Project

General

Profile

Hardcopy Device Integrity Measurement Collector » History » Version 22

Andreas Steffen, 12.08.2015 22:13

1 18 Andreas Steffen
h1. Hardcopy Device Integrity Measurement Collector
2 20 Andreas Steffen
3 20 Andreas Steffen
{{>toc}}
4 1 Andreas Steffen
5 14 Andreas Steffen
h2. Configuration of HCD IMC
6 14 Andreas Steffen
7 22 Andreas Steffen
The _/etc/strongswan.conf_ configuration file of the hardcopy device *carol* restricts the maximum PB-TNC batch size  to 16'370 bytes and as a consequence the PA-TNC message size to 16'338 bytes.
8 22 Andreas Steffen
9 22 Andreas Steffen
The simulation is running on a Debian virtual KVM host but some operating system parameters can be manually set in *libimcv.os_info* section to emulate an embedded hardcopy device.
10 22 Andreas Steffen
11 22 Andreas Steffen
The PA-TNC attributes of the Hardcopy Device Integrity Measurement Collectore (HCD-IMC) are defined in the *libimcv.plugins.imc-hcd* section of /etc/strongswan.conf:
12 1 Andreas Steffen
<pre>
13 1 Andreas Steffen
charon {
14 1 Andreas Steffen
  load = aes des sha1 sha2 md5 pem pkcs1 gmp random nonce x509 curl revocation hmac stroke kernel-netlink socket-default eap-identity eap-md5 eap-ttls eap-tnc tnc-imc tnc-tnccs tnccs-20 updown
15 1 Andreas Steffen
16 1 Andreas Steffen
  plugins {
17 1 Andreas Steffen
    eap-ttls {
18 1 Andreas Steffen
      max_message_count = 0
19 1 Andreas Steffen
    }
20 1 Andreas Steffen
    eap-tnc {
21 1 Andreas Steffen
      max_message_count = 0
22 1 Andreas Steffen
    }
23 1 Andreas Steffen
    tnccs-20 {
24 1 Andreas Steffen
      max_batch_size = 16370
25 1 Andreas Steffen
      max_message_size = 16338
26 1 Andreas Steffen
    }
27 1 Andreas Steffen
  }
28 1 Andreas Steffen
}
29 1 Andreas Steffen
30 1 Andreas Steffen
libimcv {
31 1 Andreas Steffen
  os_info {
32 1 Andreas Steffen
    name = strongPrint OS
33 1 Andreas Steffen
    version = 1.0
34 1 Andreas Steffen
    default_password_enabled = yes
35 1 Andreas Steffen
  }
36 1 Andreas Steffen
37 1 Andreas Steffen
  plugins {
38 1 Andreas Steffen
    imc-hcd {
39 1 Andreas Steffen
      push_info = no 
40 1 Andreas Steffen
      subtypes {
41 1 Andreas Steffen
        system {
42 1 Andreas Steffen
          attributes_natural_language = en
43 1 Andreas Steffen
          machine_type_model = strongPrint Laser X.509a
44 1 Andreas Steffen
          vendor_name = ITA-HSR
45 1 Andreas Steffen
          vendor_smi_code = 36906
46 1 Andreas Steffen
          pstn_fax_enabled = yes
47 1 Andreas Steffen
          time_source = 0.ch.pool.ntp.org
48 1 Andreas Steffen
          user_application_enabled = yes
49 1 Andreas Steffen
          user_application_persistence_enabled = no
50 1 Andreas Steffen
51 1 Andreas Steffen
          firmware {
52 16 Andreas Steffen
            fw-1 {
53 1 Andreas Steffen
              name = Firmware ABC 
54 9 Andreas Steffen
              patches = "security patch 2014-05-08\r\nupgrade 2014-08-16\r\nsecurity patch 2015-3-22\r\n"
55 1 Andreas Steffen
              string_version = 1.0.7
56 1 Andreas Steffen
              version = 00000001000000000000000700000000
57 1 Andreas Steffen
            }
58 16 Andreas Steffen
            fw-2 {
59 1 Andreas Steffen
              name = Firmware UVW 
60 1 Andreas Steffen
              string_version = 13.8.5
61 1 Andreas Steffen
              version = 0000000D000000080000000500000000
62 1 Andreas Steffen
            }
63 1 Andreas Steffen
          }
64 1 Andreas Steffen
65 1 Andreas Steffen
          resident_application {
66 1 Andreas Steffen
            resident-app-1 {
67 1 Andreas Steffen
              name = Resident App XYZ 
68 9 Andreas Steffen
              patches = "xmas patch 2014-12-24\r\nservice patch 2015-05-22\r\n"
69 1 Andreas Steffen
              string_version = 2.5
70 1 Andreas Steffen
              version = 00000002000000050000000000000000
71 1 Andreas Steffen
            }
72 1 Andreas Steffen
          }
73 1 Andreas Steffen
74 1 Andreas Steffen
          user_application {
75 1 Andreas Steffen
            user-app-1 {
76 1 Andreas Steffen
              name = My Java Photo App
77 1 Andreas Steffen
              patches =
78 1 Andreas Steffen
              string_version = 5.2.3.8.1
79 1 Andreas Steffen
              version = 00000005000000020000000300080001
80 1 Andreas Steffen
            }
81 1 Andreas Steffen
            user-app-2 {
82 1 Andreas Steffen
              name = Print Your Dinosaur!
