Project

General

Profile

Hardcopy Device Integrity Measurement Collector » History » Version 11

Andreas Steffen, 04.08.2015 20:01

1 3 Andreas Steffen
h1. Hardcopy Device Integrity Measurement Collector
2 1 Andreas Steffen
3 4 Andreas Steffen
The PA-TNC attributes of the HCD *carol* are defined in the *libimcv.plugins.imc-hcd* section of /etc/strongswan.conf:
4 1 Andreas Steffen
<pre>
5 1 Andreas Steffen
charon {
6 1 Andreas Steffen
  load = aes des sha1 sha2 md5 pem pkcs1 gmp random nonce x509 curl revocation hmac stroke kernel-netlink socket-default eap-identity eap-md5 eap-ttls eap-tnc tnc-imc tnc-tnccs tnccs-20 updown
7 1 Andreas Steffen
8 1 Andreas Steffen
  plugins {
9 1 Andreas Steffen
    eap-ttls {
10 1 Andreas Steffen
      max_message_count = 0
11 1 Andreas Steffen
    }
12 1 Andreas Steffen
    eap-tnc {
13 1 Andreas Steffen
      max_message_count = 0
14 1 Andreas Steffen
    }
15 1 Andreas Steffen
    tnccs-20 {
16 1 Andreas Steffen
      max_batch_size = 16370
17 1 Andreas Steffen
      max_message_size = 16338
18 1 Andreas Steffen
    }
19 1 Andreas Steffen
  }
20 1 Andreas Steffen
}
21 1 Andreas Steffen
22 1 Andreas Steffen
libimcv {
23 1 Andreas Steffen
  os_info {
24 1 Andreas Steffen
    name = strongPrint OS
25 1 Andreas Steffen
    version = 1.0
26 1 Andreas Steffen
    default_password_enabled = yes
27 1 Andreas Steffen
  }
28 1 Andreas Steffen
29 1 Andreas Steffen
  plugins {
30 1 Andreas Steffen
    imc-hcd {
31 1 Andreas Steffen
      push_info = no 
32 1 Andreas Steffen
      subtypes {
33 1 Andreas Steffen
        system {
34 1 Andreas Steffen
          attributes_natural_language = en
35 1 Andreas Steffen
          machine_type_model = strongPrint Laser X.509a
36 1 Andreas Steffen
          vendor_name = ITA-HSR
37 1 Andreas Steffen
          vendor_smi_code = 36906
38 1 Andreas Steffen
          pstn_fax_enabled = yes
39 1 Andreas Steffen
          time_source = 0.ch.pool.ntp.org
40 1 Andreas Steffen
          user_application_enabled = yes
41 1 Andreas Steffen
          user_application_persistence_enabled = no
42 1 Andreas Steffen
43 1 Andreas Steffen
          firmware {
44 9 Andreas Steffen
	    fw-1 {
45 1 Andreas Steffen
              name = Firmware ABC 
46 9 Andreas Steffen
              patches = "security patch 2014-05-08\r\nupgrade 2014-08-16\r\nsecurity patch 2015-3-22\r\n"
47 1 Andreas Steffen
              string_version = 1.0.7
48 1 Andreas Steffen
              version = 00000001000000000000000700000000
49 1 Andreas Steffen
            }
50 9 Andreas Steffen
	    fw-2 {
51 1 Andreas Steffen
              name = Firmware UVW 
52 1 Andreas Steffen
              string_version = 13.8.5
53 1 Andreas Steffen
              version = 0000000D000000080000000500000000
54 1 Andreas Steffen
            }
55 1 Andreas Steffen
          }
56 1 Andreas Steffen
57 1 Andreas Steffen
          resident_application {
58 1 Andreas Steffen
            resident-app-1 {
59 1 Andreas Steffen
              name = Resident App XYZ 
60 9 Andreas Steffen
              patches = "xmas patch 2014-12-24\r\nservice patch 2015-05-22\r\n"
61 1 Andreas Steffen
              string_version = 2.5
62 1 Andreas Steffen
              version = 00000002000000050000000000000000
63 1 Andreas Steffen
            }
64 1 Andreas Steffen
          }
65 1 Andreas Steffen
66 1 Andreas Steffen
          user_application {
67 1 Andreas Steffen
            user-app-1 {
68 1 Andreas Steffen
              name = My Java Photo App
69 1 Andreas Steffen
              patches =
70 1 Andreas Steffen
              string_version = 5.2.3.8.1
71 1 Andreas Steffen
              version = 00000005000000020000000300080001
72 1 Andreas Steffen
            }
73 1 Andreas Steffen
            user-app-2 {
74 1 Andreas Steffen
              name = Print Your Dinosaur!
