.3.254:4500 fd 20 Sep 21 07:16:33.792483: | add_fd_read_event_handler: new ethX-pe@0x56402f521f10 Sep 21 07:16:33.792486: | libevent_malloc: new ptr-libevent@0x56402f521f50 size 128 Sep 21 07:16:33.792488: | libevent_malloc: new ptr-libevent@0x56402f521fe0 size 16 Sep 21 07:16:33.792493: | setup callback for interface eth0 192.0.3.254:500 fd 19 Sep 21 07:16:33.792495: | add_fd_read_event_handler: new ethX-pe@0x56402f522000 Sep 21 07:16:33.792498: | libevent_malloc: new ptr-libevent@0x56402f522040 size 128 Sep 21 07:16:33.792500: | libevent_malloc: new ptr-libevent@0x56402f5220d0 size 16 Sep 21 07:16:33.792505: | setup callback for interface eth1 192.1.3.33:4500 fd 18 Sep 21 07:16:33.792507: | add_fd_read_event_handler: new ethX-pe@0x56402f5220f0 Sep 21 07:16:33.792510: | libevent_malloc: new ptr-libevent@0x56402f522130 size 128 Sep 21 07:16:33.792513: | libevent_malloc: new ptr-libevent@0x56402f5221c0 size 16 Sep 21 07:16:33.792517: | setup callback for interface eth1 192.1.3.33:500 fd 17 Sep 21 07:16:33.792522: | certs and keys locked by 'free_preshared_secrets' Sep 21 07:16:33.792525: | certs and keys unlocked by 'free_preshared_secrets' Sep 21 07:16:33.792542: loading secrets from "/etc/ipsec.secrets" Sep 21 07:16:33.792560: | saving Modulus Sep 21 07:16:33.792566: | saving PublicExponent Sep 21 07:16:33.792569: | ignoring PrivateExponent Sep 21 07:16:33.792572: | ignoring Prime1 Sep 21 07:16:33.792575: | ignoring Prime2 Sep 21 07:16:33.792578: | ignoring Exponent1 Sep 21 07:16:33.792581: | ignoring Exponent2 Sep 21 07:16:33.792584: | ignoring Coefficient Sep 21 07:16:33.792587: | ignoring CKAIDNSS Sep 21 07:16:33.792628: | computed rsa CKAID 90 5d fc a1 08 68 74 7c 6f 20 d3 1b 2d 20 4b 8f Sep 21 07:16:33.792631: | computed rsa CKAID 88 aa 7c 5d Sep 21 07:16:33.792635: loaded private key for keyid: PKK_RSA:AQPl33O2P Sep 21 07:16:33.792642: | certs and keys locked by 'process_secret' Sep 21 07:16:33.792646: | certs and keys unlocked by 'process_secret' Sep 21 07:16:33.792652: | pluto_sd: executing action action: ready(5), status 0 Sep 21 07:16:33.792660: | close_any(fd@16) (in whack_process() at rcv_whack.c:700) Sep 21 07:16:33.792669: | spent 0.833 milliseconds in whack Sep 21 07:16:33.829266: | accept(whackctlfd, (struct sockaddr *)&whackaddr, &whackaddrlen) -> fd@16 (in whack_handle() at rcv_whack.c:721) Sep 21 07:16:33.829287: | pluto_sd: executing action action: reloading(4), status 0 Sep 21 07:16:33.829292: listening for IKE messages Sep 21 07:16:33.829328: | Inspecting interface lo Sep 21 07:16:33.829334: | found lo with address 127.0.0.1 Sep 21 07:16:33.829337: | Inspecting interface eth0 Sep 21 07:16:33.829341: | found eth0 with address 192.0.3.254 Sep 21 07:16:33.829343: | Inspecting interface eth1 Sep 21 07:16:33.829347: | found eth1 with address 192.1.3.33 Sep 21 07:16:33.829402: | no interfaces to sort Sep 21 07:16:33.829411: | libevent_free: release ptr-libevent@0x56402f521c80 Sep 21 07:16:33.829414: | free_event_entry: release EVENT_NULL-pe@0x56402f521c40 Sep 21 07:16:33.829417: | add_fd_read_event_handler: new ethX-pe@0x56402f521c40 Sep 21 07:16:33.829420: | libevent_malloc: new ptr-libevent@0x56402f521c80 size 128 Sep 21 07:16:33.829428: | setup callback for interface lo 127.0.0.1:4500 fd 22 Sep 21 07:16:33.829432: | libevent_free: release ptr-libevent@0x56402f521d70 Sep 21 07:16:33.829434: | free_event_entry: release EVENT_NULL-pe@0x56402f521d30 Sep 21 07:16:33.829437: | add_fd_read_event_handler: new ethX-pe@0x56402f521d30 Sep 21 07:16:33.829439: | libevent_malloc: new ptr-libevent@0x56402f521d70 size 128 Sep 21 07:16:33.829444: | setup callback for interface lo 127.0.0.1:500 fd 21 Sep 21 07:16:33.829447: | libevent_free: release ptr-libevent@0x56402f521e60 Sep 21 07:16:33.829450: | free_event_entry: release EVENT_NULL-pe@0x56402f521e20 Sep 21 07:16:33.829452: | add_fd_read_event_handler: new ethX-pe@0x56402f521e20 Sep 21 07:16:33.829455: | libevent_malloc: new ptr-libevent@0x56402f521e60 size 128 Sep 21 07:16:33.829459: | setup callback for interface eth0 192.0.3.254:4500 fd 20 Sep 21 07:16:33.829463: | libevent_free: release ptr-libevent@0x56402f521f50 Sep 21 07:16:33.829465: | free_event_entry: release EVENT_NULL-pe@0x56402f521f10 Sep 21 07:16:33.829468: | add_fd_read_event_handler: new ethX-pe@0x56402f521f10 Sep 21 07:16:33.829470: | libevent_malloc: new ptr-libevent@0x56402f521f50 size 128 Sep 21 07:16:33.829475: | setup callback for interface eth0 192.0.3.254:500 fd 19 Sep 21 07:16:33.829478: | libevent_free: release ptr-libevent@0x56402f522040 Sep 21 07:16:33.829481: | free_event_entry: release EVENT_NULL-pe@0x56402f522000 Sep 21 07:16:33.829483: | add_fd_read_event_handler: new ethX-pe@0x56402f522000 Sep 21 07:16:33.829485: | libevent_malloc: new ptr-libevent@0x56402f522040 size 128 Sep 21 07:16:33.829490: | setup callback for interface eth1 192.1.3.33:4500 fd 18 Sep 21 07:16:33.829494: | libevent_free: release ptr-libevent@0x56402f522130 Sep 21 07:16:33.829496: | free_event_entry: release EVENT_NULL-pe@0x56402f5220f0 Sep 21 07:16:33.829498: | add_fd_read_event_handler: new ethX-pe@0x56402f5220f0 Sep 21 07:16:33.829501: | libevent_malloc: new ptr-libevent@0x56402f522130 size 128 Sep 21 07:16:33.829505: | setup callback for interface eth1 192.1.3.33:500 fd 17 Sep 21 07:16:33.829508: | certs and keys locked by 'free_preshared_secrets' Sep 21 07:16:33.829511: forgetting secrets Sep 21 07:16:33.829519: | certs and keys unlocked by 'free_preshared_secrets' Sep 21 07:16:33.829532: loading secrets from "/etc/ipsec.secrets" Sep 21 07:16:33.829547: | saving Modulus Sep 21 07:16:33.829550: | saving PublicExponent Sep 21 07:16:33.829553: | ignoring PrivateExponent Sep 21 07:16:33.829556: | ignoring Prime1 Sep 21 07:16:33.829559: | ignoring Prime2 Sep 21 07:16:33.829563: | ignoring Exponent1 Sep 21 07:16:33.829566: | ignoring Exponent2 Sep 21 07:16:33.829569: | ignoring Coefficient Sep 21 07:16:33.829572: | ignoring CKAIDNSS Sep 21 07:16:33.829597: | computed rsa CKAID 90 5d fc a1 08 68 74 7c 6f 20 d3 1b 2d 20 4b 8f Sep 21 07:16:33.829600: | computed rsa CKAID 88 aa 7c 5d Sep 21 07:16:33.829603: loaded private key for keyid: PKK_RSA:AQPl33O2P Sep 21 07:16:33.829609: | certs and keys locked by 'process_secret' Sep 21 07:16:33.829616: | certs and keys unlocked by 'process_secret' Sep 21 07:16:33.829621: | pluto_sd: executing action action: ready(5), status 0 Sep 21 07:16:33.829629: | close_any(fd@16) (in whack_process() at rcv_whack.c:700) Sep 21 07:16:33.829636: | spent 0.378 milliseconds in whack Sep 21 07:16:33.830935: | processing signal PLUTO_SIGCHLD Sep 21 07:16:33.830950: | waitpid returned pid 14710 (exited with status 0) Sep 21 07:16:33.830954: | reaped addconn helper child (status 0) Sep 21 07:16:33.830959: | waitpid returned ECHILD (no child processes left) Sep 21 07:16:33.830964: | spent 0.0166 milliseconds in signal handler PLUTO_SIGCHLD Sep 21 07:16:33.909382: | accept(whackctlfd, (struct sockaddr *)&whackaddr, &whackaddrlen) -> fd@16 (in whack_handle() at rcv_whack.c:721) Sep 21 07:16:33.909404: | FOR_EACH_CONNECTION_... in conn_by_name Sep 21 07:16:33.909407: | FOR_EACH_CONNECTION_... in foreach_connection_by_alias Sep 21 07:16:33.909410: | FOR_EACH_CONNECTION_... in conn_by_name Sep 21 07:16:33.909412: | FOR_EACH_CONNECTION_... in foreach_connection_by_alias Sep 21 07:16:33.909416: | FOR_EACH_CONNECTION_... in conn_by_name Sep 21 07:16:33.909424: | Added new connection north-eastnets/0x1 with policy ENCRYPT+TUNNEL+PFS+IKEV2_ALLOW+SAREF_TRACK+IKE_FRAG_ALLOW+ESN_NO Sep 21 07:16:33.909427: | No AUTH policy was set - defaulting to RSASIG Sep 21 07:16:33.909455: | ike (phase1) algorithm values: AES_CBC_256-HMAC_SHA2_256-MODP2048 Sep 21 07:16:33.909458: | from whack: got --esp=aes128-sha2_512;modp3072 Sep 21 07:16:33.909473: | ESP/AH string values: AES_CBC_128-HMAC_SHA2_512_256-MODP3072 Sep 21 07:16:33.909478: | counting wild cards for @north is 0 Sep 21 07:16:33.909481: | counting wild cards for @east is 0 Sep 21 07:16:33.909492: | connect_to_host_pair: 192.1.3.33:500 192.1.2.23:500 -> hp@(nil): none Sep 21 07:16:33.909496: | new hp@0x56402f4ee5d0 Sep 21 07:16:33.909501: added connection description "north-eastnets/0x1" Sep 21 07:16:33.909512: | ike_life: 3600s; ipsec_life: 28800s; rekey_margin: 540s; rekey_fuzz: 100%; keyingtries: 0; replay_window: 32; policy: RSASIG+ENCRYPT+TUNNEL+PFS+IKEV2_ALLOW+SAREF_TRACK+IKE_FRAG_ALLOW+ESN_NO Sep 21 07:16:33.909523: | 192.0.3.0/24===192.1.3.33<192.1.3.33>[@north]...192.1.2.23<192.1.2.23>[@east]===192.0.2.0/24 Sep 21 07:16:33.909531: | close_any(fd@16) (in whack_process() at rcv_whack.c:700) Sep 21 07:16:33.909539: | spent 0.164 milliseconds in whack Sep 21 07:16:33.909745: | accept(whackctlfd, (struct sockaddr *)&whackaddr, &whackaddrlen) -> fd@16 (in whack_handle() at rcv_whack.c:721) Sep 21 07:16:33.909756: add keyid @north Sep 21 07:16:33.909760: | add pubkey 01 03 e5 df 73 b6 3e d5 36 a8 f1 3d 0d d3 02 ab Sep 21 07:16:33.909763: | add pubkey 7f ec 4c 9e 8b 0e 0e d2 cf 0f 59 bf 6d 88 21 86 Sep 21 07:16:33.909765: | add pubkey 93 9e 10 34 af 2d cf b3 7e eb e5 b2 24 b2 a5 b0 Sep 21 07:16:33.909767: | add pubkey 01 03 7d b5 96 ad 66 ee 48 c2 28 d9 9a 76 36 a9 Sep 21 07:16:33.909769: | add pubkey 10 84 b5 