83 1 Andreas Steffen
              patches =
84 1 Andreas Steffen
              string_version = 1.0
85 1 Andreas Steffen
              version = 00000001000000000000000000000000
86 1 Andreas Steffen
            }
87 1 Andreas Steffen
            user-app-3 {
88 1 Andreas Steffen
              name = Label Everything App
89 1 Andreas Steffen
              patches =
90 1 Andreas Steffen
              string_version = 7.5.8.2.3
91 9 Andreas Steffen
              version = 00000007000000050000000800020003
92 1 Andreas Steffen
            }
93 1 Andreas Steffen
          }
94 1 Andreas Steffen
95 1 Andreas Steffen
          certification_state = 000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f
96 1 Andreas Steffen
          configuration_state = f0f1f2f3f4f5f6f7f8f9fafbfcfdfeffe0e1e2e3e4e5e6e7e8e9eaebecedeeefd0d1d2d3d4d5d6d7d8d9dadbdcdddedf
97 1 Andreas Steffen
        }
98 1 Andreas Steffen
99 1 Andreas Steffen
        console {
100 1 Andreas Steffen
          attributes_natural_language = ru
101 1 Andreas Steffen
        }
102 1 Andreas Steffen
103 1 Andreas Steffen
        marker {
104 1 Andreas Steffen
          attributes_natural_language = fr
105 1 Andreas Steffen
        }
106 1 Andreas Steffen
107 1 Andreas Steffen
        finisher {
108 1 Andreas Steffen
          attributes_natural_language = de
109 1 Andreas Steffen
        }
110 1 Andreas Steffen
111 1 Andreas Steffen
        interface {
112 1 Andreas Steffen
          attributes_natural_language = en
113 1 Andreas Steffen
 
114 1 Andreas Steffen
          resident_application {
115 17 Andreas Steffen
            resident-app-if {
116 1 Andreas Steffen
              name = Resident App Interface+ 
117 9 Andreas Steffen
              patches = "service patch 2015-02-09\r\n"
118 1 Andreas Steffen
              string_version = 2.5
119 1 Andreas Steffen
              version = 00000002000000050000000000000000
120 1 Andreas Steffen
            }
121 1 Andreas Steffen
          }
122 1 Andreas Steffen
        }
123 1 Andreas Steffen
124 1 Andreas Steffen
        scanner {
125 1 Andreas Steffen
          attributes_natural_language = en
126 1 Andreas Steffen
 
127 1 Andreas Steffen
          firmware {
128 1 Andreas Steffen
            fw-scanner {
129 1 Andreas Steffen
              name = Scanner Firmware 
130 9 Andreas Steffen
              patches = "security patch 2013-08-11\r\nsecurity patch 2015-5-30\r\n"
131 1 Andreas Steffen
              string_version = 2.5.3
132 1 Andreas Steffen
              version = 00000002000000050000000300000000
133 1 Andreas Steffen
            }
134 1 Andreas Steffen
          }
135 1 Andreas Steffen
136 1 Andreas Steffen
          user_application {
137 1 Andreas Steffen
            user-app-scanner {
138 1 Andreas Steffen
              name = EasyScan
139 1 Andreas Steffen
              patches =
140 1 Andreas Steffen
              string_version = 2.2.3.5.7
141 1 Andreas Steffen
              version = 00000002000000020000000300050007
142 1 Andreas Steffen
            }
143 1 Andreas Steffen
          }
144 1 Andreas Steffen
        }
145 1 Andreas Steffen
      }
146 1 Andreas Steffen
    }
147 1 Andreas Steffen
  }
148 1 Andreas Steffen
}
149 1 Andreas Steffen
</pre>
150 1 Andreas Steffen
151 15 Andreas Steffen
h2. Setting up PT-EAP connection from device carol
152 14 Andreas Steffen
153 1 Andreas Steffen
The TNC transport protocol is PT-EAP over IKEv2-EAP. In a first step the IKEv2 charon daemon is started up.
154 1 Andreas Steffen
<pre>
155 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[DMN] Starting IKE charon daemon (strongSwan 5.3.3dr3, Linux 4.1.3, x86_64)
156 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading ca certificates from '/etc/ipsec.d/cacerts'
157 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG]   loaded ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA" from '/etc/ipsec.d/cacerts/strongswanCert.pem'
158 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading aa certificates from '/etc/ipsec.d/aacerts'
159 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading ocsp signer certificates from '/etc/ipsec.d/ocspcerts'
160 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading attribute certificates from '/etc/ipsec.d/acerts'
161 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading crls from '/etc/ipsec.d/crls'
162 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG] loading secrets from '/etc/ipsec.secrets'
163 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[CFG]   loaded EAP secret for carol
164 1 Andreas Steffen
</pre>
165 2 Andreas Steffen
166 4 Andreas Steffen
Next the OS and HCD IMCs are loaded. The OS IMC subscribes to the IETF standard *Operating System* PA subtype and the HCD IMC to the mandatory  *System* and the five recommended *Console*, *Marker*, *Finisher*, *Interface* and *Scanner* PWG HCD PA subtypes. 
167 2 Andreas Steffen
<pre>
168 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] loading IMCs from '/etc/tnc_config'
169 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added IETF attributes
170 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added ITA-HSR attributes
171 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added PWG attributes
172 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] added TCG attributes
173 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[LIB] libimcv initialized
174 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] IMC 1 "OS" initialized
175 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system name is 'strongPrint OS'
176 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system version is '1.0'
177 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 1 supports 1 message type: 'IETF/Operating System' 0x000000/0x00000001
178 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 1 "OS" loaded from '/usr/local/lib/ipsec/imcvs/imc-os.so'
179 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] IMC 2 "HCD" initialized
180 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system name is 'strongPrint OS'
181 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[IMC] operating system version is '1.0'
182 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 2 supports 6 message types: 'PWG/HCD System' 0x000a8b/0x00000005 'PWG/HCD Console' 0x000a8b/0x00000004 'PWG/HCD Marker' 0x000a8b/0x0000000a 'PWG/HCD Finisher' 0x000a8b/0x0000001e 'PWG/HCD Interface' 0x000a8b/0x00000028 'PWG/HCD Scanner' 0x000a8b/0x00000032
183 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[TNC] IMC 2 "HCD" loaded from '/usr/local/lib/ipsec/imcvs/imc-hcd.so'
184 1 Andreas Steffen
</pre>
185 2 Andreas Steffen
186 4 Andreas Steffen
The VPN client loads the definition for the IPsec connection to the VPN gateway
187 2 Andreas Steffen
<pre>
188 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[LIB] loaded plugins: charon aes des sha1 sha2 md5 pem pkcs1 gmp random nonce x509 curl revocation hmac stroke kernel-netlink socket-default eap-identity eap-md5 eap-ttls eap-tnc tnc-imc tnc-tnccs tnccs-20 updown
189 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 00[JOB] spawning 16 worker threads
190 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 05[CFG] received stroke: add connection 'home'
191 9 Andreas Steffen
Aug  4 17:24:13 carol charon: 05[CFG] added configuration 'home'
192 2 Andreas Steffen
</pre>
193 2 Andreas Steffen
194 5 Andreas Steffen
The VPN client *carol* starts the IKEv2 negotiation with the VPN gateway *moon*. The user authentication and the subsequent PT-EAP setup takes place with the RADIUS server *alice* located behind the VPN gateway.