75 1 Andreas Steffen
              patches =
76 1 Andreas Steffen
              string_version = 1.0
77 1 Andreas Steffen
              version = 00000001000000000000000000000000
78 1 Andreas Steffen
            }
79 1 Andreas Steffen
            user-app-3 {
80 1 Andreas Steffen
              name = Label Everything App
81 1 Andreas Steffen
              patches =
82 1 Andreas Steffen
              string_version = 7.5.8.2.3
83 9 Andreas Steffen
              version = 00000007000000050000000800020003
84 1 Andreas Steffen
            }
85 1 Andreas Steffen
          }
86 1 Andreas Steffen
87 1 Andreas Steffen
          certification_state = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
88 1 Andreas Steffen
          configuration_state = f0f1f2f3f4f5f6f7f8f9fafbfcfdfeffe0e1e2e3e4e5e6e7e8e9eaebecedeeefd0d1d2d3d4d5d6d7d8d9dadbdcdddedf
89 1 Andreas Steffen
        }
90 1 Andreas Steffen
91 1 Andreas Steffen
        console {
92 1 Andreas Steffen
          attributes_natural_language = ru
93 1 Andreas Steffen
        }
94 1 Andreas Steffen
95 1 Andreas Steffen
        marker {
96 1 Andreas Steffen
          attributes_natural_language = fr
97 1 Andreas Steffen
        }
98 1 Andreas Steffen
99 1 Andreas Steffen
        finisher {
100 1 Andreas Steffen
          attributes_natural_language = de
101 1 Andreas Steffen
        }
102 1 Andreas Steffen
103 1 Andreas Steffen
        interface {
104 1 Andreas Steffen
          attributes_natural_language = en
105 1 Andreas Steffen
 
106 1 Andreas Steffen
          resident_application {
107 9 Andreas Steffen
	    resident-app-if {
108 1 Andreas Steffen
              name = Resident App Interface+ 
109 9 Andreas Steffen
              patches = "service patch 2015-02-09\r\n"
110 1 Andreas Steffen
              string_version = 2.5
111 1 Andreas Steffen
              version = 00000002000000050000000000000000
112 1 Andreas Steffen
            }
113 1 Andreas Steffen
          }
114 1 Andreas Steffen
        }
115 1 Andreas Steffen
116 1 Andreas Steffen
        scanner {
117 1 Andreas Steffen
          attributes_natural_language = en
118 1 Andreas Steffen
 
119 1 Andreas Steffen
          firmware {
120 1 Andreas Steffen
            fw-scanner {
121 1 Andreas Steffen
              name = Scanner Firmware 
122 9 Andreas Steffen
              patches = "security patch 2013-08-11\r\nsecurity patch 2015-5-30\r\n"
123 1 Andreas Steffen
              string_version = 2.5.3
124 1 Andreas Steffen
              version = 00000002000000050000000300000000
125 1 Andreas Steffen
            }
126 1 Andreas Steffen
          }
127 1 Andreas Steffen
128 1 Andreas Steffen
          user_application {
129 1 Andreas Steffen
            user-app-scanner {
130 1 Andreas Steffen
              name = EasyScan
131 1 Andreas Steffen
              patches =
132 1 Andreas Steffen
              string_version = 2.2.3.5.7
133 1 Andreas Steffen
              version = 00000002000000020000000300050007
134 1 Andreas Steffen
            }
135 1 Andreas Steffen
          }
136 1 Andreas Steffen
        }
137 1 Andreas Steffen
      }
138 1 Andreas Steffen
    }
139 1 Andreas Steffen
  }
140 1 Andreas Steffen
}
141 1 Andreas Steffen
</pre>
142 1 Andreas Steffen
143 1 Andreas Steffen
The TNC transport protocol is PT-EAP over IKEv2-EAP. In a first step the IKEv2 charon daemon is started up.
144 1 Andreas Steffen
<pre>
145 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[DMN] Starting IKE charon daemon (strongSwan 5.3.3dr3, Linux 4.1.3, x86_64)
146 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading ca certificates from '/etc/ipsec.d/cacerts'
147 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG]   loaded ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA" from '/etc/ipsec.d/cacerts/strongswanCert.pem'
148 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading aa certificates from '/etc/ipsec.d/aacerts'
149 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading ocsp signer certificates from '/etc/ipsec.d/ocspcerts'
150 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading attribute certificates from '/etc/ipsec.d/acerts'
151 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading crls from '/etc/ipsec.d/crls'
152 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading secrets from '/etc/ipsec.secrets'
153 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG]   loaded EAP secret for carol
154 1 Andreas Steffen
</pre>
155 2 Andreas Steffen
156 4 Andreas Steffen
Next the OS and HCD IMCs are loaded. The OS IMC subscribes to the IETF standard *Operating System* PA subtype and the HCD IMC to the mandatory  *System* and the five recommended *Console*, *Marker*, *Finisher*, *Interface* and *Scanner* PWG HCD PA subtypes. 
157 2 Andreas Steffen
<pre>
158 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] loading IMCs from '/etc/tnc_config'
159 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added IETF attributes
160 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added ITA-HSR attributes
161 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added PWG attributes
162 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added TCG attributes
163 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[LIB] libimcv initialized
164 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] IMC 1 "OS" initialized
165 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system name is 'strongPrint OS'
166 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system version is '1.0'
167 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 1 supports 1 message type: 'IETF/Operating System' 0x000000/0x00000001
168 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 1 "OS" loaded from '/usr/local/lib/ipsec/imcvs/imc-os.so'
169 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] IMC 2 "HCD" initialized
170 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system name is 'strongPrint OS'
171 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system version is '1.0'
172 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 2 supports 6 message types: 'PWG/HCD System' 0x000a8b/0x00000005 'PWG/HCD Console' 0x000a8b/0x00000004 'PWG/HCD Marker' 0x000a8b/0x0000000a 'PWG/HCD Finisher' 0x000a8b/0x0000001e 'PWG/HCD Interface' 0x000a8b/0x00000028 'PWG/HCD Scanner' 0x000a8b/0x00000032
173 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 2 "HCD" loaded from '/usr/local/lib/ipsec/imcvs/imc-hcd.so'
174 1 Andreas Steffen
</pre>
175 2 Andreas Steffen
176 4 Andreas Steffen
The VPN client loads the definition for the IPsec connection to the VPN gateway
177 2 Andreas Steffen
<pre>
178 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[LIB] loaded plugins: charon aes des sha1 sha2 md5 pem pkcs1 gmp random nonce x509 curl revocation hmac stroke kernel-netlink socket-default eap-identity eap-md5 eap-ttls eap-tnc tnc-imc tnc-tnccs tnccs-20 updown
179 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[JOB] spawning 16 worker threads
180 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 05[CFG] received stroke: add connection 'home'
181 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 05[CFG] added configuration 'home'
182 2 Andreas Steffen
</pre>
183 2 Andreas Steffen
184 5 Andreas Steffen
The VPN client *carol* starts the IKEv2 negotiation with the VPN gateway *moon*. The user authentication and the subsequent PT-EAP setup takes place with the RADIUS server *alice* located behind the VPN gateway.
185 2 Andreas Steffen
<pre>
186 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 10[CFG] received stroke: initiate 'home'
187 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[IKE] initiating IKE_SA home[1] to 192.168.0.1
188 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[ENC] generating IKE_SA_INIT request 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) N(HASH_ALG) ]
189 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[NET] sending packet: from 192.168.0.100[500] to 192.168.0.1[500] (692 bytes)
190 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[NET] received packet: from 192.168.0.1[500] to 192.168.0.100[500] (448 bytes)
191 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[ENC] parsed IKE_SA_INIT response 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) N(HASH_ALG) ]
192 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[IKE] sending cert request for "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
193 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[IKE] establishing CHILD_SA home
194 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[ENC] generating IKE_AUTH request 1 [ IDi N(INIT_CONTACT) CERTREQ IDr SA TSi TSr N(MOBIKE_SUP) N(ADD_6_ADDR) N(EAP_ONLY) ]
195 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (412 bytes)
196 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1452 bytes)
197 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] parsed IKE_AUTH response 1 [ IDr CERT AUTH EAP/REQ/ID ]
198 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] received end entity cert "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
199 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using certificate "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
200 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using trusted ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
201 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG] checking certificate status of "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
202 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   fetching crl from 'http://crl.strongswan.org/strongswan.crl' ...