09 8f 17 4f 65 ce d8 2f 8e 78 80 8a 87 Sep 21 07:16:33.909771: | add pubkey f4 6b 98 d9 91 94 6b 52 15 5b 9c 47 12 be d8 6f Sep 21 07:16:33.909773: | add pubkey 25 b4 65 38 7e e4 8d c7 f0 58 d3 9f 69 14 cc 3e Sep 21 07:16:33.909776: | add pubkey c8 16 1f af bb 5d 93 2b 33 39 0e 94 55 81 f4 b3 Sep 21 07:16:33.909779: | add pubkey cc 92 58 6e 4a 5a 4e c3 76 ab 04 2e 11 08 06 55 Sep 21 07:16:33.909781: | add pubkey 13 0f 02 6c dd d1 bc c0 b8 8d 65 f5 97 ed fc 18 Sep 21 07:16:33.909789: | add pubkey 39 f9 55 ab fa 0d c5 49 99 7f 1b cf c3 de 99 7d Sep 21 07:16:33.909794: | add pubkey 9e ca 6f 9e 14 d6 5a ff de d6 4f 57 6a 83 ab 51 Sep 21 07:16:33.909797: | add pubkey ba 64 74 e0 22 e9 9a c5 10 71 bb d4 eb a4 99 28 Sep 21 07:16:33.909799: | add pubkey 9c 85 0e 31 ea cc ab ef 98 84 3f 59 c1 75 aa b3 Sep 21 07:16:33.909801: | add pubkey 61 eb 61 8c 58 a5 92 25 84 ad c7 79 f3 87 d0 c7 Sep 21 07:16:33.909803: | add pubkey 83 c2 d6 8a fe 26 9d 2a ff b1 dd 9b 89 21 7c ca Sep 21 07:16:33.909806: | add pubkey f5 38 2d 3f 64 0c 41 9c 34 e9 b2 55 0f 82 1a b3 Sep 21 07:16:33.909813: | add pubkey c7 5e a5 99 Sep 21 07:16:33.909840: | computed rsa CKAID 90 5d fc a1 08 68 74 7c 6f 20 d3 1b 2d 20 4b 8f Sep 21 07:16:33.909844: | computed rsa CKAID 88 aa 7c 5d Sep 21 07:16:33.909851: | keyid: *AQPl33O2P Sep 21 07:16:33.909854: | n e5 df 73 b6 3e d5 36 a8 f1 3d 0d d3 02 ab 7f ec Sep 21 07:16:33.909856: | n 4c 9e 8b 0e 0e d2 cf 0f 59 bf 6d 88 21 86 93 9e Sep 21 07:16:33.909858: | n 10 34 af 2d cf b3 7e eb e5 b2 24 b2 a5 b0 01 03 Sep 21 07:16:33.909860: | n 7d b5 96 ad 66 ee 48 c2 28 d9 9a 76 36 a9 10 84 Sep 21 07:16:33.909863: | n b5 09 8f 17 4f 65 ce d8 2f 8e 78 80 8a 87 f4 6b Sep 21 07:16:33.909865: | n 98 d9 91 94 6b 52 15 5b 9c 47 12 be d8 6f 25 b4 Sep 21 07:16:33.909867: | n 65 38 7e e4 8d c7 f0 58 d3 9f 69 14 cc 3e c8 16 Sep 21 07:16:33.909869: | n 1f af bb 5d 93 2b 33 39 0e 94 55 81 f4 b3 cc 92 Sep 21 07:16:33.909871: | n 58 6e 4a 5a 4e c3 76 ab 04 2e 11 08 06 55 13 0f Sep 21 07:16:33.909874: | n 02 6c dd d1 bc c0 b8 8d 65 f5 97 ed fc 18 39 f9 Sep 21 07:16:33.909876: | n 55 ab fa 0d c5 49 99 7f 1b cf c3 de 99 7d 9e ca Sep 21 07:16:33.909879: | n 6f 9e 14 d6 5a ff de d6 4f 57 6a 83 ab 51 ba 64 Sep 21 07:16:33.909881: | n 74 e0 22 e9 9a c5 10 71 bb d4 eb a4 99 28 9c 85 Sep 21 07:16:33.909883: | n 0e 31 ea cc ab ef 98 84 3f 59 c1 75 aa b3 61 eb Sep 21 07:16:33.909886: | n 61 8c 58 a5 92 25 84 ad c7 79 f3 87 d0 c7 83 c2 Sep 21 07:16:33.909888: | n d6 8a fe 26 9d 2a ff b1 dd 9b 89 21 7c ca f5 38 Sep 21 07:16:33.909891: | n 2d 3f 64 0c 41 9c 34 e9 b2 55 0f 82 1a b3 c7 5e Sep 21 07:16:33.909893: | n a5 99 Sep 21 07:16:33.909895: | e 03 Sep 21 07:16:33.909898: | CKAID 90 5d fc a1 08 68 74 7c 6f 20 d3 1b 2d 20 4b 8f Sep 21 07:16:33.909900: | CKAID 88 aa 7c 5d Sep 21 07:16:33.909909: | close_any(fd@16) (in whack_process() at rcv_whack.c:700) Sep 21 07:16:33.909914: | spent 0.171 milliseconds in whack Sep 21 07:16:33.910011: | accept(whackctlfd, (struct sockaddr *)&whackaddr, &whackaddrlen) -> fd@16 (in whack_handle() at rcv_whack.c:721) Sep 21 07:16:33.910027: add keyid @east Sep 21 07:16:33.910032: | add pubkey 01 03 bd 6c 96 eb df 78 89 b3 ed 77 0d a1 7f 7b Sep 21 07:16:33.910034: | add pubkey e5 16 c2 c9 e4 7d 92 0a 90 9d 55 43 b4 62 13 03 Sep 21 07:16:33.910037: | add pubkey 85 7a e0 26 7b 54 1f ca 09 93 cf ff 25 c9 02 4c Sep 21 07:16:33.910039: | add pubkey 78 ca 94 e5 3e ac d1 f9 a8 e5 bb 7f cc 20 84 e0 Sep 21 07:16:33.910041: | add pubkey 21 c9 f0 0d c5 44 ba f3 48 64 61 58 f6 0f 63 0d Sep 21 07:16:33.910044: | add pubkey d2 67 1e 59 8b ec f3 50 39 71 fb 39 da 11 64 b6 Sep 21 07:16:33.910046: | add pubkey 62 cd 5f d3 8d 2e c1 50 ed 9c 6e 22 0c 39 a7 ce Sep 21 07:16:33.910048: | add pubkey 62 b5 af 8a 80 0f 2e 4c 05 5c 82 c7 8d 29 02 2e Sep 21 07:16:33.910050: | add pubkey bb 23 5f db f2 9e b5 7d e2 20 70 1a 63 f3 8e 5d Sep 21 07:16:33.910053: | add pubkey ac 47 f0 5c 26 4e b1 d0 42 60 52 4a b0 77 25 ce Sep 21 07:16:33.910055: | add pubkey e0 98 2b 43 f4 c7 59 1a 64 01 83 ea 4e e3 1a 2a Sep 21 07:16:33.910057: | add pubkey 92 b8 55 ab 63 dd 4b 70 47 29 dc e9 b4 60 bf 43 Sep 21 07:16:33.910060: | add pubkey 4d 58 8f 64 73 95 70 ac 35 89 b2 c2 9c d4 62 c0 Sep 21 07:16:33.910062: | add pubkey 5f 56 5f ad 1b e5 dd 49 93 6a f5 23 82 ed d4 e7 Sep 21 07:16:33.910064: | add pubkey d5 f1 55 f2 2d a2 26 a6 36 53 2f 94 fb 99 22 5c Sep 21 07:16:33.910067: | add pubkey 47 cc 6d 80 30 88 96 38 0c f5 f2 ed 37 d0 09 d5 Sep 21 07:16:33.910069: | add pubkey 07 8f 69 ef a9 99 ce 4d 1a 77 9e 39 c4 38 f3 c5 Sep 21 07:16:33.910071: | add pubkey 51 51 48 ef Sep 21 07:16:33.910082: | computed rsa CKAID 61 55 99 73 d3 ac ef 7d 3a 37 0e 3e 82 ad 92 c1 Sep 21 07:16:33.910085: | computed rsa CKAID 8a 82 25 f1 Sep 21 07:16:33.910089: | keyid: *AQO9bJbr3 Sep 21 07:16:33.910200: | n bd 6c 96 eb df 78 89 b3 ed 77 0d a1 7f 7b e5 16 Sep 21 07:16:33.910207: | n c2 c9 e4 7d 92 0a 90 9d 55 43 b4 62 13 03 85 7a Sep 21 07:16:33.910210: | n e0 26 7b 54 1f ca 09 93 cf ff 25 c9 02 4c 78 ca Sep 21 07:16:33.910212: | n 94 e5 3e ac d1 f9 a8 e5 bb 7f cc 20 84 e0 21 c9 Sep 21 07:16:33.910215: | n f0 0d c5 44 ba f3 48 64 61 58 f6 0f 63 0d d2 67 Sep 21 07:16:33.910217: | n 1e 59 8b ec f3 50 39 71 fb 39 da 11 64 b6 62 cd Sep 21 07:16:33.910220: | n 5f d3 8d 2e c1 50 ed 9c 6e 22 0c 39 a7 ce 62 b5 Sep 21 07:16:33.910222: | n af 8a 80 0f 2e 4c 05 5c 82 c7 8d 29 02 2e bb 23 Sep 21 07:16:33.910224: | n 5f db f2 9e b5 7d e2 20 70 1a 63 f3 8e 5d ac 47 Sep 21 07:16:33.910227: | n f0 5c 26 4e b1 d0 42 60 52 4a b0 77 25 ce e0 98 Sep 21 07:16:33.910229: | n 2b 43 f4 c7 59 1a 64 01 83 ea 4e e3 1a 2a 92 b8 Sep 21 07:16:33.910231: | n 55 ab 63 dd 4b 70 47 29 dc e9 b4 60 bf 43 4d 58 Sep 21 07:16:33.910234: | n 8f 64 73 95 70 ac 35 89 b2 c2 9c d4 62 c0 5f 56 Sep 21 07:16:33.910236: | n 5f ad 1b e5 dd 49 93 6a f5 23 82 ed d4 e7 d5 f1 Sep 21 07:16:33.910239: | n 55 f2 2d a2 26 a6 36 53 2f 94 fb 99 22 5c 47 cc Sep 21 07:16:33.910241: | n 6d 80 30 88 96 38 0c f5 f2 ed 37 d0 09 d5 07 8f Sep 21 07:16:33.910243: | n 69 ef a9 99 ce 4d 1a 77 9e 39 c4 38 f3 c5 51 51 Sep 21 07:16:33.910246: | n 48 ef Sep 21 07:16:33.910248: | e 03 Sep 21 