195 2 Andreas Steffen
<pre>
196 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 10[CFG] received stroke: initiate 'home'
197 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[IKE] initiating IKE_SA home[1] to 192.168.0.1
198 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[ENC] generating IKE_SA_INIT request 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) N(HASH_ALG) ]
199 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 04[NET] sending packet: from 192.168.0.100[500] to 192.168.0.1[500] (692 bytes)
200 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[NET] received packet: from 192.168.0.1[500] to 192.168.0.100[500] (448 bytes)
201 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[ENC] parsed IKE_SA_INIT response 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) N(HASH_ALG) ]
202 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[IKE] sending cert request for "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
203 9 Andreas Steffen
Aug  4 17:24:14 carol charon: 12[IKE] establishing CHILD_SA home
204 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[ENC] generating IKE_AUTH request 1 [ IDi N(INIT_CONTACT) CERTREQ IDr SA TSi TSr N(MOBIKE_SUP) N(ADD_6_ADDR) N(EAP_ONLY) ]
205 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (412 bytes)
206 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1452 bytes)
207 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] parsed IKE_AUTH response 1 [ IDr CERT AUTH EAP/REQ/ID ]
208 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] received end entity cert "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
209 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using certificate "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
210 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using trusted ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
211 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG] checking certificate status of "C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
212 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   fetching crl from 'http://crl.strongswan.org/strongswan.crl' ...
213 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   using trusted certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
214 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   crl correctly signed by "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
215 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   crl is valid: until Sep 03 17:23:39 2015
216 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG] certificate status is good
217 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[CFG]   reached self-signed root ca with a path length of 0
218 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] authentication of 'moon.strongswan.org' with RSA_EMSA_PKCS1_SHA256 successful
219 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[IKE] server requested EAP_IDENTITY (id 0x00), sending 'carol'
220 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] generating IKE_AUTH request 2 [ EAP/RES/ID ]
221 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
222 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
223 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] parsed IKE_AUTH response 2 [ EAP/REQ/TTLS ]
224 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IKE] server requested EAP_TTLS authentication (id 0xCA)
225 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[TLS] EAP_TTLS version is v0
226 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] generating IKE_AUTH request 3 [ EAP/RES/TTLS ]
227 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (172 bytes)
228 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1100 bytes)
229 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[ENC] parsed IKE_AUTH response 3 [ EAP/REQ/TTLS ]
230 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[ENC] generating IKE_AUTH request 4 [ EAP/RES/TTLS ]
231 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 14[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
232 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (1084 bytes)
233 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[ENC] parsed IKE_AUTH response 4 [ EAP/REQ/TTLS ]
234 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] negotiated TLS 1.2 using suite TLS_DHE_RSA_WITH_AES_128_CBC_SHA
235 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] received TLS server certificate 'C=CH, O=Linux strongSwan, CN=aaa.strongswan.org'
236 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using certificate "C=CH, O=Linux strongSwan, CN=aaa.strongswan.org"
237 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using trusted ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
238 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG] checking certificate status of "C=CH, O=Linux strongSwan, CN=aaa.strongswan.org"
239 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using trusted certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
240 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   crl correctly signed by "C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
241 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   crl is valid: until Sep 03 17:23:39 2015
242 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   using cached crl
243 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG] certificate status is good
244 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[CFG]   reached self-signed root ca with a path length of 0
245 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] received TLS cert request for 'C=CH, O=Linux strongSwan, CN=strongSwan Root CA
246 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[TLS] no TLS peer certificate found for 'carol', skipping client authentication
247 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[ENC] generating IKE_AUTH request 5 [ EAP/RES/TTLS ]
248 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 15[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (428 bytes)
249 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (220 bytes)
250 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[ENC] parsed IKE_AUTH response 5 [ EAP/REQ/TTLS ]
251 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/ID]
252 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] server requested EAP_IDENTITY authentication (id 0x00)
253 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/ID]
254 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[ENC] generating IKE_AUTH request 6 [ EAP/RES/TTLS ]
255 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 16[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
256 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (172 bytes)
257 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[ENC] parsed IKE_AUTH response 6 [ EAP/REQ/TTLS ]
258 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/MD5]
259 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] server requested EAP_MD5 authentication (id 0x1B)
260 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/MD5]
261 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[ENC] generating IKE_AUTH request 7 [ EAP/RES/TTLS ]
262 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 02[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (172 bytes)
263 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (156 bytes)
264 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[ENC] parsed IKE_AUTH response 7 [ EAP/REQ/TTLS ]
265 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
266 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] server requested EAP_PT_EAP authentication (id 0x33)
267 9 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TLS] EAP_PT_EAP version is v1
268 10 Andreas Steffen
</pre>
269 2 Andreas Steffen
270 5 Andreas Steffen
THE PB-TNC connection between TNC client and TNC server is established. The maximum size of  a PA-TNC message is limited to 16338 bytes.