203 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using trusted certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
204 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   crl correctly signed by "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
205 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   crl is valid: until Sep 03 17:23:39 2015
206 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG] certificate status is good
207 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   reached self-signed root ca with a path length of 0
208 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] authentication of 'moon.strongswan.org' with RSA_EMSA_PKCS1_SHA256 successful
209 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] server requested EAP_IDENTITY (id 0x00), sending 'carol'
210 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] generating IKE_AUTH request 2 [ EAP/RES/ID ]
211 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
212 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
213 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] parsed IKE_AUTH response 2 [ EAP/REQ/TTLS ]
214 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IKE] server requested EAP_TTLS authentication (id 0xCA)
215 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[TLS] EAP_TTLS version is v0
216 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] generating IKE_AUTH request 3 [ EAP/RES/TTLS ]
217 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (172 bytes)
218 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1100 bytes)
219 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[ENC] parsed IKE_AUTH response 3 [ EAP/REQ/TTLS ]
220 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[ENC] generating IKE_AUTH request 4 [ EAP/RES/TTLS ]
221 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
222 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1084 bytes)
223 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[ENC] parsed IKE_AUTH response 4 [ EAP/REQ/TTLS ]
224 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] negotiated TLS 1.2 using suite TLS_DHE_RSA_WITH_AES_128_CBC_SHA
225 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] received TLS server certificate 'C=CH, O=Linux strongSwan, CN=aaa.strongswan.org'
226 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using certificate "C=CH, O=Linux strongSwan, CN=aaa.strongswan.org"
227 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using trusted ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
228 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG] checking certificate status of "C=CH, O=Linux strongSwan, CN=aaa.strongswan.org"
229 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using trusted certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
230 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   crl correctly signed by "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
231 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   crl is valid: until Sep 03 17:23:39 2015
232 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using cached crl
233 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG] certificate status is good
234 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   reached self-signed root ca with a path length of 0
235 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] received TLS cert request for 'C=CH, O=Linux strongSwan, CN=strongSwan Root CA
236 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] no TLS peer certificate found for 'carol', skipping client authentication
237 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[ENC] generating IKE_AUTH request 5 [ EAP/RES/TTLS ]
238 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (428 bytes)
239 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (220 bytes)
240 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[ENC] parsed IKE_AUTH response 5 [ EAP/REQ/TTLS ]
241 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/ID]
242 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] server requested EAP_IDENTITY authentication (id 0x00)
243 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/ID]
244 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[ENC] generating IKE_AUTH request 6 [ EAP/RES/TTLS ]
245 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
246 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (172 bytes)
247 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[ENC] parsed IKE_AUTH response 6 [ EAP/REQ/TTLS ]
248 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/MD5]
249 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] server requested EAP_MD5 authentication (id 0x1B)
250 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/MD5]
251 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[ENC] generating IKE_AUTH request 7 [ EAP/RES/TTLS ]
252 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (172 bytes)
253 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (156 bytes)
254 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[ENC] parsed IKE_AUTH response 7 [ EAP/REQ/TTLS ]
255 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
256 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] server requested EAP_PT_EAP authentication (id 0x33)
257 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TLS] EAP_PT_EAP version is v1
258 10 Andreas Steffen
</pre>
259 2 Andreas Steffen
260 5 Andreas Steffen
THE PB-TNC connection between TNC client and TNC server is established. The maximum size of  a PA-TNC message is limited to 16338 bytes.
261 2 Andreas Steffen
<pre>
262 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] TNC client is handling outbound connection
263 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] assigned TNCCS Connection ID 1
264 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 1 "OS" created a state for IF-TNCCS 2.0 Connection ID 1: +long +excl -soh
265 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   over IF-T for Tunneled EAP 2.0 with maximum PA-TNC message size of 16338 bytes
266 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 2 "HCD" created a state for IF-TNCCS 2.0 Connection ID 1: +long +excl -soh
267 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   over IF-T for Tunneled EAP 2.0 with maximum PA-TNC message size of 16338 bytes
268 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 1 "OS" changed state of Connection ID 1 to 'Handshake'
269 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 2 "HCD" changed state of Connection ID 1 to 'Handshake'
270 2 Andreas Steffen
</pre>
271 1 Andreas Steffen
272 6 Andreas Steffen
The OS IMC retrieves information on the operating system
273 2 Andreas Steffen
<pre>
274 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] operating system numeric version is 1.0
275 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] last boot: Aug 04 17:24:00 UTC 2015, 15 s ago
276 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IPv4 forwarding is disabled
277 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] factory default password is enabled
278 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] device ID is 79433e32cfc1d0d3e7a637c954f0870e
279 2 Andreas Steffen
</pre>
280 1 Andreas Steffen
281 6 Andreas Steffen
The OS IMC is sending operating system information using IETF standard attributes
282 2 Andreas Steffen
<pre>
283 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xfbbcb9bd
284 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Product Information' 0x000000/0x00000002
285 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/String Version' 0x000000/0x00000004
286 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Numeric Version' 0x000000/0x00000003
287 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Operational Status' 0x000000/0x00000005
288 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Forwarding Enabled' 0x000000/0x0000000b
289 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Factory Default Password Enabled' 0x000000/0x0000000c
290 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'ITA-HSR/Device ID' 0x00902a/0x00000008
291 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 197 bytes @ 0x7b0b70
292 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 FB BC B9 BD 00 00 00 00 00 00 00 02  ................
293 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 1F 00 00 00 00 00 73 74 72 6F 6E 67 50  .........strongP
294 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   32: 72 69 6E 74 20 4F 53 00 00 00 00 00 00 00 04 00  rint OS.........
295 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   48: 00 00 12 03 31 2E 30 00 00 00 00 00 00 00 00 00  ....1.0.........
296 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   64: 03 00 00 00 1C 00 00 00 01 00 00 00 00 00 00 00  ................
297 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   80: 00 00 00 00 00 00 00 00 00 00 00 00 05 00 00 00  ................
298 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   96: 24 03 01 00 00 32 30 31 35 2D 30 38 2D 30 34 54  $....2015-08-04T
299 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  112: 31 37 3A 32 34 3A 30 30 5A 00 00 00 00 00 00 00  17:24:00Z.......
300 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  128: 0B 00 00 00 10 00 00 00 00 00 00 00 00 00 00 00  ................
301 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  144: 0C 00 00 00 10 00 00 00 01 00 00 90 2A 00 00 00  ............*...
