Project

General

Profile

Hardcopy Device Integrity Measurement Collector » History » Version 18

Andreas Steffen, 12.08.2015 22:03

1 14 Andreas Steffen
{{>toc}}
2 14 Andreas Steffen
3 18 Andreas Steffen
4 18 Andreas Steffen
5 3 Andreas Steffen
h1. Hardcopy Device Integrity Measurement Collector
6 1 Andreas Steffen
7 14 Andreas Steffen
h2. Configuration of HCD IMC
8 14 Andreas Steffen
9 4 Andreas Steffen
The PA-TNC attributes of the HCD *carol* are defined in the *libimcv.plugins.imc-hcd* section of /etc/strongswan.conf:
10 1 Andreas Steffen
<pre>
11 1 Andreas Steffen
charon {
12 1 Andreas Steffen
  load = aes des sha1 sha2 md5 pem pkcs1 gmp random nonce x509 curl revocation hmac stroke kernel-netlink socket-default eap-identity eap-md5 eap-ttls eap-tnc tnc-imc tnc-tnccs tnccs-20 updown
13 1 Andreas Steffen
14 1 Andreas Steffen
  plugins {
15 1 Andreas Steffen
    eap-ttls {
16 1 Andreas Steffen
      max_message_count = 0
17 1 Andreas Steffen
    }
18 1 Andreas Steffen
    eap-tnc {
19 1 Andreas Steffen
      max_message_count = 0
20 1 Andreas Steffen
    }
21 1 Andreas Steffen
    tnccs-20 {
22 1 Andreas Steffen
      max_batch_size = 16370
23 1 Andreas Steffen
      max_message_size = 16338
24 1 Andreas Steffen
    }
25 1 Andreas Steffen
  }
26 1 Andreas Steffen
}
27 1 Andreas Steffen
28 1 Andreas Steffen
libimcv {
29 1 Andreas Steffen
  os_info {
30 1 Andreas Steffen
    name = strongPrint OS
31 1 Andreas Steffen
    version = 1.0
32 1 Andreas Steffen
    default_password_enabled = yes
33 1 Andreas Steffen
  }
34 1 Andreas Steffen
35 1 Andreas Steffen
  plugins {
36 1 Andreas Steffen
    imc-hcd {
37 1 Andreas Steffen
      push_info = no 
38 1 Andreas Steffen
      subtypes {
39 1 Andreas Steffen
        system {
40 1 Andreas Steffen
          attributes_natural_language = en
41 1 Andreas Steffen
          machine_type_model = strongPrint Laser X.509a
42 1 Andreas Steffen
          vendor_name = ITA-HSR
43 1 Andreas Steffen
          vendor_smi_code = 36906
44 1 Andreas Steffen
          pstn_fax_enabled = yes
45 1 Andreas Steffen
          time_source = 0.ch.pool.ntp.org
46 1 Andreas Steffen
          user_application_enabled = yes
47 1 Andreas Steffen
          user_application_persistence_enabled = no
48 1 Andreas Steffen
49 1 Andreas Steffen
          firmware {
50 16 Andreas Steffen
            fw-1 {
51 1 Andreas Steffen
              name = Firmware ABC 
52 9 Andreas Steffen
              patches = "security patch 2014-05-08\r\nupgrade 2014-08-16\r\nsecurity patch 2015-3-22\r\n"
53 1 Andreas Steffen
              string_version = 1.0.7
54 1 Andreas Steffen
              version = 00000001000000000000000700000000
55 1 Andreas Steffen
            }
56 16 Andreas Steffen
            fw-2 {
57 1 Andreas Steffen
              name = Firmware UVW 
58 1 Andreas Steffen
              string_version = 13.8.5
59 1 Andreas Steffen
              version = 0000000D000000080000000500000000
60 1 Andreas Steffen
            }
61 1 Andreas Steffen
          }
62 1 Andreas Steffen
63 1 Andreas Steffen
          resident_application {
64 1 Andreas Steffen
            resident-app-1 {
65 1 Andreas Steffen
              name = Resident App XYZ 
66 9 Andreas Steffen
              patches = "xmas patch 2014-12-24\r\nservice patch 2015-05-22\r\n"
67 1 Andreas Steffen
              string_version = 2.5
68 1 Andreas Steffen
              version = 00000002000000050000000000000000
69 1 Andreas Steffen
            }
70 1 Andreas Steffen
          }
71 1 Andreas Steffen
72 1 Andreas Steffen
          user_application {
73 1 Andreas Steffen
            user-app-1 {
74 1 Andreas Steffen
              name = My Java Photo App
75 1 Andreas Steffen
              patches =
76 1 Andreas Steffen
              string_version = 5.2.3.8.1
77 1 Andreas Steffen
              version = 00000005000000020000000300080001
78 1 Andreas Steffen
            }
79 1 Andreas Steffen
            user-app-2 {
80 1 Andreas Steffen
              name = Print Your Dinosaur!