07:16:33.910250: | CKAID 61 55 99 73 d3 ac ef 7d 3a 37 0e 3e 82 ad 92 c1 Sep 21 07:16:33.910253: | CKAID 8a 82 25 f1 Sep 21 07:16:33.910260: | close_any(fd@16) (in whack_process() at rcv_whack.c:700) Sep 21 07:16:33.910265: | spent 0.163 milliseconds in whack Sep 21 07:16:33.910311: | accept(whackctlfd, (struct sockaddr *)&whackaddr, &whackaddrlen) -> fd@16 (in whack_handle() at rcv_whack.c:721) Sep 21 07:16:33.910324: | FOR_EACH_CONNECTION_... in conn_by_name Sep 21 07:16:33.910327: | FOR_EACH_CONNECTION_... in foreach_connection_by_alias Sep 21 07:16:33.910330: | FOR_EACH_CONNECTION_... in conn_by_name Sep 21 07:16:33.910333: | FOR_EACH_CONNECTION_... in foreach_connection_by_alias Sep 21 07:16:33.910336: | FOR_EACH_CONNECTION_... in conn_by_name Sep 21 07:16:33.910342: | Added new connection north-eastnets/0x2 with policy ENCRYPT+TUNNEL+PFS+IKEV2_ALLOW+SAREF_TRACK+IKE_FRAG_ALLOW+ESN_NO Sep 21 07:16:33.910345: | No AUTH policy was set - defaulting to RSASIG Sep 21 07:16:33.910365: | ike (phase1) algorithm values: AES_CBC_256-HMAC_SHA2_256-MODP2048 Sep 21 07:16:33.910368: | from whack: got --esp=aes128-sha2_512;modp3072 Sep 21 07:16:33.910383: | ESP/AH string values: AES_CBC_128-HMAC_SHA2_512_256-MODP3072 Sep 21 07:16:33.910387: | counting wild cards for @north is 0 Sep 21 07:16:33.910390: | counting wild cards for @east is 0 Sep 21 07:16:33.910398: | find_host_pair: comparing 192.1.3.33:500 to 192.1.2.23:500 but ignoring ports Sep 21 07:16:33.910403: | connect_to_host_pair: 192.1.3.33:500 192.1.2.23:500 -> hp@0x56402f4ee5d0: north-eastnets/0x1 Sep 21 07:16:33.910405: added connection description "north-eastnets/0x2" Sep 21 07:16:33.910413: | ike_life: 3600s; ipsec_life: 28800s; rekey_margin: 540s; rekey_fuzz: 100%; keyingtries: 0; replay_window: 32; policy: RSASIG+ENCRYPT+TUNNEL+PFS+IKEV2_ALLOW+SAREF_TRACK+IKE_FRAG_ALLOW+ESN_NO Sep 21 07:16:33.910424: | 192.0.3.0/24===192.1.3.33<192.1.3.33>[@north]...192.1.2.23<192.1.2.23>[@east]===192.0.22.0/24 Sep 21 07:16:33.910430: | close_any(fd@16) (in whack_process() at rcv_whack.c:700) Sep 21 07:16:33.910435: | spent 0.123 milliseconds in whack Sep 21 07:16:33.910590: | accept(whackctlfd, (struct sockaddr *)&whackaddr, &whackaddrlen) -> fd@16 (in whack_handle() at rcv_whack.c:721) Sep 21 07:16:33.910606: add keyid @north Sep 21 07:16:33.910611: | unreference key: 0x56402f4aaf60 @north cnt 1-- Sep 21 07:16:33.910616: | add pubkey 01 03 e5 df 73 b6 3e d5 36 a8 f1 3d 0d d3 02 ab Sep 21 07:16:33.910618: | add pubkey 7f ec 4c 9e 8b 0e 0e d2 cf 0f 59 bf 6d 88 21 86 Sep 21 07:16:33.910621: | add pubkey 93 9e 10 34 af 2d cf b3 7e eb e5 b2 24 b2 a5 b0 Sep 21 07:16:33.910624: | add pubkey 01 03 7d b5 96 ad 66 ee 48 c2 28 d9 9a 76 36 a9 Sep 21 07:16:33.910630: | add pubkey 10 84 b5 09 8f 17 4f 65 ce d8 2f 8e 78 80 8a 87 Sep 21 07:16:33.910632: | add pubkey f4 6b 98 d9 91 94 6b 52 15 5b 9c 47 12 be d8 6f Sep 21 07:16:33.910635: | add pubkey 25 b4 65 38 7e e4 8d c7 f0 58 d3 9f 69 14 cc 3e Sep 21 07:16:33.910638: | add pubkey c8 16 1f af bb 5d 93 2b 33 39 0e 94 55 81 f4 b3 Sep 21 07:16:33.910640: | add