302 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  160: 08 00 00 00 2C 37 39 34 33 33 65 33 32 63 66 63  ....,79433e32cfc
303 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  176: 31 64 30 64 33 65 37 61 36 33 37 63 39 35 34 66  1d0d3e7a637c954f
304 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  192: 30 38 37 30 65                                   0870e
305 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'IETF/Operating System' 0x000000/0x00000001
306 2 Andreas Steffen
</pre>
307 1 Andreas Steffen
308 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD System. Since _push_info = no_ was set in the *imc-hcd* plugin section of _strongswan.conf_ no large
309 8 Andreas Steffen
_Firmware_, _UserApplication_ or _ResidentApplication_ quadruples are sent without an explict attribute request from the HCD IMV.
310 2 Andreas Steffen
<pre>
311 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD System
312 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
313 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD DefaultPasswordEnabled: yes
314 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD ForwardingEnabled: disabled
315 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD MachineTypeModel: strongPrint Laser X.509a
316 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD PSTNFaxEnabled: yes
317 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD TimeSource: 0.ch.pool.ntp.org
318 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD VendorName: ITA-HSR
319 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD VendorSMICode: 0x00902a (36906)
320 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD UserApplicationEnabled: yes
321 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD UserApplicationPersistenceEnabled: no
322 1 Andreas Steffen
</pre>
323 2 Andreas Steffen
324 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD System
325 8 Andreas Steffen
<pre>
326 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x7add7208
327 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
328 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD DefaultPasswordEnabled' 0x000a8b/0x00000014
329 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD ForwardingEnabled' 0x000a8b/0x00000016
330 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD MachineTypeModel' 0x000a8b/0x00000002
331 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD PSTNFaxEnabled' 0x000a8b/0x00000028
332 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD TimeSource' 0x000a8b/0x00000032
333 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD VendorName' 0x000a8b/0x00000003
334 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD VendorSMICode' 0x000a8b/0x00000004
335 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationEnabled' 0x000a8b/0x00000068
336 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPersistenceEnabled' 0x000a8b/0x00000069
337 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 202 bytes @ 0x7b2c70
338 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 7A DD 72 08 00 00 0A 8B 00 00 00 01  ....z.r.........
339 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E 00 00 0A 8B 00 00 00 14 00 00  ....en..........
340 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   32: 00 10 00 00 00 01 00 00 0A 8B 00 00 00 16 00 00  ................
341 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   48: 00 10 00 00 00 00 00 00 0A 8B 00 00 00 02 00 00  ................
342 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   64: 00 24 73 74 72 6F 6E 67 50 72 69 6E 74 20 4C 61  .$strongPrint La
343 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   80: 73 65 72 20 58 2E 35 30 39 61 00 00 0A 8B 00 00  ser X.509a......
344 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   96: 00 28 00 00 00 10 00 00 00 01 00 00 0A 8B 00 00  .(..............
345 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  112: 00 32 00 00 00 1D 30 2E 63 68 2E 70 6F 6F 6C 2E  .2....0.ch.pool.
346 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  128: 6E 74 70 2E 6F 72 67 00 00 0A 8B 00 00 00 03 00  ntp.org.........
347 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  144: 00 00 13 49 54 41 2D 48 53 52 00 00 0A 8B 00 00  ...ITA-HSR......
348 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  160: 00 04 00 00 00 10 00 00 90 2A 00 00 0A 8B 00 00  .........*......
349 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  176: 00 68 00 00 00 10 00 00 00 01 00 00 0A 8B 00 00  .h..............
350 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  192: 00 69 00 00 00 10 00 00 00 00                    .i........
351 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
352 2 Andreas Steffen
</pre>
353 1 Andreas Steffen
354 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Console
355 2 Andreas Steffen
<pre>
356 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Console
357 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: ru
358 2 Andreas Steffen
</pre>
359 1 Andreas Steffen
360 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Console
361 2 Andreas Steffen
<pre>
362 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xc08b37ea
363 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
364 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7a6de0
365 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 C0 8B 37 EA 00 00 0A 8B 00 00 00 01  ......7.........
366 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 72 75                                ....ru
367 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
368 5 Andreas Steffen
</pre>
369 1 Andreas Steffen
370 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Marker
371 5 Andreas Steffen
<pre>
372 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Marker
373 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: fr
374 5 Andreas Steffen
</pre>
375 1 Andreas Steffen
376 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Marker
377 5 Andreas Steffen
<pre>
378 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xba97337a
379 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
380 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b3e20
381 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 BA 97 33 7A 00 00 0A 8B 00 00 00 01  ......3z........
382 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 66 72                                ....fr
383 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
384 2 Andreas Steffen
</pre>
385 1 Andreas Steffen
386 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Finisher
387 2 Andreas Steffen
<pre>
388 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Finisher
389 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: de
390 2 Andreas Steffen
</pre>
391 1 Andreas Steffen
392 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Finisher
393 2 Andreas Steffen
<pre>
394 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x649b1045
395 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
396 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b1320
397 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 64 9B 10 45 00 00 0A 8B 00 00 00 01  ....d..E........
398 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 64 65                                ....de
399 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
400 2 Andreas Steffen
</pre>
401 1 Andreas Steffen
402 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Interface
403 2 Andreas Steffen
<pre>
404 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Interface
405 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
406 1 Andreas Steffen
</pre>
407 1 Andreas Steffen
408 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Interface
409 8 Andreas Steffen
<pre>
410 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xa55e5dcb
411 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
412 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b2a10
413 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 A5 5E 5D CB 00 00 0A 8B 00 00 00 01  .....^].........
414 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E                                ....en
415 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
416 1 Andreas Steffen
</pre>
417 1 Andreas Steffen
418 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Scanner
419 1 Andreas Steffen
<pre>
420 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Scanner
421 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
422 1 Andreas Steffen
</pre>
423 1 Andreas Steffen
424 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Scanner
425 1 Andreas Steffen
<pre>
426 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x9b793f7a
427 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
428 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b0a90
429 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 9B 79 3F 7A 00 00 0A 8B 00 00 00 01  .....y?z........