81 1 Andreas Steffen
              patches =
82 1 Andreas Steffen
              string_version = 1.0
83 1 Andreas Steffen
              version = 00000001000000000000000000000000
84 1 Andreas Steffen
            }
85 1 Andreas Steffen
            user-app-3 {
86 1 Andreas Steffen
              name = Label Everything App
87 1 Andreas Steffen
              patches =
88 1 Andreas Steffen
              string_version = 7.5.8.2.3
89 9 Andreas Steffen
              version = 00000007000000050000000800020003
90 1 Andreas Steffen
            }
91 1 Andreas Steffen
          }
92 1 Andreas Steffen
93 1 Andreas Steffen
          certification_state = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
94 1 Andreas Steffen
          configuration_state = f0f1f2f3f4f5f6f7f8f9fafbfcfdfeffe0e1e2e3e4e5e6e7e8e9eaebecedeeefd0d1d2d3d4d5d6d7d8d9dadbdcdddedf
95 1 Andreas Steffen
        }
96 1 Andreas Steffen
97 1 Andreas Steffen
        console {
98 1 Andreas Steffen
          attributes_natural_language = ru
99 1 Andreas Steffen
        }
100 1 Andreas Steffen
101 1 Andreas Steffen
        marker {
102 1 Andreas Steffen
          attributes_natural_language = fr
103 1 Andreas Steffen
        }
104 1 Andreas Steffen
105 1 Andreas Steffen
        finisher {
106 1 Andreas Steffen
          attributes_natural_language = de
107 1 Andreas Steffen
        }
108 1 Andreas Steffen
109 1 Andreas Steffen
        interface {
110 1 Andreas Steffen
          attributes_natural_language = en
111 1 Andreas Steffen
 
112 1 Andreas Steffen
          resident_application {
113 17 Andreas Steffen
            resident-app-if {
114 1 Andreas Steffen
              name = Resident App Interface+ 
115 9 Andreas Steffen
              patches = "service patch 2015-02-09\r\n"
116 1 Andreas Steffen
              string_version = 2.5
117 1 Andreas Steffen
              version = 00000002000000050000000000000000
118 1 Andreas Steffen
            }
119 1 Andreas Steffen
          }
120 1 Andreas Steffen
        }
121 1 Andreas Steffen
122 1 Andreas Steffen
        scanner {
123 1 Andreas Steffen
          attributes_natural_language = en
124 1 Andreas Steffen
 
125 1 Andreas Steffen
          firmware {
126 1 Andreas Steffen
            fw-scanner {
127 1 Andreas Steffen
              name = Scanner Firmware 
128 9 Andreas Steffen
              patches = "security patch 2013-08-11\r\nsecurity patch 2015-5-30\r\n"
129 1 Andreas Steffen
              string_version = 2.5.3
130 1 Andreas Steffen
              version = 00000002000000050000000300000000
131 1 Andreas Steffen
            }
132 1 Andreas Steffen
          }
133 1 Andreas Steffen
134 1 Andreas Steffen
          user_application {
135 1 Andreas Steffen
            user-app-scanner {
136 1 Andreas Steffen
              name = EasyScan
137 1 Andreas Steffen
              patches =
138 1 Andreas Steffen
              string_version = 2.2.3.5.7
139 1 Andreas Steffen
              version = 00000002000000020000000300050007
140 1 Andreas Steffen
            }
141 1 Andreas Steffen
          }
142 1 Andreas Steffen
        }
143 1 Andreas Steffen
      }
144 1 Andreas Steffen
    }
145 1 Andreas Steffen
  }
146 1 Andreas Steffen
}
147 1 Andreas Steffen
</pre>
148 1 Andreas Steffen
149 15 Andreas Steffen
h2. Setting up PT-EAP connection from device carol
150 14 Andreas Steffen
151 1 Andreas Steffen
The TNC transport protocol is PT-EAP over IKEv2-EAP. In a first step the IKEv2 charon daemon is started up.
152 1 Andreas Steffen
<pre>
153 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[DMN] Starting IKE charon daemon (strongSwan 5.3.3dr3, Linux 4.1.3, x86_64)
154 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading ca certificates from '/etc/ipsec.d/cacerts'
155 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG]   loaded ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA" from '/etc/ipsec.d/cacerts/strongswanCert.pem'
156 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading aa certificates from '/etc/ipsec.d/aacerts'
157 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading ocsp signer certificates from '/etc/ipsec.d/ocspcerts'
158 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading attribute certificates from '/etc/ipsec.d/acerts'
159 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading crls from '/etc/ipsec.d/crls'
160 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading secrets from '/etc/ipsec.secrets'
161 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG]   loaded EAP secret for carol
162 1 Andreas Steffen
</pre>
163 2 Andreas Steffen
164 4 Andreas Steffen
Next the OS and HCD IMCs are loaded. The OS IMC subscribes to the IETF standard *Operating System* PA subtype and the HCD IMC to the mandatory  *System* and the five recommended *Console*, *Marker*, *Finisher*, *Interface* and *Scanner* PWG HCD PA subtypes. 
165 2 Andreas Steffen
<pre>
166 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] loading IMCs from '/etc/tnc_config'
167 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added IETF attributes
168 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added ITA-HSR attributes
169 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added PWG attributes
170 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added TCG attributes
171 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[LIB] libimcv initialized
172 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] IMC 1 "OS" initialized
173 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system name is 'strongPrint OS'
174 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system version is '1.0'
175 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 1 supports 1 message type: 'IETF/Operating System' 0x000000/0x00000001
176 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 1 "OS" loaded from '/usr/local/lib/ipsec/imcvs/imc-os.so'
177 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] IMC 2 "HCD" initialized
178 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system name is 'strongPrint OS'
179 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system version is '1.0'
180 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 2 supports 6 message types: 'PWG/HCD System' 0x000a8b/0x00000005 'PWG/HCD Console' 0x000a8b/0x00000004 'PWG/HCD Marker' 0x000a8b/0x0000000a 'PWG/HCD Finisher' 0x000a8b/0x0000001e 'PWG/HCD Interface' 0x000a8b/0x00000028 'PWG/HCD Scanner' 0x000a8b/0x00000032
181 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 2 "HCD" loaded from '/usr/local/lib/ipsec/imcvs/imc-hcd.so'
182 1 Andreas Steffen
</pre>
183 2 Andreas Steffen
184 4 Andreas Steffen
The VPN client loads the definition for the IPsec connection to the VPN gateway
185 2 Andreas Steffen
<pre>
186 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[LIB] loaded plugins: charon aes des sha1 sha2 md5 pem pkcs1 gmp random nonce x509 curl revocation hmac stroke kernel-netlink socket-default eap-identity eap-md5 eap-ttls eap-tnc tnc-imc tnc-tnccs tnccs-20 updown
187 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[JOB] spawning 16 worker threads
188 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 05[CFG] received stroke: add connection 'home'
189 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 05[CFG] added configuration 'home'
190 2 Andreas Steffen
</pre>
191 2 Andreas Steffen
192 5 Andreas Steffen
The VPN client *carol* starts the IKEv2 negotiation with the VPN gateway *moon*. The user authentication and the subsequent PT-EAP setup takes place with the RADIUS server *alice* located behind the VPN gateway.
193 2 Andreas Steffen
<pre>
194 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 10[CFG] received stroke: initiate 'home'
195 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[IKE] initiating IKE_SA home[1] to 192.168.0.1
196 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[ENC] generating IKE_SA_INIT request 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) N(HASH_ALG) ]
197 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[NET] sending packet: from 192.168.0.100[500] to 192.168.0.1[500] (692 bytes)
198 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[NET] received packet: from 192.168.0.1[500] to 192.168.0.100[500] (448 bytes)
199 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[ENC] parsed IKE_SA_INIT response 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) N(HASH_ALG) ]
200 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[IKE] sending cert request for "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
201 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[IKE] establishing CHILD_SA home
202 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[ENC] generating IKE_AUTH request 1 [ IDi N(INIT_CONTACT) CERTREQ IDr SA TSi TSr N(MOBIKE_SUP) N(ADD_6_ADDR) N(EAP_ONLY) ]
203 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (412 bytes)
204 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1452 bytes)
205 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] parsed IKE_AUTH response 1 [ IDr CERT AUTH EAP/REQ/ID ]
206 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] received end entity cert "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
207 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using certificate "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
208 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using trusted ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
209 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG] checking certificate status of "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
210 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   fetching crl from 'http://crl.strongswan.org/strongswan.crl' ...