pubkey cc 92 58 6e 4a 5a 4e c3 76 ab 04 2e 11 08 06 55 Sep 21 07:16:33.910643: | add pubkey 13 0f 02 6c dd d1 bc c0 b8 8d 65 f5 97 ed fc 18 Sep 21 07:16:33.910645: | add pubkey 39 f9 55 ab fa 0d c5 49 99 7f 1b cf c3 de 99 7d Sep 21 07:16:33.910647: | add pubkey 9e ca 6f 9e 14 d6 5a ff de d6 4f 57 6a 83 ab 51 Sep 21 07:16:33.910650: | add pubkey ba 64 74 e0 22 e9 9a c5 10 71 bb d4 eb a4 99 28 Sep 21 07:16:33.910653: | add pubkey 9c 85 0e 31 ea cc ab ef 98 84 3f 59 c1 75 aa b3 Sep 21 07:16:33.910655: | add pubkey 61 eb 61 8c 58 a5 92 25 84 ad c7 79 f3 87 d0 c7 Sep 21 07:16:33.910658: | add pubkey 83 c2 d6 8a fe 26 9d 2a ff b1 dd 9b 89 21 7c ca Sep 21 07:16:33.910661: | add pubkey f5 38 2d 3f 64 0c 41 9c 34 e9 b2 55 0f 82 1a b3 Sep 21 07:16:33.910663: | add pubkey c7 5e a5 99 Sep 21 07:16:33.910675: | computed rsa CKAID 90 5d fc a1 08 68 74 7c 6f 20 d3 1b 2d 20 4b 8f Sep 21 07:16:33.910678: | computed rsa CKAID 88 aa 7c 5d Sep 21 07:16:33.910682: | keyid: *AQPl33O2P Sep 21 07:16:33.910685: | n e5 df 73 b6 3e d5 36 a8 f1 3d 0d d3 02 ab 7f ec Sep 21 07:16:33.910688: | n 4c 9e 8b 0e 0e d2 cf 0f 59 bf 6d 88 21 86 93 9e Sep 21 07:16:33.910690: | n 10 34 af 2d cf b3 7e eb e5 b2 24 b2 a5 b0 01 03 Sep 21 07:16:33.910696: | n 7d b5 96 ad 66 ee 48 c2 28 d9 9a 76 36 a9 10 84 Sep 21 07:16:33.910698: | n b5 09 8f 17 4f 65 ce d8 2f 8e 78 80 8a 87 f4 6b Sep 21 07:16:33.910700: | n 98 d9 91 94 6b 52 15 5b 9c 47 12 be d8 6f 25 b4 Sep 21 07:16:33.910703: | n 65 38 7e e4 8d c7 f0 58 d3 9f 69 14 cc 3e c8 16 Sep 21 07:16:33.910705: | n 1f af bb 5d 93 2b 33 39 0e 94 55 81 f4 b3 cc 92 Sep 21 07:16:33.910707: | n 58 6e 4a 5a 4e c3 76 ab 04 2e 11 08 06 55 13 0f Sep 21 07:16:33.910709: | n 02 6c dd d1 bc c0 b8 8d 65 f5 97 ed fc 18 39 f9 Sep 21 07:16:33.910712: | n 55 ab fa 0d c5 49 99 7f 1b cf c3 de 99 7d 9e ca Sep 21 07:16:33.910714: | n 6f 9e 14 d6 5a ff de d6 4f 57 6a 83 ab 51 ba 64 Sep 21 07:16:33.910717: | n 74 e0 22 e9 9a c5 10 71 bb d4 eb a4 99 28 9c 85 Sep 21 07:16:33.910719: | n 0e 31 ea cc ab ef 98 84 3f 59 c1 75 aa b3 61 eb Sep 21 07:16:33.910722: | n 61 8c 58 a5 92 25 84 ad c7 79 f3 87 d0 c7 83 c2 Sep 21 07:16:33.910724: | n d6 8a fe 26 9d 2a ff b1 dd 9b 89 21 7c ca f5 38 Sep 21 07:16:33.910727: | n 2d 3f 64 0c 41 9c 34 e9 b2 55 0f 82 1a b3 c7 5e Sep 21 07:16:33.910729: | n a5 99 Sep 21 07:16:33.910731: | e 03 Sep 21 07:16:33.910734: | CKAID 90 5d fc a1 08 68 74 7c 6f 20 d3 1b 2d 20 4b 8f Sep 21 07:16:33.910736: | CKAID 88 aa 7c 5d Sep 21 07:16:33.910743: | close_any(fd@16) (in whack_process() at rcv_whack.c:700) Sep 21 07:16:33.910748: | spent 0.155 milliseconds in whack Sep 21 07:16:33.910966: | accept(whackctlfd, (struct sockaddr *)&whackaddr, &whackaddrlen) -> fd@16 (in whack_handle() at rcv_whack.c:721) Sep 21 07:16:33.910984: add keyid @east Sep 21 07:16:33.910990: | unreference key: 0x56402f47c8f0 @east cnt 1-- Sep 21 07:16:33.910993: | add pubkey 01 03 bd 6c 96 eb df 78 89 b3 ed 77 0d a1 7f 7b Sep 21 07:16:33.910995: | add pubkey e5 16 c2 c9 e4 7d 92 0a 90 9d 55 43 b4 62 13 03 Sep 21 07:16:33.910997: | add pubkey 85 7a e0 26 7b 54 1f