430 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E                                ....en
431 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
432 1 Andreas Steffen
</pre>
433 2 Andreas Steffen
434 1 Andreas Steffen
The first Client Data PB-TNC batch is sent to the TNC server
435 1 Andreas Steffen
<pre>
436 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] PB-TNC state transition from 'Init' to 'Server Working'
437 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-TNC CDATA batch
438 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-Language-Preference message
439 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
440 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
441 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
442 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
443 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
444 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
445 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
446 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] sending PB-TNC CDATA batch (716 bytes) for Connection ID 1
447 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
448 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[ENC] generating IKE_AUTH request 8 [ EAP/RES/TTLS ]
449 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (876 bytes)
450 1 Andreas Steffen
</pre>
451 1 Andreas Steffen
452 11 Andreas Steffen
In response a Server Data PB-TNC batch is received
453 2 Andreas Steffen
<pre>
454 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (748 bytes)
455 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[ENC] parsed IKE_AUTH response 8 [ EAP/REQ/TTLS ]
456 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
457 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] received TNCCS batch (602 bytes)
458 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] TNC client is handling inbound connection
459 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PB-TNC SDATA batch for Connection ID 1
460 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] PB-TNC state transition from 'Server Working' to 'Client Working'
461 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing TCG/PB-PDP-Referral message (42 bytes)
462 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (112 bytes)
463 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
464 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
465 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
466 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
467 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
468 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] PDP server 'aaa.strongswan.org' is listening on port 271
469 1 Andreas Steffen
</pre>
470 1 Andreas Steffen
471 11 Andreas Steffen
The first PA-TNC message of subtype PWG/HCD System contains attribute requests for missing attributes
472 2 Andreas Steffen
<pre>
473 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
474 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
475 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 88 bytes @ 0x7b4ce0
476 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 86 16 79 E2 00 00 55 97 00 00 00 21  ......y...U....!
477 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
478 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 3C 00 00 0A 8B 00 00 00 15  .......<........
479 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 3C 00 00 0A 8B 00 00 00 50  .......<.......P
480 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 00 00 0A 8B 00 00 00 64 00 00 0A 8B 00 00 00 C8  .......d........
481 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 00 00 0A 8B 00 00 00 C9                          ........
482 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0x861679e2
483 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
484 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
485 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000015 'PWG/HCD FirewallSetting'
486 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
487 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
488 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
489 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x000000c8 'PWG/HCD CertificationState'
490 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x000000c9 'PWG/HCD ConfigurationState'
491 1 Andreas Steffen
</pre>
492 1 Andreas Steffen
493 2 Andreas Steffen
<pre>
494 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD System' 0x000a8b/0x00000005
495 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
496 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
497 1 Andreas Steffen
</pre>
498 1 Andreas Steffen
499 2 Andreas Steffen
<pre>
500 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- fw-1 ---
501 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareName: Firmware ABC
502 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwarePatches:
503 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2014-05-08#015
504 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] upgrade 2014-08-16#015
505 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2015-3-22#015
506 1 Andreas Steffen
</pre>
507 1 Andreas Steffen
508 1 Andreas Steffen
<pre>
509 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- fw-2 ---
510 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareName: Firmware UVW
511 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwarePatches: 
512 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareStringVersion: 13.8.5
513 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareVersion: 00:00:00:0d:00:00:00:08:00:00:00:05:00:00:00:00
514 1 Andreas Steffen
</pre>
515 1 Andreas Steffen
516 1 Andreas Steffen
<pre>
517 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- resident-app-1 ---
518 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationName: Resident App XYZ
519 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationPatches:
520 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] xmas patch 2014-12-24#015
521 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] service patch 2015-05-22#015
522 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationStringVersion: 2.5
523 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationVersion: 00:00:00:02:00:00:00:05:00:00:00:00:00:00:00:00
524 1 Andreas Steffen
</pre>
525 1 Andreas Steffen
526 2 Andreas Steffen
<pre>
527 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-1 ---
528 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: My Java Photo App
529 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
530 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 5.2.3.8.1
531 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:05:00:00:00:02:00:00:00:03:00:08:00:01
532 1 Andreas Steffen
</pre>
533 1 Andreas Steffen
534 2 Andreas Steffen
<pre>
535 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-2 ---
536 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: Print Your Dinosaur!
537 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
538 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 1.0
539 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:01:00:00:00:00:00:00:00:00:00:00:00:00
540 1 Andreas Steffen
</pre>
541 1 Andreas Steffen
542 2 Andreas Steffen
<pre>
543 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-3 ---
544 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: Label Everything App
545 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
546 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 7.5.8.2.3
547 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:07:00:00:00:05:00:00:00:08:00:02:00:03
548 1 Andreas Steffen
</pre>
549 1 Andreas Steffen
550 2 Andreas Steffen
<pre>
551 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD CertificationState: => 32 bytes @ 0x7b7d50
552 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F  ................
553 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F  ................
554 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ConfigurationState: => 48 bytes @ 0x7b96f0
555 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: F0 F1 F2 F3 F4 F5 F6 F7 F8 F9 FA FB FC FD FE FF  ................
556 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: E0 E1 E2 E3 E4 E5 E6 E7 E8 E9 EA EB EC ED EE EF  ................
557 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: D0 D1 D2 D3 D4 D5 D6 D7 D8 D9 DA DB DC DD DE DF  ................
558 1 Andreas Steffen
</pre>
559 1 Andreas Steffen
560 2 Andreas Steffen
<pre>
561 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0xc1018e8f
562 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
563 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
564 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
565 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
566 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
567 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
568 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
569 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
570 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
571 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationName' 0x000a8b/0x00000050
572 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationPatches' 0x000a8b/0x00000051
573 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationStringVersion' 0x000a8b/0x00000052
574 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationVersion' 0x000a8b/0x00000053
575 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
576 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
577 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
578 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
579 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
580 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
581 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
582 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
583 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
584 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
585 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
586 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
587 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD CertificationState' 0x000a8b/0x000000c8
588 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ConfigurationState' 0x000a8b/0x000000c9
589 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 770 bytes @ 0x7becc0
590 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 C1 01 8E 8F 00 00 55 97 00 00 00 22  ..........U...."
591 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
592 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 3C 00 00 00 18 46 69 72 6D 77 61 72 65  ...<....Firmware
593 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 20 41 42 43 00 00 0A 8B 00 00 00 3D 00 00 00 55   ABC.......=...U
594 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 73 65 63 75 72 69 74 79 20 70 61 74 63 68 20 32  security patch 2
595 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 30 31 34 2D 30 35 2D 30 38 0D 0A 75 70 67 72 61  014-05-08..upgra
596 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   96: 64 65 20 32 30 31 34 2D 30 38 2D 31 36 0D 0A 73  de 2014-08-16..s
597 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  112: 65 63 75 72 69 74 79 20 70 61 74 63 68 20 32 30  ecurity patch 20
598 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  128: 31 35 2D 33 2D 32 32 0D 0A 00 00 0A 8B 00 00 00  15-3-22.........
599 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  144: 3E 00 00 00 11 31 2E 30 2E 37 00 00 0A 8B 00 00  >....1.0.7......