211 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using trusted certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
212 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   crl correctly signed by "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
213 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   crl is valid: until Sep 03 17:23:39 2015
214 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG] certificate status is good
215 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   reached self-signed root ca with a path length of 0
216 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] authentication of 'moon.strongswan.org' with RSA_EMSA_PKCS1_SHA256 successful
217 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] server requested EAP_IDENTITY (id 0x00), sending 'carol'
218 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] generating IKE_AUTH request 2 [ EAP/RES/ID ]
219 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
220 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
221 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] parsed IKE_AUTH response 2 [ EAP/REQ/TTLS ]
222 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IKE] server requested EAP_TTLS authentication (id 0xCA)
223 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[TLS] EAP_TTLS version is v0
224 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] generating IKE_AUTH request 3 [ EAP/RES/TTLS ]
225 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (172 bytes)
226 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1100 bytes)
227 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[ENC] parsed IKE_AUTH response 3 [ EAP/REQ/TTLS ]
228 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[ENC] generating IKE_AUTH request 4 [ EAP/RES/TTLS ]
229 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
230 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1084 bytes)
231 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[ENC] parsed IKE_AUTH response 4 [ EAP/REQ/TTLS ]
232 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] negotiated TLS 1.2 using suite TLS_DHE_RSA_WITH_AES_128_CBC_SHA
233 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] received TLS server certificate 'C=CH, O=Linux strongSwan, CN=aaa.strongswan.org'
234 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using certificate "C=CH, O=Linux strongSwan, CN=aaa.strongswan.org"
235 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using trusted ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
236 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG] checking certificate status of "C=CH, O=Linux strongSwan, CN=aaa.strongswan.org"
237 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using trusted certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
238 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   crl correctly signed by "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
239 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   crl is valid: until Sep 03 17:23:39 2015
240 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using cached crl
241 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG] certificate status is good
242 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   reached self-signed root ca with a path length of 0
243 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] received TLS cert request for 'C=CH, O=Linux strongSwan, CN=strongSwan Root CA
244 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] no TLS peer certificate found for 'carol', skipping client authentication
245 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[ENC] generating IKE_AUTH request 5 [ EAP/RES/TTLS ]
246 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (428 bytes)
247 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (220 bytes)
248 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[ENC] parsed IKE_AUTH response 5 [ EAP/REQ/TTLS ]
249 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/ID]
250 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] server requested EAP_IDENTITY authentication (id 0x00)
251 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/ID]
252 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[ENC] generating IKE_AUTH request 6 [ EAP/RES/TTLS ]
253 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
254 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (172 bytes)
255 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[ENC] parsed IKE_AUTH response 6 [ EAP/REQ/TTLS ]
256 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/MD5]
257 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] server requested EAP_MD5 authentication (id 0x1B)
258 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/MD5]
259 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[ENC] generating IKE_AUTH request 7 [ EAP/RES/TTLS ]
260 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (172 bytes)
261 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (156 bytes)
262 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[ENC] parsed IKE_AUTH response 7 [ EAP/REQ/TTLS ]
263 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
264 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] server requested EAP_PT_EAP authentication (id 0x33)
265 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TLS] EAP_PT_EAP version is v1
266 10 Andreas Steffen
</pre>
267 2 Andreas Steffen
268 5 Andreas Steffen
THE PB-TNC connection between TNC client and TNC server is established. The maximum size of  a PA-TNC message is limited to 16338 bytes.
269 2 Andreas Steffen
<pre>
270 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] TNC client is handling outbound connection
271 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] assigned TNCCS Connection ID 1
272 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 1 "OS" created a state for IF-TNCCS 2.0 Connection ID 1: +long +excl -soh
273 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   over IF-T for Tunneled EAP 2.0 with maximum PA-TNC message size of 16338 bytes
274 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 2 "HCD" created a state for IF-TNCCS 2.0 Connection ID 1: +long +excl -soh
275 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   over IF-T for Tunneled EAP 2.0 with maximum PA-TNC message size of 16338 bytes
276 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 1 "OS" changed state of Connection ID 1 to 'Handshake'
277 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 2 "HCD" changed state of Connection ID 1 to 'Handshake'
278 2 Andreas Steffen
</pre>
279 1 Andreas Steffen
280 14 Andreas Steffen
h2. Sending standard OS attributes
281 14 Andreas Steffen
282 6 Andreas Steffen
The OS IMC retrieves information on the operating system
283 2 Andreas Steffen
<pre>
284 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] operating system numeric version is 1.0
285 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] last boot: Aug 04 17:24:00 UTC 2015, 15 s ago
286 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IPv4 forwarding is disabled
287 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] factory default password is enabled
288 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] device ID is 79433e32cfc1d0d3e7a637c954f0870e
289 2 Andreas Steffen
</pre>
290 1 Andreas Steffen
291 6 Andreas Steffen
The OS IMC is sending operating system information using IETF standard attributes
292 2 Andreas Steffen
<pre>
293 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xfbbcb9bd
294 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Product Information' 0x000000/0x00000002
295 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/String Version' 0x000000/0x00000004
296 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Numeric Version' 0x000000/0x00000003
297 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Operational Status' 0x000000/0x00000005
298 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Forwarding Enabled' 0x000000/0x0000000b
299 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Factory Default Password Enabled' 0x000000/0x0000000c
300 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'ITA-HSR/Device ID' 0x00902a/0x00000008
301 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 197 bytes @ 0x7b0b70
302 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 FB BC B9 BD 00 00 00 00 00 00 00 02  ................
303 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 1F 00 00 00 00 00 73 74 72 6F 6E 67 50  .........strongP
304 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   32: 72 69 6E 74 20 4F 53 00 00 00 00 00 00 00 04 00  rint OS.........
305 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   48: 00 00 12 03 31 2E 30 00 00 00 00 00 00 00 00 00  ....1.0.........