ca 09 93 cf ff 25 c9 02 4c Sep 21 07:16:33.911000: | add pubkey 78 ca 94 e5 3e ac d1 f9 a8 e5 bb 7f cc 20 84 e0 Sep 21 07:16:33.911002: | add pubkey 21 c9 f0 0d c5 44 ba f3 48 64 61 58 f6 0f 63 0d Sep 21 07:16:33.911004: | add pubkey d2 67 1e 59 8b ec f3 50 39 71 fb 39 da 11 64 b6 Sep 21 07:16:33.911006: | add pubkey 62 cd 5f d3 8d 2e c1 50 ed 9c 6e 22 0c 39 a7 ce Sep 21 07:16:33.911008: | add pubkey 62 b5 af 8a 80 0f 2e 4c 05 5c 82 c7 8d 29 02 2e Sep 21 07:16:33.911014: | add pubkey bb 23 5f db f2 9e b5 7d e2 20 70 1a 63 f3 8e 5d Sep 21 07:16:33.911016: | add pubkey ac 47 f0 5c 26 4e b1 d0 42 60 52 4a b0 77 25 ce Sep 21 07:16:33.911018: | add pubkey e0 98 2b 43 f4 c7 59 1a 64 01 83 ea 4e e3 1a 2a Sep 21 07:16:33.911020: | add pubkey 92 b8 55 ab 63 dd 4b 70 47 29 dc e9 b4 60 bf 43 Sep 21 07:16:33.911022: | add pubkey 4d 58 8f 64 73 95 70 ac 35 89 b2 c2 9c d4 62 c0 Sep 21 07:16:33.911025: | add pubkey 5f 56 5f ad 1b e5 dd 49 93 6a f5 23 82 ed d4 e7 Sep 21 07:16:33.911027: | add pubkey d5 f1 55 f2 2d a2 26 a6 36 53 2f 94 fb 99 22 5c Sep 21 07:16:33.911029: | add pubkey 47 cc 6d 80 30 88 96 38 0c f5 f2 ed 37 d0 09 d5 Sep 21 07:16:33.911031: | add pubkey 07 8f 69 ef a9 99 ce 4d 1a 77 9e 39 c4 38 f3 c5 Sep 21 07:16:33.911033: | add pubkey 51 51 48 ef Sep 21 07:16:33.911043: | computed rsa CKAID 61 55 99 73 d3 ac ef 7d 3a 37 0e 3e 82 ad 92 c1 Sep 21 07:16:33.911045: | computed rsa CKAID 8a 82 25 f1 Sep 21 07:16:33.911049: | keyid: *AQO9bJbr3 Sep 21 07:16:33.911051: | n bd 6c 96 eb df 78 89 b3 ed 77 0d a1 7f 7b e5 16 Sep 21 07:16:33.911053: | n c2 c9 e4 7d 92 0a 90 9d 55 43 b4 62 13 03 85 7a Sep 21 07:16:33.911055: | n e0 26 7b 54 1f ca 09 93 cf ff 25 c9 02 4c 78 ca Sep 21 07:16:33.911058: | n 94 e5 3e ac d1 f9 a8 e5 bb 7f cc 20 84 e0 21 c9 Sep 21 07:16:33.911060: | n f0 0d c5 44 ba f3 48 64 61 58 f6 0f 63 0d d2 67 Sep 21 07:16:33.911062: | n 1e 59 8b ec f3 50 39 71 fb 39 da 11 64 b6 62 cd Sep 21 07:16:33.911064: | n 5f d3 8d 2e c1 50 ed 9c 6e 22 0c 39 a7 ce 62 b5 Sep 21 07:16:33.911066: | n af 8a 80 0f 2e 4c 05 5c 82 c7 8d 29 02 2e bb 23 Sep 21 07:16:33.911068: | n 5f db f2 9e b5 7d e2 20 70 1a 63 f3 8e 5d ac 47 Sep 21 07:16:33.911070: | n f0 5c 26 4e b1 d0 42 60 52 4a b0 77 25 ce e0 98 Sep 21 07:16:33.911075: | n 2b 43 f4 c7 59 1a 64 01 83 ea 4e e3 1a 2a 92 b8 Sep 21 07:16:33.911078: | n 55 ab 63 dd 4b 70 47 29 dc e9 b4 60 bf 43 4d 58 Sep 21 07:16:33.911080: | n 8f 64 73 95 70 ac 35 89 b2 c2 9c d4 62 c0 5f 56 Sep 21 07:16:33.911082: | n 5f ad 1b e5 dd 49 93 6a f5 23 82 ed d4 e7 d5 f1 Sep 21 07:16:33.911084: | n 55 f2 2d a2 26 a6 36 53 2f 94 fb 99 22 5c 47 cc Sep 21 07:16:33.911085: | n 6d 80 30 88 96 38 0c f5 f2 ed 37 d0 09 d5 07 8f Sep 21 07:16:33.911088: | n 69 ef a9 99 ce 4d 1a 77 9e 39 c4 38 f3 c5 51 51 Sep 21 07:16:33.911090: | n 48 ef Sep 21 07:16:33.911092: | e 03 Sep 21 07:16:33.911095: | CKAID 61 55 99 73 d3 ac ef 7d 3a 37 0e 3e 82 ad 92 c1 Sep 21 07:16:33.911097: | CKAID 8a 82 25 f1 Sep 21 07:16:33.911103: | close_any(fd@16) (in whack_process() at rcv_whack.c:700) Sep 21 07:16:33.911108: | spent 0.139 milliseconds in whack