600 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  160: 00 3F 00 00 00 1C 00 00 00 01 00 00 00 00 00 00  .?..............
601 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  176: 00 07 00 00 00 00 00 00 0A 8B 00 00 00 3C 00 00  .............<..
602 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  192: 00 18 46 69 72 6D 77 61 72 65 20 55 56 57 00 00  ..Firmware UVW..
603 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  208: 0A 8B 00 00 00 3D 00 00 00 0C 00 00 0A 8B 00 00  .....=..........
604 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  224: 00 3E 00 00 00 12 31 33 2E 38 2E 35 00 00 0A 8B  .>....13.8.5....
605 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  240: 00 00 00 3F 00 00 00 1C 00 00 00 0D 00 00 00 08  ...?............
606 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  256: 00 00 00 05 00 00 00 00 00 00 0A 8B 00 00 00 50  ...............P
607 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  272: 00 00 00 1C 52 65 73 69 64 65 6E 74 20 41 70 70  ....Resident App
608 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  288: 20 58 59 5A 00 00 0A 8B 00 00 00 51 00 00 00 3D   XYZ.......Q...=
609 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  304: 78 6D 61 73 20 70 61 74 63 68 20 32 30 31 34 2D  xmas patch 2014-
610 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  320: 31 32 2D 32 34 0D 0A 73 65 72 76 69 63 65 20 70  12-24..service p
611 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  336: 61 74 63 68 20 32 30 31 35 2D 30 35 2D 32 32 0D  atch 2015-05-22.
612 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  352: 0A 00 00 0A 8B 00 00 00 52 00 00 00 0F 32 2E 35  ........R....2.5
613 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  368: 00 00 0A 8B 00 00 00 53 00 00 00 1C 00 00 00 02  .......S........
614 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  384: 00 00 00 05 00 00 00 00 00 00 00 00 00 00 0A 8B  ................
615 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  400: 00 00 00 64 00 00 00 1D 4D 79 20 4A 61 76 61 20  ...d....My Java 
616 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  416: 50 68 6F 74 6F 20 41 70 70 00 00 0A 8B 00 00 00  Photo App.......
617 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  432: 65 00 00 00 0C 00 00 0A 8B 00 00 00 66 00 00 00  e...........f...
618 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  448: 15 35 2E 32 2E 33 2E 38 2E 31 00 00 0A 8B 00 00  .5.2.3.8.1......
619 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  464: 00 67 00 00 00 1C 00 00 00 05 00 00 00 02 00 00  .g..............
620 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  480: 00 03 00 08 00 01 00 00 0A 8B 00 00 00 64 00 00  .............d..
621 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  496: 00 20 50 72 69 6E 74 20 59 6F 75 72 20 44 69 6E  . Print Your Din
622 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  512: 6F 73 61 75 72 21 00 00 0A 8B 00 00 00 65 00 00  osaur!.......e..
623 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  528: 00 0C 00 00 0A 8B 00 00 00 66 00 00 00 0F 31 2E  .........f....1.
624 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  544: 30 00 00 0A 8B 00 00 00 67 00 00 00 1C 00 00 00  0.......g.......
625 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  560: 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0A  ................
626 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  576: 8B 00 00 00 64 00 00 00 20 4C 61 62 65 6C 20 45  ....d... Label E
627 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  592: 76 65 72 79 74 68 69 6E 67 20 41 70 70 00 00 0A  verything App...
628 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  608: 8B 00 00 00 65 00 00 00 0C 00 00 0A 8B 00 00 00  ....e...........
629 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  624: 66 00 00 00 15 37 2E 35 2E 38 2E 32 2E 33 00 00  f....7.5.8.2.3..
630 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  640: 0A 8B 00 00 00 67 00 00 00 1C 00 00 00 07 00 00  .....g..........
631 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  656: 00 05 00 00 00 08 00 02 00 03 00 00 0A 8B 00 00  ................
632 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  672: 00 C8 00 00 00 2C 00 01 02 03 04 05 06 07 08 09  .....,..........
633 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  688: 0A 0B 0C 0D 0E 0F 10 11 12 13 14 15 16 17 18 19  ................
634 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  704: 1A 1B 1C 1D 1E 1F 00 00 0A 8B 00 00 00 C9 00 00  ................
635 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  720: 00 3C F0 F1 F2 F3 F4 F5 F6 F7 F8 F9 FA FB FC FD  .<..............
636 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  736: FE FF E0 E1 E2 E3 E4 E5 E6 E7 E8 E9 EA EB EC ED  ................
637 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  752: EE EF D0 D1 D2 D3 D4 D5 D6 D7 D8 D9 DA DB DC DD  ................
638 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  768: DE DF                                            ..
639 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
640 1 Andreas Steffen
</pre>
641 2 Andreas Steffen
642 11 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Console also contains attribute requests for missing attributes
643 2 Andreas Steffen
<pre>
644 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] handling PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
645 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
646 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] => 64 bytes @ 0x7b6af0
647 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 44 55 6E 76 00 00 55 97 00 00 00 21  ....DUnv..U....!
648 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
649 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
650 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
651 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC message with ID 0x44556e76
652 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
653 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
654 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
655 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
656 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
657 2 Andreas Steffen
</pre>
658 2 Andreas Steffen
659 2 Andreas Steffen
<pre>
660 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
661 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
662 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   lowered maximum segment size to 16294 bytes
663 2 Andreas Steffen
</pre>
664 2 Andreas Steffen
665 2 Andreas Steffen
<pre>
666 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC message with ID 0x10f5116c
667 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
668 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] created PA-TNC message: => 28 bytes @ 0x7b54d0
669 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 10 F5 11 6C 00 00 55 97 00 00 00 22  .......l..U...."
670 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
671 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
672 3 Andreas Steffen
</pre>
673 3 Andreas Steffen
674 11 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Marker also contains attribute requests for missing attributes
675 1 Andreas Steffen
<pre>
676 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] handling PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
677 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
678 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] => 64 bytes @ 0x7b37d0
679 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 CE 8C F5 6C 00 00 55 97 00 00 00 21  .......l..U....!
680 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
681 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
682 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
683 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC message with ID 0xce8cf56c
684 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
685 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
686 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
687 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
688 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
689 3 Andreas Steffen
</pre>
690 3 Andreas Steffen
691 1 Andreas Steffen
<pre>
692 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
693 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
694 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   lowered maximum segment size to 16294 bytes
695 3 Andreas Steffen
</pre>
696 3 Andreas Steffen
697 1 Andreas Steffen
<pre>
698 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC message with ID 0xcf94b8d7
699 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
700 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] created PA-TNC message: => 28 bytes @ 0x7b67e0
701 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 CF 94 B8 D7 00 00 55 97 00 00 00 22  ..........U...."