306 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   64: 03 00 00 00 1C 00 00 00 01 00 00 00 00 00 00 00  ................
307 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   80: 00 00 00 00 00 00 00 00 00 00 00 00 05 00 00 00  ................
308 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   96: 24 03 01 00 00 32 30 31 35 2D 30 38 2D 30 34 54  $....2015-08-04T
309 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  112: 31 37 3A 32 34 3A 30 30 5A 00 00 00 00 00 00 00  17:24:00Z.......
310 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  128: 0B 00 00 00 10 00 00 00 00 00 00 00 00 00 00 00  ................
311 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  144: 0C 00 00 00 10 00 00 00 01 00 00 90 2A 00 00 00  ............*...
312 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  160: 08 00 00 00 2C 37 39 34 33 33 65 33 32 63 66 63  ....,79433e32cfc
313 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  176: 31 64 30 64 33 65 37 61 36 33 37 63 39 35 34 66  1d0d3e7a637c954f
314 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  192: 30 38 37 30 65                                   0870e
315 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'IETF/Operating System' 0x000000/0x00000001
316 2 Andreas Steffen
</pre>
317 1 Andreas Steffen
318 14 Andreas Steffen
h2. Sending basic HCD attributes
319 14 Andreas Steffen
320 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD System. Since _push_info = no_ was set in the *imc-hcd* plugin section of _strongswan.conf_ no large
321 8 Andreas Steffen
_Firmware_, _UserApplication_ or _ResidentApplication_ quadruples are sent without an explict attribute request from the HCD IMV.
322 2 Andreas Steffen
<pre>
323 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD System
324 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
325 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD DefaultPasswordEnabled: yes
326 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD ForwardingEnabled: disabled
327 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD MachineTypeModel: strongPrint Laser X.509a
328 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD PSTNFaxEnabled: yes
329 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD TimeSource: 0.ch.pool.ntp.org
330 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD VendorName: ITA-HSR
331 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD VendorSMICode: 0x00902a (36906)
332 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD UserApplicationEnabled: yes
333 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD UserApplicationPersistenceEnabled: no
334 1 Andreas Steffen
</pre>
335 2 Andreas Steffen
336 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD System
337 8 Andreas Steffen
<pre>
338 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x7add7208
339 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
340 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD DefaultPasswordEnabled' 0x000a8b/0x00000014
341 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD ForwardingEnabled' 0x000a8b/0x00000016
342 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD MachineTypeModel' 0x000a8b/0x00000002
343 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD PSTNFaxEnabled' 0x000a8b/0x00000028
344 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD TimeSource' 0x000a8b/0x00000032
345 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD VendorName' 0x000a8b/0x00000003
346 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD VendorSMICode' 0x000a8b/0x00000004
347 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationEnabled' 0x000a8b/0x00000068
348 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPersistenceEnabled' 0x000a8b/0x00000069
349 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 202 bytes @ 0x7b2c70
350 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 7A DD 72 08 00 00 0A 8B 00 00 00 01  ....z.r.........
351 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E 00 00 0A 8B 00 00 00 14 00 00  ....en..........
352 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   32: 00 10 00 00 00 01 00 00 0A 8B 00 00 00 16 00 00  ................
353 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   48: 00 10 00 00 00 00 00 00 0A 8B 00 00 00 02 00 00  ................
354 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   64: 00 24 73 74 72 6F 6E 67 50 72 69 6E 74 20 4C 61  .$strongPrint La
355 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   80: 73 65 72 20 58 2E 35 30 39 61 00 00 0A 8B 00 00  ser X.509a......
356 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   96: 00 28 00 00 00 10 00 00 00 01 00 00 0A 8B 00 00  .(..............
357 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  112: 00 32 00 00 00 1D 30 2E 63 68 2E 70 6F 6F 6C 2E  .2....0.ch.pool.
358 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  128: 6E 74 70 2E 6F 72 67 00 00 0A 8B 00 00 00 03 00  ntp.org.........
359 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  144: 00 00 13 49 54 41 2D 48 53 52 00 00 0A 8B 00 00  ...ITA-HSR......
360 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  160: 00 04 00 00 00 10 00 00 90 2A 00 00 0A 8B 00 00  .........*......
361 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  176: 00 68 00 00 00 10 00 00 00 01 00 00 0A 8B 00 00  .h..............
362 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  192: 00 69 00 00 00 10 00 00 00 00                    .i........
363 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
364 2 Andreas Steffen
</pre>
365 1 Andreas Steffen
366 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Console
367 2 Andreas Steffen
<pre>
368 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Console
369 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: ru
370 2 Andreas Steffen
</pre>
371 1 Andreas Steffen
372 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Console
373 2 Andreas Steffen
<pre>
374 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xc08b37ea
375 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
376 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7a6de0
377 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 C0 8B 37 EA 00 00 0A 8B 00 00 00 01  ......7.........
378 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 72 75                                ....ru
379 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
380 5 Andreas Steffen
</pre>
381 1 Andreas Steffen
382 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Marker
383 5 Andreas Steffen
<pre>
384 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Marker
385 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: fr
386 5 Andreas Steffen
</pre>
387 1 Andreas Steffen
388 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Marker
389 5 Andreas Steffen
<pre>
390 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xba97337a
391 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
392 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b3e20
393 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 BA 97 33 7A 00 00 0A 8B 00 00 00 01  ......3z........
394 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 66 72                                ....fr
395 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
396 2 Andreas Steffen
</pre>
397 1 Andreas Steffen
398 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Finisher
399 2 Andreas Steffen
<pre>
400 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Finisher
401 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: de
402 2 Andreas Steffen
</pre>
403 1 Andreas Steffen
404 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Finisher
405 2 Andreas Steffen
<pre>
406 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x649b1045
407 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
408 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b1320
409 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 64 9B 10 45 00 00 0A 8B 00 00 00 01  ....d..E........
410 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 64 65                                ....de
411 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
412 2 Andreas Steffen
</pre>
413 1 Andreas Steffen
414 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Interface
415 2 Andreas Steffen
<pre>
416 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Interface
417 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
418 1 Andreas Steffen
</pre>
419 1 Andreas Steffen
420 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Interface
421 8 Andreas Steffen
<pre>
422 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xa55e5dcb
423 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
424 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b2a10
425 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 A5 5E 5D CB 00 00 0A 8B 00 00 00 01  .....^].........