271 2 Andreas Steffen
<pre>
272 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] TNC client is handling outbound connection
273 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] assigned TNCCS Connection ID 1
274 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 1 "OS" created a state for IF-TNCCS 2.0 Connection ID 1: +long +excl -soh
275 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   over IF-T for Tunneled EAP 2.0 with maximum PA-TNC message size of 16338 bytes
276 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 2 "HCD" created a state for IF-TNCCS 2.0 Connection ID 1: +long +excl -soh
277 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   over IF-T for Tunneled EAP 2.0 with maximum PA-TNC message size of 16338 bytes
278 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 1 "OS" changed state of Connection ID 1 to 'Handshake'
279 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IMC 2 "HCD" changed state of Connection ID 1 to 'Handshake'
280 2 Andreas Steffen
</pre>
281 1 Andreas Steffen
282 14 Andreas Steffen
h2. Sending standard OS attributes
283 14 Andreas Steffen
284 6 Andreas Steffen
The OS IMC retrieves information on the operating system
285 2 Andreas Steffen
<pre>
286 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] operating system numeric version is 1.0
287 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] last boot: Aug 04 17:24:00 UTC 2015, 15 s ago
288 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] IPv4 forwarding is disabled
289 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] factory default password is enabled
290 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] device ID is 79433e32cfc1d0d3e7a637c954f0870e
291 2 Andreas Steffen
</pre>
292 1 Andreas Steffen
293 6 Andreas Steffen
The OS IMC is sending operating system information using IETF standard attributes
294 2 Andreas Steffen
<pre>
295 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xfbbcb9bd
296 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Product Information' 0x000000/0x00000002
297 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/String Version' 0x000000/0x00000004
298 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Numeric Version' 0x000000/0x00000003
299 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Operational Status' 0x000000/0x00000005
300 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Forwarding Enabled' 0x000000/0x0000000b
301 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'IETF/Factory Default Password Enabled' 0x000000/0x0000000c
302 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'ITA-HSR/Device ID' 0x00902a/0x00000008
303 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 197 bytes @ 0x7b0b70
304 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 FB BC B9 BD 00 00 00 00 00 00 00 02  ................
305 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 1F 00 00 00 00 00 73 74 72 6F 6E 67 50  .........strongP
306 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   32: 72 69 6E 74 20 4F 53 00 00 00 00 00 00 00 04 00  rint OS.........
307 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   48: 00 00 12 03 31 2E 30 00 00 00 00 00 00 00 00 00  ....1.0.........
308 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   64: 03 00 00 00 1C 00 00 00 01 00 00 00 00 00 00 00  ................
309 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   80: 00 00 00 00 00 00 00 00 00 00 00 00 05 00 00 00  ................
310 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   96: 24 03 01 00 00 32 30 31 35 2D 30 38 2D 30 34 54  $....2015-08-04T
311 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  112: 31 37 3A 32 34 3A 30 30 5A 00 00 00 00 00 00 00  17:24:00Z.......
312 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  128: 0B 00 00 00 10 00 00 00 00 00 00 00 00 00 00 00  ................
313 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  144: 0C 00 00 00 10 00 00 00 01 00 00 90 2A 00 00 00  ............*...
314 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  160: 08 00 00 00 2C 37 39 34 33 33 65 33 32 63 66 63  ....,79433e32cfc
315 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  176: 31 64 30 64 33 65 37 61 36 33 37 63 39 35 34 66  1d0d3e7a637c954f
316 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  192: 30 38 37 30 65                                   0870e
317 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'IETF/Operating System' 0x000000/0x00000001
318 2 Andreas Steffen
</pre>
319 1 Andreas Steffen
320 14 Andreas Steffen
h2. Sending basic HCD attributes
321 14 Andreas Steffen
322 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD System. Since _push_info = no_ was set in the *imc-hcd* plugin section of _strongswan.conf_ no large
323 8 Andreas Steffen
_Firmware_, _UserApplication_ or _ResidentApplication_ quadruples are sent without an explict attribute request from the HCD IMV.
324 2 Andreas Steffen
<pre>
325 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD System
326 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
327 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD DefaultPasswordEnabled: yes
328 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD ForwardingEnabled: disabled
329 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD MachineTypeModel: strongPrint Laser X.509a
330 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD PSTNFaxEnabled: yes
331 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD TimeSource: 0.ch.pool.ntp.org
332 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD VendorName: ITA-HSR
333 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD VendorSMICode: 0x00902a (36906)
334 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD UserApplicationEnabled: yes
335 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD UserApplicationPersistenceEnabled: no
336 1 Andreas Steffen
</pre>
337 2 Andreas Steffen
338 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD System
339 8 Andreas Steffen
<pre>
340 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x7add7208
341 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
342 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD DefaultPasswordEnabled' 0x000a8b/0x00000014
343 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD ForwardingEnabled' 0x000a8b/0x00000016
344 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD MachineTypeModel' 0x000a8b/0x00000002
345 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD PSTNFaxEnabled' 0x000a8b/0x00000028
346 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD TimeSource' 0x000a8b/0x00000032
347 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD VendorName' 0x000a8b/0x00000003
348 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD VendorSMICode' 0x000a8b/0x00000004
349 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationEnabled' 0x000a8b/0x00000068
350 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPersistenceEnabled' 0x000a8b/0x00000069
351 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 202 bytes @ 0x7b2c70
352 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 7A DD 72 08 00 00 0A 8B 00 00 00 01  ....z.r.........
353 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E 00 00 0A 8B 00 00 00 14 00 00  ....en..........
354 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   32: 00 10 00 00 00 01 00 00 0A 8B 00 00 00 16 00 00  ................
355 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   48: 00 10 00 00 00 00 00 00 0A 8B 00 00 00 02 00 00  ................
356 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   64: 00 24 73 74 72 6F 6E 67 50 72 69 6E 74 20 4C 61  .$strongPrint La
357 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   80: 73 65 72 20 58 2E 35 30 39 61 00 00 0A 8B 00 00  ser X.509a......
358 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   96: 00 28 00 00 00 10 00 00 00 01 00 00 0A 8B 00 00  .(..............
359 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  112: 00 32 00 00 00 1D 30 2E 63 68 2E 70 6F 6F 6C 2E  .2....0.ch.pool.
360 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  128: 6E 74 70 2E 6F 72 67 00 00 0A 8B 00 00 00 03 00  ntp.org.........
361 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  144: 00 00 13 49 54 41 2D 48 53 52 00 00 0A 8B 00 00  ...ITA-HSR......
362 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  160: 00 04 00 00 00 10 00 00 90 2A 00 00 0A 8B 00 00  .........*......
363 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  176: 00 68 00 00 00 10 00 00 00 01 00 00 0A 8B 00 00  .h..............
364 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]  192: 00 69 00 00 00 10 00 00 00 00                    .i........