702 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
703 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
704 3 Andreas Steffen
</pre>
705 3 Andreas Steffen
706 1 Andreas Steffen
<pre>
707 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] handling PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
708 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
709 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] => 64 bytes @ 0x7b3c90
710 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 1E FC 7B AE 00 00 55 97 00 00 00 21  ......{...U....!
711 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
712 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
713 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
714 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC message with ID 0x1efc7bae
715 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
716 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
717 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
718 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
719 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
720 3 Andreas Steffen
</pre>
721 3 Andreas Steffen
722 1 Andreas Steffen
<pre>
723 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
724 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
725 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   lowered maximum segment size to 16294 bytes
726 3 Andreas Steffen
</pre>
727 3 Andreas Steffen
728 1 Andreas Steffen
<pre>
729 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC message with ID 0x19f5d207
730 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
731 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] created PA-TNC message: => 28 bytes @ 0x7b4980
732 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 19 F5 D2 07 00 00 55 97 00 00 00 22  ..........U...."
733 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
734 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
735 3 Andreas Steffen
</pre>
736 3 Andreas Steffen
737 1 Andreas Steffen
<pre>
738 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] handling PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
739 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
740 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] => 64 bytes @ 0x7b3f30
741 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 7D 20 74 EA 00 00 55 97 00 00 00 21  ....} t...U....!
742 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
743 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
744 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
745 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC message with ID 0x7d2074ea
746 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
747 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
748 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
749 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
750 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
751 3 Andreas Steffen
</pre>
752 3 Andreas Steffen
753 1 Andreas Steffen
<pre>
754 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
755 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
756 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   lowered maximum segment size to 16294 bytes
757 3 Andreas Steffen
</pre>
758 3 Andreas Steffen
759 1 Andreas Steffen
<pre>
760 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] --- resident-app-if ---
761 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD ResidentApplicationName: Resident App Interface+
762 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD ResidentApplicationPatches: service patch 2015-02-09
763 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD ResidentApplicationStringVersion: 2.5
764 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD ResidentApplicationVersion: 00:00:00:02:00:00:00:05:00:00:00:00:00:00:00:00
765 3 Andreas Steffen
</pre>
766 3 Andreas Steffen
767 1 Andreas Steffen
<pre>
768 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC message with ID 0x7d45c764
769 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
770 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationName' 0x000a8b/0x00000050
771 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationPatches' 0x000a8b/0x00000051
772 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationStringVersion' 0x000a8b/0x00000052
773 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationVersion' 0x000a8b/0x00000053
774 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] created PA-TNC message: => 142 bytes @ 0x7b7960
775 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 7D 45 C7 64 00 00 55 97 00 00 00 22  ....}E.d..U...."
776 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
777 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   32: 00 00 00 50 00 00 00 23 52 65 73 69 64 65 6E 74  ...P...#Resident
778 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   48: 20 41 70 70 20 49 6E 74 65 72 66 61 63 65 2B 00   App Interface+.
779 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   64: 00 0A 8B 00 00 00 51 00 00 00 24 73 65 72 76 69  ......Q...$servi
780 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   80: 63 65 20 70 61 74 63 68 20 32 30 31 35 2D 30 32  ce patch 2015-02
781 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   96: 2D 30 39 00 00 0A 8B 00 00 00 52 00 00 00 0F 32  -09.......R....2
782 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  112: 2E 35 00 00 0A 8B 00 00 00 53 00 00 00 1C 00 00  .5.......S......
783 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  128: 00 02 00 00 00 05 00 00 00 00 00 00 00 00        ..............
784 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
785 3 Andreas Steffen
</pre>
786 3 Andreas Steffen
787 1 Andreas Steffen
<pre>
788 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] handling PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
789 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
790 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] => 64 bytes @ 0x7bccf0
791 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 B9 C7 45 3D 00 00 55 97 00 00 00 21  ......E=..U....!
792 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
793 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
794 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
795 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC message with ID 0xb9c7453d
796 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
797 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
798 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
799 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
800 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
801 3 Andreas Steffen
</pre>
802 3 Andreas Steffen
803 1 Andreas Steffen
<pre>
804 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
805 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
806 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   lowered maximum segment size to 16294 bytes
807 3 Andreas Steffen
</pre>
808 3 Andreas Steffen
809 1 Andreas Steffen
<pre>
810 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] --- fw-scanner ---
811 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD FirmwareName: Scanner Firmware
812 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD FirmwarePatches: security patch 2013-08-11
813 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] security patch 2015-5-30
814 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD FirmwareStringVersion: 2.5.3
815 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD FirmwareVersion: 00:00:00:02:00:00:00:05:00:00:00:03:00:00:00:00
816 3 Andreas Steffen
</pre>
817 3 Andreas Steffen
818 1 Andreas Steffen
<pre>
819 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] --- user-app-scanner ---
820 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD UserApplicationName: EasyScan
821 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD UserApplicationPatches: 
822 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD UserApplicationStringVersion: 2.2.3.5.7
823 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   HCD UserApplicationVersion: 00:00:00:02:00:00:00:02:00:00:00:03:00:05:00:07
824 3 Andreas Steffen
</pre>
825 3 Andreas Steffen
826 1 Andreas Steffen
<pre>
827 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC message with ID 0x56f7464e
828 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
829 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
830 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
831 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
832 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
833 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
834 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
835 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
836 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
837 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC] created PA-TNC message: => 244 bytes @ 0x7bd5e0
838 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]    0: 01 00 00 00 56 F7 46 4E 00 00 55 97 00 00 00 22  ....V.FN..U...."
839 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
840 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   32: 00 00 00 3C 00 00 00 1C 53 63 61 6E 6E 65 72 20  ...<....Scanner 
841 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   48: 46 69 72 6D 77 61 72 65 00 00 0A 8B 00 00 00 3D  Firmware.......=
842 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   64: 00 00 00 3E 73 65 63 75 72 69 74 79 20 70 61 74  ...>security pat
843 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   80: 63 68 20 32 30 31 33 2D 30 38 2D 31 31 0A 73 65  ch 2013-08-11.se
844 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]   96: 63 75 72 69 74 79 20 70 61 74 63 68 20 32 30 31  curity patch 201
845 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  112: 35 2D 35 2D 33 30 00 00 0A 8B 00 00 00 3E 00 00  5-5-30.......>..