426 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E                                ....en
427 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
428 1 Andreas Steffen
</pre>
429 1 Andreas Steffen
430 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Scanner
431 1 Andreas Steffen
<pre>
432 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Scanner
433 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
434 1 Andreas Steffen
</pre>
435 1 Andreas Steffen
436 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Scanner
437 1 Andreas Steffen
<pre>
438 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x9b793f7a
439 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
440 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b0a90
441 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 9B 79 3F 7A 00 00 0A 8B 00 00 00 01  .....y?z........
442 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E                                ....en
443 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
444 1 Andreas Steffen
</pre>
445 2 Andreas Steffen
446 1 Andreas Steffen
The first Client Data PB-TNC batch is sent to the TNC server
447 1 Andreas Steffen
<pre>
448 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] PB-TNC state transition from 'Init' to 'Server Working'
449 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-TNC CDATA batch
450 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-Language-Preference message
451 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
452 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
453 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
454 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
455 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
456 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
457 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
458 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] sending PB-TNC CDATA batch (716 bytes) for Connection ID 1
459 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
460 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[ENC] generating IKE_AUTH request 8 [ EAP/RES/TTLS ]
461 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (876 bytes)
462 1 Andreas Steffen
</pre>
463 1 Andreas Steffen
464 14 Andreas Steffen
h2. Sending HCD quadruples upon request
465 14 Andreas Steffen
466 11 Andreas Steffen
In response a Server Data PB-TNC batch is received
467 2 Andreas Steffen
<pre>
468 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (748 bytes)
469 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[ENC] parsed IKE_AUTH response 8 [ EAP/REQ/TTLS ]
470 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
471 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] received TNCCS batch (602 bytes)
472 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] TNC client is handling inbound connection
473 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PB-TNC SDATA batch for Connection ID 1
474 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] PB-TNC state transition from 'Server Working' to 'Client Working'
475 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing TCG/PB-PDP-Referral message (42 bytes)
476 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (112 bytes)
477 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
478 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
479 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
480 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
481 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
482 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] PDP server 'aaa.strongswan.org' is listening on port 271
483 1 Andreas Steffen
</pre>
484 1 Andreas Steffen
485 11 Andreas Steffen
The first PA-TNC message of subtype PWG/HCD System contains attribute requests for missing attributes
486 2 Andreas Steffen
<pre>
487 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
488 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
489 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 88 bytes @ 0x7b4ce0
490 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 86 16 79 E2 00 00 55 97 00 00 00 21  ......y...U....!
491 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
492 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 3C 00 00 0A 8B 00 00 00 15  .......<........
493 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 3C 00 00 0A 8B 00 00 00 50  .......<.......P
494 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 00 00 0A 8B 00 00 00 64 00 00 0A 8B 00 00 00 C8  .......d........
495 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 00 00 0A 8B 00 00 00 C9                          ........
496 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0x861679e2
497 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
498 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
499 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000015 'PWG/HCD FirewallSetting'
500 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
501 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
502 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
503 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x000000c8 'PWG/HCD CertificationState'
504 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x000000c9 'PWG/HCD ConfigurationState'
505 1 Andreas Steffen
</pre>
506 1 Andreas Steffen
507 2 Andreas Steffen
<pre>
508 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD System' 0x000a8b/0x00000005
509 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
510 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
511 1 Andreas Steffen
</pre>
512 1 Andreas Steffen
513 2 Andreas Steffen
<pre>
514 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- fw-1 ---
515 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareName: Firmware ABC
516 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwarePatches:
517 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2014-05-08#015
518 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] upgrade 2014-08-16#015
519 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2015-3-22#015
520 1 Andreas Steffen
</pre>
521 1 Andreas Steffen
522 1 Andreas Steffen
<pre>
523 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- fw-2 ---
524 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareName: Firmware UVW
525 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwarePatches: 
526 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareStringVersion: 13.8.5
527 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareVersion: 00:00:00:0d:00:00:00:08:00:00:00:05:00:00:00:00
528 1 Andreas Steffen
</pre>
529 1 Andreas Steffen
530 1 Andreas Steffen
<pre>
531 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- resident-app-1 ---
532 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationName: Resident App XYZ
533 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationPatches:
534 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] xmas patch 2014-12-24#015
535 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] service patch 2015-05-22#015
536 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationStringVersion: 2.5
537 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationVersion: 00:00:00:02:00:00:00:05:00:00:00:00:00:00:00:00
538 1 Andreas Steffen
</pre>
539 1 Andreas Steffen
540 2 Andreas Steffen
<pre>
541 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-1 ---
542 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: My Java Photo App
543 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
544 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 5.2.3.8.1
545 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:05:00:00:00:02:00:00:00:03:00:08:00:01
546 1 Andreas Steffen
</pre>
547 1 Andreas Steffen
548 2 Andreas Steffen
<pre>
549 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-2 ---
550 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: Print Your Dinosaur!
551 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
552 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 1.0
553 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:01:00:00:00:00:00:00:00:00:00:00:00:00
554 1 Andreas Steffen
</pre>
555 1 Andreas Steffen
556 2 Andreas Steffen
<pre>
557 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-3 ---
558 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: Label Everything App
559 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
560 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 7.5.8.2.3
561 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:07:00:00:00:05:00:00:00:08:00:02:00:03
562 1 Andreas Steffen
</pre>
563 1 Andreas Steffen
564 2 Andreas Steffen
<pre>
565 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD CertificationState: => 32 bytes @ 0x7b7d50
566 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F  ................
567 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F  ................
568 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ConfigurationState: => 48 bytes @ 0x7b96f0
569 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: F0 F1 F2 F3 F4 F5 F6 F7 F8 F9 FA FB FC FD FE FF  ................
570 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: E0 E1 E2 E3 E4 E5 E6 E7 E8 E9 EA EB EC ED EE EF  ................
571 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: D0 D1 D2 D3 D4 D5 D6 D7 D8 D9 DA DB DC DD DE DF  ................
572 1 Andreas Steffen
</pre>
573 1 Andreas Steffen
574 2 Andreas Steffen
<pre>
575 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0xc1018e8f
576 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
577 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
578 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
579 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
580 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
581 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
582 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
583 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
584 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
585 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationName' 0x000a8b/0x00000050
586 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationPatches' 0x000a8b/0x00000051
587 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationStringVersion' 0x000a8b/0x00000052
588 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationVersion' 0x000a8b/0x00000053
589 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
590 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
591 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
592 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
593 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
594 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
595 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
596 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
597 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
598 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
599 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
600 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
601 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD CertificationState' 0x000a8b/0x000000c8
602 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ConfigurationState' 0x000a8b/0x000000c9
603 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 770 bytes @ 0x7becc0
604 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 C1 01 8E 8F 00 00 55 97 00 00 00 22  ..........U...."