365 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
366 2 Andreas Steffen
</pre>
367 1 Andreas Steffen
368 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Console
369 2 Andreas Steffen
<pre>
370 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Console
371 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: ru
372 2 Andreas Steffen
</pre>
373 1 Andreas Steffen
374 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Console
375 2 Andreas Steffen
<pre>
376 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xc08b37ea
377 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
378 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7a6de0
379 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 C0 8B 37 EA 00 00 0A 8B 00 00 00 01  ......7.........
380 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 72 75                                ....ru
381 10 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
382 5 Andreas Steffen
</pre>
383 1 Andreas Steffen
384 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Marker
385 5 Andreas Steffen
<pre>
386 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Marker
387 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: fr
388 5 Andreas Steffen
</pre>
389 1 Andreas Steffen
390 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Marker
391 5 Andreas Steffen
<pre>
392 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xba97337a
393 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
394 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b3e20
395 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 BA 97 33 7A 00 00 0A 8B 00 00 00 01  ......3z........
396 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 66 72                                ....fr
397 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
398 2 Andreas Steffen
</pre>
399 1 Andreas Steffen
400 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Finisher
401 2 Andreas Steffen
<pre>
402 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Finisher
403 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: de
404 2 Andreas Steffen
</pre>
405 1 Andreas Steffen
406 8 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Finisher
407 2 Andreas Steffen
<pre>
408 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x649b1045
409 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
410 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b1320
411 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 64 9B 10 45 00 00 0A 8B 00 00 00 01  ....d..E........
412 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 64 65                                ....de
413 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
414 2 Andreas Steffen
</pre>
415 1 Andreas Steffen
416 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Interface
417 2 Andreas Steffen
<pre>
418 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Interface
419 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
420 1 Andreas Steffen
</pre>
421 1 Andreas Steffen
422 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Interface
423 8 Andreas Steffen
<pre>
424 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0xa55e5dcb
425 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
426 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b2a10
427 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 A5 5E 5D CB 00 00 0A 8B 00 00 00 01  .....^].........
428 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E                                ....en
429 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
430 1 Andreas Steffen
</pre>
431 1 Andreas Steffen
432 8 Andreas Steffen
The HCD IMC is retrieving attributes for PA subtype PWG/HCD Scanner
433 1 Andreas Steffen
<pre>
434 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] retrieving attributes for PA subtype PWG/HCD Scanner
435 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   HCD AttributesNaturalLanguage: en
436 1 Andreas Steffen
</pre>
437 1 Andreas Steffen
438 1 Andreas Steffen
The HCD IMC is sending the retrieved PA-TNC attributes in a PA-TNC message of subtype PWG/HCD Scanner
439 1 Andreas Steffen
<pre>
440 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC message with ID 0x9b793f7a
441 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PA-TNC attribute type 'PWG/HCD AttributesNaturalLanguage' 0x000a8b/0x00000001
442 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC] created PA-TNC message: => 22 bytes @ 0x7b0a90
443 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]    0: 01 00 00 00 9B 79 3F 7A 00 00 0A 8B 00 00 00 01  .....y?z........
444 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IMC]   16: 00 00 00 0E 65 6E                                ....en
445 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
446 1 Andreas Steffen
</pre>
447 2 Andreas Steffen
448 1 Andreas Steffen
The first Client Data PB-TNC batch is sent to the TNC server
449 1 Andreas Steffen
<pre>
450 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] PB-TNC state transition from 'Init' to 'Server Working'
451 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] creating PB-TNC CDATA batch
452 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-Language-Preference message
453 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
454 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
455 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
456 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
457 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
458 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
459 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] adding IETF/PB-PA message
460 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[TNC] sending PB-TNC CDATA batch (716 bytes) for Connection ID 1
461 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
462 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[ENC] generating IKE_AUTH request 8 [ EAP/RES/TTLS ]
463 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 01[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (876 bytes)
464 1 Andreas Steffen
</pre>
465 1 Andreas Steffen
466 14 Andreas Steffen
h2. Sending HCD quadruples upon request
467 14 Andreas Steffen
468 11 Andreas Steffen
In response a Server Data PB-TNC batch is received
469 2 Andreas Steffen
<pre>
470 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (748 bytes)
471 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[ENC] parsed IKE_AUTH response 8 [ EAP/REQ/TTLS ]
472 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
473 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] received TNCCS batch (602 bytes)
474 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] TNC client is handling inbound connection
475 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PB-TNC SDATA batch for Connection ID 1
476 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] PB-TNC state transition from 'Server Working' to 'Client Working'
477 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing TCG/PB-PDP-Referral message (42 bytes)
478 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (112 bytes)
479 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
480 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
481 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
482 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
483 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing IETF/PB-PA message (88 bytes)
484 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] PDP server 'aaa.strongswan.org' is listening on port 271
485 1 Andreas Steffen
</pre>
486 1 Andreas Steffen
487 11 Andreas Steffen
The first PA-TNC message of subtype PWG/HCD System contains attribute requests for missing attributes
488 2 Andreas Steffen
<pre>
489 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
490 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
491 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 88 bytes @ 0x7b4ce0
492 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 86 16 79 E2 00 00 55 97 00 00 00 21  ......y...U....!
493 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
494 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 3C 00 00 0A 8B 00 00 00 15  .......<........
495 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 3C 00 00 0A 8B 00 00 00 50  .......<.......P
496 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 00 00 0A 8B 00 00 00 64 00 00 0A 8B 00 00 00 C8  .......d........
497 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 00 00 0A 8B 00 00 00 C9                          ........