846 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  128: 00 11 32 2E 35 2E 33 00 00 0A 8B 00 00 00 3F 00  ..2.5.3.......?.
847 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  144: 00 00 1C 00 00 00 02 00 00 00 05 00 00 00 03 00  ................
848 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  160: 00 00 00 00 00 0A 8B 00 00 00 64 00 00 00 14 45  ..........d....E
849 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  176: 61 73 79 53 63 61 6E 00 00 0A 8B 00 00 00 65 00  asyScan.......e.
850 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  192: 00 00 0C 00 00 0A 8B 00 00 00 66 00 00 00 15 32  ..........f....2
851 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  208: 2E 32 2E 33 2E 35 2E 37 00 00 0A 8B 00 00 00 67  .2.3.5.7.......g
852 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  224: 00 00 00 1C 00 00 00 02 00 00 00 02 00 00 00 03  ................
853 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IMC]  240: 00 05 00 07                                      ....
854 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
855 3 Andreas Steffen
</pre>
856 3 Andreas Steffen
857 1 Andreas Steffen
<pre>
858 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] TNC client is handling outbound connection
859 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] PB-TNC state transition from 'Client Working' to 'Server Working'
860 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] creating PB-TNC CDATA batch
861 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] adding IETF/PB-PA message
862 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] adding IETF/PB-PA message
863 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] adding IETF/PB-PA message
864 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] adding IETF/PB-PA message
865 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] adding IETF/PB-PA message
866 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] adding IETF/PB-PA message
867 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[TNC] sending PB-TNC CDATA batch (1385 bytes) for Connection ID 1
868 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
869 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[ENC] generating IKE_AUTH request 9 [ EAP/RES/TTLS ]
870 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 09[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (1100 bytes)
871 3 Andreas Steffen
</pre>
872 3 Andreas Steffen
873 1 Andreas Steffen
<pre>
874 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 11[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
875 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 11[ENC] parsed IKE_AUTH response 9 [ EAP/REQ/TTLS ]
876 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 11[ENC] generating IKE_AUTH request 10 [ EAP/RES/TTLS ]
877 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 11[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (508 bytes)
878 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (156 bytes)
879 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[ENC] parsed IKE_AUTH response 10 [ EAP/REQ/TTLS ]
880 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
881 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] received TNCCS batch (8 bytes)
882 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] TNC client is handling inbound connection
883 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] processing PB-TNC SDATA batch for Connection ID 1
884 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] PB-TNC state transition from 'Server Working' to 'Client Working'
885 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] TNC client is handling outbound connection
886 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] no client data to send, sending empty PB-TNC CDATA batch
887 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] PB-TNC state transition from 'Client Working' to 'Server Working'
888 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] creating PB-TNC CDATA batch
889 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[TNC] sending PB-TNC CDATA batch (8 bytes) for Connection ID 1
890 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
891 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[ENC] generating IKE_AUTH request 11 [ EAP/RES/TTLS ]
892 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 03[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
893 3 Andreas Steffen
</pre>
894 3 Andreas Steffen
895 1 Andreas Steffen
<pre>
896 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (188 bytes)
897 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[ENC] parsed IKE_AUTH response 11 [ EAP/REQ/TTLS ]
898 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
899 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] received TNCCS batch (40 bytes)
900 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] TNC client is handling inbound connection
901 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] processing PB-TNC RESULT batch for Connection ID 1
902 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] PB-TNC state transition from 'Server Working' to 'Decided'
903 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] processing IETF/PB-Assessment-Result message (16 bytes)
904 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] processing IETF/PB-Access-Recommendation message (16 bytes)
905 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] PB-TNC assessment result is 'don't know'
906 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] PB-TNC access recommendation is 'Access Denied'
907 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[IMC] IMC 1 "OS" changed state of Connection ID 1 to 'None'
908 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[IMC] IMC 2 "HCD" changed state of Connection ID 1 to 'None'
909 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] TNC client is handling outbound connection
910 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] PB-TNC state transition from 'Decided' to 'End'
911 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] creating PB-TNC CLOSE batch
912 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[TNC] sending PB-TNC CLOSE batch (8 bytes) for Connection ID 1
913 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
914 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[ENC] generating IKE_AUTH request 12 [ EAP/RES/TTLS ]
915 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 12[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
916 3 Andreas Steffen
</pre>
917 3 Andreas Steffen
918 1 Andreas Steffen
<pre>
919 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (140 bytes)
920 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 13[ENC] parsed IKE_AUTH response 12 [ EAP/REQ/TTLS ]
921 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 13[TLS] received TLS close notify
922 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 13[TLS] sending TLS close notify
923 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 13[ENC] generating IKE_AUTH request 13 [ EAP/RES/TTLS ]
924 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 13[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (140 bytes)
925 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
926 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[ENC] parsed IKE_AUTH response 13 [ EAP/FAIL ]
927 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[IKE] received EAP_FAILURE, EAP authentication failed
928 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[ENC] generating INFORMATIONAL request 14 [ N(AUTH_FAILED) ]
929 3 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
930 3 Andreas Steffen
</pre>
931 3 Andreas Steffen
932 1 Andreas Steffen
<pre>
933 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[TNC] TODO: setup PT-TLS connection to aaa.strongswan.org:271
934 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[IMC] IMC 1 "OS" deleted the state of Connection ID 1
935 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[IMC] IMC 2 "HCD" deleted the state of Connection ID 1
936 1 Andreas Steffen
Jul 25 16:12:41 carol charon: 14[TNC] removed TNCCS Connection ID 1
937 1 Andreas Steffen
Jul 25 16:13:25 carol charon: 00[DMN] signal of type SIGINT received. Shutting down
938 1 Andreas Steffen
Jul 25 16:13:25 carol charon: 00[IMC] IMC 2 "HCD" terminated
939 1 Andreas Steffen
Jul 25 16:13:25 carol charon: 00[IMC] IMC 1 "OS" terminated
940 1 Andreas Steffen
Jul 25 16:13:25 carol charon: 00[TNC] removed IETF attributes
941 1 Andreas Steffen
Jul 25 16:13:25 carol charon: 00[TNC] removed ITA-HSR attributes
942 1 Andreas Steffen
Jul 25 16:13:25 carol charon: 00[TNC] removed PWG attributes
943 1 Andreas Steffen
Jul 25 16:13:25 carol charon: 00[TNC] removed TCG attributes
944 1 Andreas Steffen
Jul 25 16:13:25 carol charon: 00[LIB] libimcv terminated
945 1 Andreas Steffen
</pre>