605 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
606 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 3C 00 00 00 18 46 69 72 6D 77 61 72 65  ...<....Firmware
607 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 20 41 42 43 00 00 0A 8B 00 00 00 3D 00 00 00 55   ABC.......=...U
608 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 73 65 63 75 72 69 74 79 20 70 61 74 63 68 20 32  security patch 2
609 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 30 31 34 2D 30 35 2D 30 38 0D 0A 75 70 67 72 61  014-05-08..upgra
610 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   96: 64 65 20 32 30 31 34 2D 30 38 2D 31 36 0D 0A 73  de 2014-08-16..s
611 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  112: 65 63 75 72 69 74 79 20 70 61 74 63 68 20 32 30  ecurity patch 20
612 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  128: 31 35 2D 33 2D 32 32 0D 0A 00 00 0A 8B 00 00 00  15-3-22.........
613 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  144: 3E 00 00 00 11 31 2E 30 2E 37 00 00 0A 8B 00 00  >....1.0.7......
614 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  160: 00 3F 00 00 00 1C 00 00 00 01 00 00 00 00 00 00  .?..............
615 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  176: 00 07 00 00 00 00 00 00 0A 8B 00 00 00 3C 00 00  .............<..
616 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  192: 00 18 46 69 72 6D 77 61 72 65 20 55 56 57 00 00  ..Firmware UVW..
617 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  208: 0A 8B 00 00 00 3D 00 00 00 0C 00 00 0A 8B 00 00  .....=..........
618 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  224: 00 3E 00 00 00 12 31 33 2E 38 2E 35 00 00 0A 8B  .>....13.8.5....
619 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  240: 00 00 00 3F 00 00 00 1C 00 00 00 0D 00 00 00 08  ...?............
620 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  256: 00 00 00 05 00 00 00 00 00 00 0A 8B 00 00 00 50  ...............P
621 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  272: 00 00 00 1C 52 65 73 69 64 65 6E 74 20 41 70 70  ....Resident App
622 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  288: 20 58 59 5A 00 00 0A 8B 00 00 00 51 00 00 00 3D   XYZ.......Q...=
623 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  304: 78 6D 61 73 20 70 61 74 63 68 20 32 30 31 34 2D  xmas patch 2014-
624 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  320: 31 32 2D 32 34 0D 0A 73 65 72 76 69 63 65 20 70  12-24..service p
625 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  336: 61 74 63 68 20 32 30 31 35 2D 30 35 2D 32 32 0D  atch 2015-05-22.
626 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  352: 0A 00 00 0A 8B 00 00 00 52 00 00 00 0F 32 2E 35  ........R....2.5
627 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  368: 00 00 0A 8B 00 00 00 53 00 00 00 1C 00 00 00 02  .......S........
628 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  384: 00 00 00 05 00 00 00 00 00 00 00 00 00 00 0A 8B  ................
629 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  400: 00 00 00 64 00 00 00 1D 4D 79 20 4A 61 76 61 20  ...d....My Java 
630 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  416: 50 68 6F 74 6F 20 41 70 70 00 00 0A 8B 00 00 00  Photo App.......
631 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  432: 65 00 00 00 0C 00 00 0A 8B 00 00 00 66 00 00 00  e...........f...
632 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  448: 15 35 2E 32 2E 33 2E 38 2E 31 00 00 0A 8B 00 00  .5.2.3.8.1......
633 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  464: 00 67 00 00 00 1C 00 00 00 05 00 00 00 02 00 00  .g..............
634 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  480: 00 03 00 08 00 01 00 00 0A 8B 00 00 00 64 00 00  .............d..
635 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  496: 00 20 50 72 69 6E 74 20 59 6F 75 72 20 44 69 6E  . Print Your Din
636 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  512: 6F 73 61 75 72 21 00 00 0A 8B 00 00 00 65 00 00  osaur!.......e..
637 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  528: 00 0C 00 00 0A 8B 00 00 00 66 00 00 00 0F 31 2E  .........f....1.
638 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  544: 30 00 00 0A 8B 00 00 00 67 00 00 00 1C 00 00 00  0.......g.......
639 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  560: 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0A  ................
640 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  576: 8B 00 00 00 64 00 00 00 20 4C 61 62 65 6C 20 45  ....d... Label E
641 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  592: 76 65 72 79 74 68 69 6E 67 20 41 70 70 00 00 0A  verything App...
642 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  608: 8B 00 00 00 65 00 00 00 0C 00 00 0A 8B 00 00 00  ....e...........
643 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  624: 66 00 00 00 15 37 2E 35 2E 38 2E 32 2E 33 00 00  f....7.5.8.2.3..
644 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  640: 0A 8B 00 00 00 67 00 00 00 1C 00 00 00 07 00 00  .....g..........
645 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  656: 00 05 00 00 00 08 00 02 00 03 00 00 0A 8B 00 00  ................
646 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  672: 00 C8 00 00 00 2C 00 01 02 03 04 05 06 07 08 09  .....,..........
647 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  688: 0A 0B 0C 0D 0E 0F 10 11 12 13 14 15 16 17 18 19  ................
648 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  704: 1A 1B 1C 1D 1E 1F 00 00 0A 8B 00 00 00 C9 00 00  ................
649 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  720: 00 3C F0 F1 F2 F3 F4 F5 F6 F7 F8 F9 FA FB FC FD  .<..............
650 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  736: FE FF E0 E1 E2 E3 E4 E5 E6 E7 E8 E9 EA EB EC ED  ................
651 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  752: EE EF D0 D1 D2 D3 D4 D5 D6 D7 D8 D9 DA DB DC DD  ................
652 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  768: DE DF                                            ..
653 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
654 1 Andreas Steffen
</pre>
655 2 Andreas Steffen
656 11 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Console also contains attribute requests for missing attributes
657 2 Andreas Steffen
<pre>
658 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
659 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
660 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7b7730
661 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 F4 04 56 EE 00 00 55 97 00 00 00 21  ......V...U....!