498 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0x861679e2
499 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
500 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
501 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000015 'PWG/HCD FirewallSetting'
502 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
503 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
504 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
505 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x000000c8 'PWG/HCD CertificationState'
506 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x000000c9 'PWG/HCD ConfigurationState'
507 1 Andreas Steffen
</pre>
508 1 Andreas Steffen
509 2 Andreas Steffen
<pre>
510 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD System' 0x000a8b/0x00000005
511 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
512 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
513 1 Andreas Steffen
</pre>
514 1 Andreas Steffen
515 2 Andreas Steffen
<pre>
516 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- fw-1 ---
517 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareName: Firmware ABC
518 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwarePatches:
519 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2014-05-08#015
520 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] upgrade 2014-08-16#015
521 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2015-3-22#015
522 1 Andreas Steffen
</pre>
523 1 Andreas Steffen
524 1 Andreas Steffen
<pre>
525 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- fw-2 ---
526 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareName: Firmware UVW
527 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwarePatches: 
528 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareStringVersion: 13.8.5
529 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareVersion: 00:00:00:0d:00:00:00:08:00:00:00:05:00:00:00:00
530 1 Andreas Steffen
</pre>
531 1 Andreas Steffen
532 1 Andreas Steffen
<pre>
533 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- resident-app-1 ---
534 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationName: Resident App XYZ
535 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationPatches:
536 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] xmas patch 2014-12-24#015
537 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] service patch 2015-05-22#015
538 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationStringVersion: 2.5
539 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationVersion: 00:00:00:02:00:00:00:05:00:00:00:00:00:00:00:00
540 1 Andreas Steffen
</pre>
541 1 Andreas Steffen
542 2 Andreas Steffen
<pre>
543 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-1 ---
544 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: My Java Photo App
545 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
546 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 5.2.3.8.1
547 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:05:00:00:00:02:00:00:00:03:00:08:00:01
548 1 Andreas Steffen
</pre>
549 1 Andreas Steffen
550 2 Andreas Steffen
<pre>
551 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-2 ---
552 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: Print Your Dinosaur!
553 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
554 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 1.0
555 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:01:00:00:00:00:00:00:00:00:00:00:00:00
556 1 Andreas Steffen
</pre>
557 1 Andreas Steffen
558 2 Andreas Steffen
<pre>
559 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-3 ---
560 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: Label Everything App
561 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
562 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 7.5.8.2.3
563 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:07:00:00:00:05:00:00:00:08:00:02:00:03
564 1 Andreas Steffen
</pre>
565 1 Andreas Steffen
566 2 Andreas Steffen
<pre>
567 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD CertificationState: => 32 bytes @ 0x7b7d50
568 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F  ................
569 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F  ................
570 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ConfigurationState: => 48 bytes @ 0x7b96f0
571 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: F0 F1 F2 F3 F4 F5 F6 F7 F8 F9 FA FB FC FD FE FF  ................
572 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: E0 E1 E2 E3 E4 E5 E6 E7 E8 E9 EA EB EC ED EE EF  ................
573 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: D0 D1 D2 D3 D4 D5 D6 D7 D8 D9 DA DB DC DD DE DF  ................
574 1 Andreas Steffen
</pre>
575 1 Andreas Steffen
576 2 Andreas Steffen
<pre>
577 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0xc1018e8f
578 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
579 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
580 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
581 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
582 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
583 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
584 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
585 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
586 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
587 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationName' 0x000a8b/0x00000050
588 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationPatches' 0x000a8b/0x00000051
589 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationStringVersion' 0x000a8b/0x00000052
590 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationVersion' 0x000a8b/0x00000053
591 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
592 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
593 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
594 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
595 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
596 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
597 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
598 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
599 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
600 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
601 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
602 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
603 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD CertificationState' 0x000a8b/0x000000c8
604 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ConfigurationState' 0x000a8b/0x000000c9
605 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 770 bytes @ 0x7becc0
606 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 C1 01 8E 8F 00 00 55 97 00 00 00 22  ..........U...."
607 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
608 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 3C 00 00 00 18 46 69 72 6D 77 61 72 65  ...<....Firmware
609 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 20 41 42 43 00 00 0A 8B 00 00 00 3D 00 00 00 55   ABC.......=...U
610 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 73 65 63 75 72 69 74 79 20 70 61 74 63 68 20 32  security patch 2
611 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 30 31 34 2D 30 35 2D 30 38 0D 0A 75 70 67 72 61  014-05-08..upgra
612 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   96: 64 65 20 32 30 31 34 2D 30 38 2D 31 36 0D 0A 73  de 2014-08-16..s
613 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  112: 65 63 75 72 69 74 79 20 70 61 74 63 68 20 32 30  ecurity patch 20
614 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  128: 31 35 2D 33 2D 32 32 0D 0A 00 00 0A 8B 00 00 00  15-3-22.........
615 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  144: 3E 00 00 00 11 31 2E 30 2E 37 00 00 0A 8B 00 00  >....1.0.7......
616 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  160: 00 3F 00 00 00 1C 00 00 00 01 00 00 00 00 00 00  .?..............
617 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  176: 00 07 00 00 00 00 00 00 0A 8B 00 00 00 3C 00 00  .............<..
618 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  192: 00 18 46 69 72 6D 77 61 72 65 20 55 56 57 00 00  ..Firmware UVW..
619 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  208: 0A 8B 00 00 00 3D 00 00 00 0C 00 00 0A 8B 00 00  .....=..........
620 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  224: 00 3E 00 00 00 12 31 33 2E 38 2E 35 00 00 0A 8B  .>....13.8.5....
621 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  240: 00 00 00 3F 00 00 00 1C 00 00 00 0D 00 00 00 08  ...?............
622 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  256: 00 00 00 05 00 00 00 00 00 00 0A 8B 00 00 00 50  ...............P
623 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  272: 00 00 00 1C 52 65 73 69 64 65 6E 74 20 41 70 70  ....Resident App
624 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  288: 20 58 59 5A 00 00 0A 8B 00 00 00 51 00 00 00 3D   XYZ.......Q...=
625 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  304: 78 6D 61 73 20 70 61 74 63 68 20 32 30 31 34 2D  xmas patch 2014-
626 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  320: 31 32 2D 32 34 0D 0A 73 65 72 76 69 63 65 20 70  12-24..service p
627 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  336: 61 74 63 68 20 32 30 31 35 2D 30 35 2D 32 32 0D  atch 2015-05-22.
628 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  352: 0A 00 00 0A 8B 00 00 00 52 00 00 00 0F 32 2E 35  ........R....2.5
629 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  368: 00 00 0A 8B 00 00 00 53 00 00 00 1C 00 00 00 02  .......S........
630 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  384: 00 00 00 05 00 00 00 00 00 00 00 00 00 00 0A 8B  ................