662 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
663 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
664 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
665 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0xf40456ee
666 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
667 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
668 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
669 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
670 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
671 2 Andreas Steffen
</pre>
672 1 Andreas Steffen
673 1 Andreas Steffen
<pre>
674 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
675 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
676 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
677 2 Andreas Steffen
</pre>
678 2 Andreas Steffen
679 2 Andreas Steffen
<pre>
680 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0x0076a4b4
681 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
682 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 28 bytes @ 0x7b61e0
683 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 00 76 A4 B4 00 00 55 97 00 00 00 22  .....v....U...."
684 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
685 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
686 1 Andreas Steffen
</pre>
687 3 Andreas Steffen
688 1 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Marker also contains attribute requests for missing attributes
689 11 Andreas Steffen
<pre>
690 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
691 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
692 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7b7470
693 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 17 E7 9B 01 00 00 55 97 00 00 00 21  ..........U....!
694 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
695 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
696 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
697 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0x17e79b01
698 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
699 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
700 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
701 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
702 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
703 13 Andreas Steffen
</pre>
704 1 Andreas Steffen
705 1 Andreas Steffen
<pre>
706 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
707 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
708 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
709 1 Andreas Steffen
</pre>
710 1 Andreas Steffen
711 1 Andreas Steffen
<pre>
712 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0x206fbf0c
713 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
714 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 28 bytes @ 0x7b4d10
715 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 20 6F BF 0C 00 00 55 97 00 00 00 22  .... o....U...."
716 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
717 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
718 1 Andreas Steffen
</pre>
719 1 Andreas Steffen
720 12 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Finisher also contains attribute requests for missing attributes
721 1 Andreas Steffen
<pre>
722 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
723 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
724 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7b7470
725 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 F8 29 1D 74 00 00 55 97 00 00 00 21  .....).t..U....!
726 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
727 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
728 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
729 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0xf8291d74
730 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
731 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
732 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
733 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
734 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
735 1 Andreas Steffen
</pre>
736 1 Andreas Steffen
737 1 Andreas Steffen
<pre>
738 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
739 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
740 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
741 1 Andreas Steffen
</pre>
742 1 Andreas Steffen
743 1 Andreas Steffen
<pre>
744 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0x9f1c93d6
745 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
746 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 28 bytes @ 0x7b6630
747 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 9F 1C 93 D6 00 00 55 97 00 00 00 22  ..........U...."
748 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
749 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
750 1 Andreas Steffen
</pre>
751 1 Andreas Steffen
752 12 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Interface also contains attribute requests for missing attributes
753 1 Andreas Steffen
<pre>
754 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
755 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
756 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7bef80
757 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 4A BC 71 FC 00 00 55 97 00 00 00 21  ....J.q...U....!
758 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
759 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
760 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
761 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0x4abc71fc
762 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
763 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
764 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
765 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
766 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
767 1 Andreas Steffen
</pre>
768 1 Andreas Steffen
769 3 Andreas Steffen
<pre>
770 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
771 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
772 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
773 1 Andreas Steffen
</pre>
774 1 Andreas Steffen
775 1 Andreas Steffen
<pre>
776 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- resident-app-if ---
777 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationName: Resident App Interface+
778 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationPatches:
779 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] service patch 2015-02-09#015
780 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationStringVersion: 2.5
781 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationVersion: 00:00:00:02:00:00:00:05:00:00:00:00:00:00:00:00
782 1 Andreas Steffen
</pre>
783 1 Andreas Steffen
784 1 Andreas Steffen
<pre>
785 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0xcd4397f4
786 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
787 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationName' 0x000a8b/0x00000050
788 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationPatches' 0x000a8b/0x00000051
789 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationStringVersion' 0x000a8b/0x00000052
790 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationVersion' 0x000a8b/0x00000053
791 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 144 bytes @ 0x7b4ec0
792 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 CD 43 97 F4 00 00 55 97 00 00 00 22  .....C....U...."
793 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
794 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 50 00 00 00 23 52 65 73 69 64 65 6E 74  ...P...#Resident
795 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 20 41 70 70 20 49 6E 74 65 72 66 61 63 65 2B 00   App Interface+.
796 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 00 0A 8B 00 00 00 51 00 00 00 26 73 65 72 76 69  ......Q...&servi
797 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 63 65 20 70 61 74 63 68 20 32 30 31 35 2D 30 32  ce patch 2015-02
798 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   96: 2D 30 39 0D 0A 00 00 0A 8B 00 00 00 52 00 00 00  -09.........R...
799 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  112: 0F 32 2E 35 00 00 0A 8B 00 00 00 53 00 00 00 1C  .2.5.......S....
800 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  128: 00 00 00 02 00 00 00 05 00 00 00 00 00 00 00 00  ................
801 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
802 1 Andreas Steffen
</pre>
803 1 Andreas Steffen
804 12 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Scanner also contains attribute requests for missing attributes
805 1 Andreas Steffen
<pre>
806 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
807 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
808 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7b8db0
809 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 CB B4 70 D2 00 00 55 97 00 00 00 21  ......p...U....!
810 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
811 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
812 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
813 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0xcbb470d2
814 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
815 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
816 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
817 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
818 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
819 3 Andreas Steffen
</pre>
820 3 Andreas Steffen
821 3 Andreas Steffen
<pre>
822 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
823 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
824 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
825 1 Andreas Steffen
</pre>
826 1 Andreas Steffen
827 1 Andreas Steffen
<pre>
828 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- fw-scanner ---
829 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareName: Scanner Firmware
830 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwarePatches:
831 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2013-08-11#015
832 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2015-5-30#015
833 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareStringVersion: 2.5.3
834 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareVersion: 00:00:00:02:00:00:00:05:00:00:00:03:00:00:00:00
835 1 Andreas Steffen
</pre>
836 3 Andreas Steffen
837 3 Andreas Steffen
<pre>
838 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-scanner ---
839 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: EasyScan
840 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
841 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 2.2.3.5.7
842 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:02:00:00:00:02:00:00:00:03:00:05:00:07
843 1 Andreas Steffen
</pre>
844 1 Andreas Steffen
845 1 Andreas Steffen
<pre>
846 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0x6238a2db
847 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
848 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
849 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
850 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
851 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
852 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
853 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
854 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
855 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
856 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 247 bytes @ 0x7b9d60
857 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 62 38 A2 DB 00 00 55 97 00 00 00 22  ....b8....U...."
858 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
859 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 3C 00 00 00 1C 53 63 61 6E 6E 65 72 20  ...<....Scanner 
860 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 46 69 72 6D 77 61 72 65 00 00 0A 8B 00 00 00 3D  Firmware.......=
861 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 00 00 00 41 73 65 63 75 72 69 74 79 20 70 61 74  ...Asecurity pat
862 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 63 68 20 32 30 31 33 2D 30 38 2D 31 31 0D 0A 73  ch 2013-08-11..s
863 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   96: 65 63 75 72 69 74 79 20 70 61 74 63 68 20 32 30  ecurity patch 20
864 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  112: 31 35 2D 35 2D 33 30 0D 0A 00 00 0A 8B 00 00 00  15-5-30.........
865 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  128: 3E 00 00 00 11 32 2E 35 2E 33 00 00 0A 8B 00 00  >....2.5.3......
866 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  144: 00 3F 00 00 00 1C 00 00 00 02 00 00 00 05 00 00  .?..............
867 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  160: 00 03 00 00 00 00 00 00 0A 8B 00 00 00 64 00 00  .............d..
868 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  176: 00 14 45 61 73 79 53 63 61 6E 00 00 0A 8B 00 00  ..EasyScan......
869 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  192: 00 65 00 00 00 0C 00 00 0A 8B 00 00 00 66 00 00  .e...........f..
870 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  208: 00 15 32 2E 32 2E 33 2E 35 2E 37 00 00 0A 8B 00  ..2.2.3.5.7.....
871 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  224: 00 00 67 00 00 00 1C 00 00 00 02 00 00 00 02 00  ..g.............
872 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  240: 00 00 03 00 05 00 07                             .......
873 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
874 1 Andreas Steffen
</pre>
875 1 Andreas Steffen
876 1 Andreas Steffen
<pre>
877 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] TNC client is handling outbound connection
878 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] PB-TNC state transition from 'Client Working' to 'Server Working'
879 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-TNC CDATA batch
880 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
881 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
882 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
883 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
884 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
885 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
886 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] sending PB-TNC CDATA batch (1397 bytes) for Connection ID 1
887 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
888 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[ENC] generating IKE_AUTH request 9 [ EAP/RES/TTLS ]
889 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (1100 bytes)
890 1 Andreas Steffen
</pre>
891 1 Andreas Steffen
892 14 Andreas Steffen
h2. No more attributes to send
893 14 Andreas Steffen
894 1 Andreas Steffen
<pre>
895 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 11[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
896 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 11[ENC] parsed IKE_AUTH response 9 [ EAP/REQ/TTLS ]
897 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 11[ENC] generating IKE_AUTH request 10 [ EAP/RES/TTLS ]
898 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 11[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (524 bytes)
899 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (156 bytes)
900 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[ENC] parsed IKE_AUTH response 10 [ EAP/REQ/TTLS ]
901 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
902 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] received TNCCS batch (8 bytes)
903 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] TNC client is handling inbound connection
904 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] processing PB-TNC SDATA batch for Connection ID 1
905 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] PB-TNC state transition from 'Server Working' to 'Client Working'
906 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] TNC client is handling outbound connection
907 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] no client data to send, sending empty PB-TNC CDATA batch
908 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] PB-TNC state transition from 'Client Working' to 'Server Working'
909 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] creating PB-TNC CDATA batch
910 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] sending PB-TNC CDATA batch (8 bytes) for Connection ID 1
911 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
912 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[ENC] generating IKE_AUTH request 11 [ EAP/RES/TTLS ]
913 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
914 1 Andreas Steffen
</pre>
915 14 Andreas Steffen
916 15 Andreas Steffen
h2. Receiving assessment result
917 1 Andreas Steffen
918 1 Andreas Steffen
<pre>
919 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (188 bytes)
920 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[ENC] parsed IKE_AUTH response 11 [ EAP/REQ/TTLS ]
921 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
922 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] received TNCCS batch (40 bytes)
923 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] TNC client is handling inbound connection
924 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] processing PB-TNC RESULT batch for Connection ID 1
925 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] PB-TNC state transition from 'Server Working' to 'Decided'
926 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] processing IETF/PB-Assessment-Result message (16 bytes)
927 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] processing IETF/PB-Access-Recommendation message (16 bytes)
928 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] PB-TNC assessment result is 'don't know'
929 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] PB-TNC access recommendation is 'Access Denied'
930 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[IMC] IMC 1 "OS" changed state of Connection ID 1 to 'None'
931 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[IMC] IMC 2 "HCD" changed state of Connection ID 1 to 'None'
932 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] TNC client is handling outbound connection
933 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] PB-TNC state transition from 'Decided' to 'End'
934 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] creating PB-TNC CLOSE batch
935 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] sending PB-TNC CLOSE batch (8 bytes) for Connection ID 1
936 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
937 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[ENC] generating IKE_AUTH request 12 [ EAP/RES/TTLS ]
938 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
939 1 Andreas Steffen
</pre>
940 1 Andreas Steffen
941 1 Andreas Steffen
<pre>
942 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (140 bytes)
943 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] parsed IKE_AUTH response 12 [ EAP/REQ/TTLS ]
944 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[TLS] received TLS close notify
945 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[TLS] sending TLS close notify
946 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] generating IKE_AUTH request 13 [ EAP/RES/TTLS ]
947 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (140 bytes)
948 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
949 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] parsed IKE_AUTH response 13 [ EAP/FAIL ]
950 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IKE] received EAP_FAILURE, EAP authentication failed
951 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] generating INFORMATIONAL request 14 [ N(AUTH_FAILED) ]
952 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
953 1 Andreas Steffen
</pre>
954 1 Andreas Steffen
955 1 Andreas Steffen
<pre>
956 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[TNC] TODO: setup PT-TLS connection to aaa.strongswan.org:271
957 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IMC] IMC 1 "OS" deleted the state of Connection ID 1
958 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IMC] IMC 2 "HCD" deleted the state of Connection ID 1
959 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[TNC] removed TNCCS Connection ID 1
960 1 Andreas Steffen
</pre>
961 12 Andreas Steffen
962 12 Andreas Steffen
<pre>
963 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[DMN] signal of type SIGINT received. Shutting down
964 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[IMC] IMC 2 "HCD" terminated
965 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[IMC] IMC 1 "OS" terminated
966 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[TNC] removed IETF attributes
967 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[TNC] removed ITA-HSR attributes
968 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[TNC] removed PWG attributes
969 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[TNC] removed TCG attributes
970 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[LIB] libimcv terminated</pre>