631 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  400: 00 00 00 64 00 00 00 1D 4D 79 20 4A 61 76 61 20  ...d....My Java 
632 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  416: 50 68 6F 74 6F 20 41 70 70 00 00 0A 8B 00 00 00  Photo App.......
633 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  432: 65 00 00 00 0C 00 00 0A 8B 00 00 00 66 00 00 00  e...........f...
634 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  448: 15 35 2E 32 2E 33 2E 38 2E 31 00 00 0A 8B 00 00  .5.2.3.8.1......
635 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  464: 00 67 00 00 00 1C 00 00 00 05 00 00 00 02 00 00  .g..............
636 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  480: 00 03 00 08 00 01 00 00 0A 8B 00 00 00 64 00 00  .............d..
637 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  496: 00 20 50 72 69 6E 74 20 59 6F 75 72 20 44 69 6E  . Print Your Din
638 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  512: 6F 73 61 75 72 21 00 00 0A 8B 00 00 00 65 00 00  osaur!.......e..
639 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  528: 00 0C 00 00 0A 8B 00 00 00 66 00 00 00 0F 31 2E  .........f....1.
640 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  544: 30 00 00 0A 8B 00 00 00 67 00 00 00 1C 00 00 00  0.......g.......
641 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  560: 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 0A  ................
642 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  576: 8B 00 00 00 64 00 00 00 20 4C 61 62 65 6C 20 45  ....d... Label E
643 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  592: 76 65 72 79 74 68 69 6E 67 20 41 70 70 00 00 0A  verything App...
644 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  608: 8B 00 00 00 65 00 00 00 0C 00 00 0A 8B 00 00 00  ....e...........
645 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  624: 66 00 00 00 15 37 2E 35 2E 38 2E 32 2E 33 00 00  f....7.5.8.2.3..
646 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  640: 0A 8B 00 00 00 67 00 00 00 1C 00 00 00 07 00 00  .....g..........
647 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  656: 00 05 00 00 00 08 00 02 00 03 00 00 0A 8B 00 00  ................
648 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  672: 00 C8 00 00 00 2C 00 01 02 03 04 05 06 07 08 09  .....,..........
649 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  688: 0A 0B 0C 0D 0E 0F 10 11 12 13 14 15 16 17 18 19  ................
650 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  704: 1A 1B 1C 1D 1E 1F 00 00 0A 8B 00 00 00 C9 00 00  ................
651 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  720: 00 3C F0 F1 F2 F3 F4 F5 F6 F7 F8 F9 FA FB FC FD  .<..............
652 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  736: FE FF E0 E1 E2 E3 E4 E5 E6 E7 E8 E9 EA EB EC ED  ................
653 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  752: EE EF D0 D1 D2 D3 D4 D5 D6 D7 D8 D9 DA DB DC DD  ................
654 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  768: DE DF                                            ..
655 11 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD System' 0x000a8b/0x00000005
656 1 Andreas Steffen
</pre>
657 2 Andreas Steffen
658 11 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Console also contains attribute requests for missing attributes
659 2 Andreas Steffen
<pre>
660 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
661 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
662 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7b7730
663 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 F4 04 56 EE 00 00 55 97 00 00 00 21  ......V...U....!
664 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
665 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
666 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
667 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0xf40456ee
668 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
669 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
670 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
671 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
672 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
673 2 Andreas Steffen
</pre>
674 1 Andreas Steffen
675 1 Andreas Steffen
<pre>
676 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
677 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
678 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
679 2 Andreas Steffen
</pre>
680 2 Andreas Steffen
681 2 Andreas Steffen
<pre>
682 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0x0076a4b4
683 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
684 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 28 bytes @ 0x7b61e0
685 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 00 76 A4 B4 00 00 55 97 00 00 00 22  .....v....U...."
686 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
687 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Console' 0x000a8b/0x00000004
688 1 Andreas Steffen
</pre>
689 3 Andreas Steffen
690 1 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Marker also contains attribute requests for missing attributes
691 11 Andreas Steffen
<pre>
692 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
693 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
694 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7b7470
695 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 17 E7 9B 01 00 00 55 97 00 00 00 21  ..........U....!
696 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
697 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
698 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
699 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0x17e79b01
700 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
701 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
702 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
703 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
704 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
705 13 Andreas Steffen
</pre>
706 1 Andreas Steffen
707 1 Andreas Steffen
<pre>
708 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
709 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
710 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
711 1 Andreas Steffen
</pre>
712 1 Andreas Steffen
713 1 Andreas Steffen
<pre>
714 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0x206fbf0c
715 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
716 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 28 bytes @ 0x7b4d10
717 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 20 6F BF 0C 00 00 55 97 00 00 00 22  .... o....U...."
718 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
719 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Marker' 0x000a8b/0x0000000a
720 1 Andreas Steffen
</pre>
721 1 Andreas Steffen
722 12 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Finisher also contains attribute requests for missing attributes
723 1 Andreas Steffen
<pre>
724 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
725 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
726 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7b7470
727 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 F8 29 1D 74 00 00 55 97 00 00 00 21  .....).t..U....!
728 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
729 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
730 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
731 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0xf8291d74
732 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
733 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
734 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
735 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
736 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
737 1 Andreas Steffen
</pre>
738 1 Andreas Steffen
739 1 Andreas Steffen
<pre>
740 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
741 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
742 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
743 1 Andreas Steffen
</pre>
744 1 Andreas Steffen
745 1 Andreas Steffen
<pre>
746 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0x9f1c93d6
747 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
748 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 28 bytes @ 0x7b6630
749 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 9F 1C 93 D6 00 00 55 97 00 00 00 22  ..........U...."
750 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6              ..........?.
751 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Finisher' 0x000a8b/0x0000001e
752 1 Andreas Steffen
</pre>
753 1 Andreas Steffen
754 12 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Interface also contains attribute requests for missing attributes
755 1 Andreas Steffen
<pre>
756 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
757 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
758 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7bef80
759 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 4A BC 71 FC 00 00 55 97 00 00 00 21  ....J.q...U....!
760 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
761 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
762 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
763 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0x4abc71fc
764 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
765 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
766 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
767 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
768 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
769 1 Andreas Steffen
</pre>
770 1 Andreas Steffen
771 3 Andreas Steffen
<pre>
772 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
773 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
774 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
775 1 Andreas Steffen
</pre>
776 1 Andreas Steffen
777 1 Andreas Steffen
<pre>
778 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- resident-app-if ---
779 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationName: Resident App Interface+
780 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationPatches:
781 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] service patch 2015-02-09#015
782 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationStringVersion: 2.5
783 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD ResidentApplicationVersion: 00:00:00:02:00:00:00:05:00:00:00:00:00:00:00:00
784 1 Andreas Steffen
</pre>
785 1 Andreas Steffen
786 1 Andreas Steffen
<pre>
787 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0xcd4397f4
788 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
789 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationName' 0x000a8b/0x00000050
790 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationPatches' 0x000a8b/0x00000051
791 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationStringVersion' 0x000a8b/0x00000052
792 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD ResidentApplicationVersion' 0x000a8b/0x00000053
793 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 144 bytes @ 0x7b4ec0
794 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 CD 43 97 F4 00 00 55 97 00 00 00 22  .....C....U...."
795 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
796 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 50 00 00 00 23 52 65 73 69 64 65 6E 74  ...P...#Resident
797 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 20 41 70 70 20 49 6E 74 65 72 66 61 63 65 2B 00   App Interface+.
798 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 00 0A 8B 00 00 00 51 00 00 00 26 73 65 72 76 69  ......Q...&servi
799 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 63 65 20 70 61 74 63 68 20 32 30 31 35 2D 30 32  ce patch 2015-02
800 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   96: 2D 30 39 0D 0A 00 00 0A 8B 00 00 00 52 00 00 00  -09.........R...
801 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  112: 0F 32 2E 35 00 00 0A 8B 00 00 00 53 00 00 00 1C  .2.5.......S....
802 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  128: 00 00 00 02 00 00 00 05 00 00 00 00 00 00 00 00  ................
803 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Interface' 0x000a8b/0x00000028
804 1 Andreas Steffen
</pre>
805 1 Andreas Steffen
806 12 Andreas Steffen
The next PA-TNC message of subtype PWG/HCD Scanner also contains attribute requests for missing attributes
807 1 Andreas Steffen
<pre>
808 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] handling PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
809 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 "HCD" received message for Connection ID 1 from IMV 1
810 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] => 64 bytes @ 0x7b8db0
811 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 CB B4 70 D2 00 00 55 97 00 00 00 21  ......p...U....!
812 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 FF A6 00 00 00 00  ................
813 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 01 00 00 00 24 00 00 0A 8B 00 00 00 3C  .......$.......<
814 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 00 00 0A 8B 00 00 00 50 00 00 0A 8B 00 00 00 64  .......P.......d
815 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC message with ID 0xcbb470d2
816 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'TCG/Max Attribute Size Request' 0x005597/0x00000021
817 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] processing PA-TNC attribute type 'IETF/Attribute Request' 0x000000/0x00000001
818 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x0000003c 'PWG/HCD FirmwareName'
819 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000050 'PWG/HCD ResidentApplicationName'
820 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC]   0x000a8b/0x00000064 'PWG/HCD UserApplicationName'
821 3 Andreas Steffen
</pre>
822 3 Andreas Steffen
823 3 Andreas Steffen
<pre>
824 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] IMC 2 received a segmentation contract request from IMV 1 for PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
825 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   maximum attribute size of 10000000 bytes with maximum segment size of 65446 bytes
826 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   lowered maximum segment size to 16294 bytes
827 1 Andreas Steffen
</pre>
828 1 Andreas Steffen
829 1 Andreas Steffen
<pre>
830 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- fw-scanner ---
831 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareName: Scanner Firmware
832 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwarePatches:
833 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2013-08-11#015
834 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] security patch 2015-5-30#015
835 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareStringVersion: 2.5.3
836 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD FirmwareVersion: 00:00:00:02:00:00:00:05:00:00:00:03:00:00:00:00
837 1 Andreas Steffen
</pre>
838 3 Andreas Steffen
839 3 Andreas Steffen
<pre>
840 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] --- user-app-scanner ---
841 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationName: EasyScan
842 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationPatches: 
843 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationStringVersion: 2.2.3.5.7
844 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   HCD UserApplicationVersion: 00:00:00:02:00:00:00:02:00:00:00:03:00:05:00:07
845 1 Andreas Steffen
</pre>
846 1 Andreas Steffen
847 1 Andreas Steffen
<pre>
848 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC message with ID 0x6238a2db
849 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'TCG/Max Attribute Size Response' 0x005597/0x00000022
850 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareName' 0x000a8b/0x0000003c
851 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwarePatches' 0x000a8b/0x0000003d
852 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareStringVersion' 0x000a8b/0x0000003e
853 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD FirmwareVersion' 0x000a8b/0x0000003f
854 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationName' 0x000a8b/0x00000064
855 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationPatches' 0x000a8b/0x00000065
856 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationStringVersion' 0x000a8b/0x00000066
857 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PA-TNC attribute type 'PWG/HCD UserApplicationVersion' 0x000a8b/0x00000067
858 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC] created PA-TNC message: => 247 bytes @ 0x7b9d60
859 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]    0: 01 00 00 00 62 38 A2 DB 00 00 55 97 00 00 00 22  ....b8....U...."
860 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   16: 00 00 00 14 00 98 96 80 00 00 3F A6 00 00 0A 8B  ..........?.....
861 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   32: 00 00 00 3C 00 00 00 1C 53 63 61 6E 6E 65 72 20  ...<....Scanner 
862 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   48: 46 69 72 6D 77 61 72 65 00 00 0A 8B 00 00 00 3D  Firmware.......=
863 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   64: 00 00 00 41 73 65 63 75 72 69 74 79 20 70 61 74  ...Asecurity pat
864 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   80: 63 68 20 32 30 31 33 2D 30 38 2D 31 31 0D 0A 73  ch 2013-08-11..s
865 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]   96: 65 63 75 72 69 74 79 20 70 61 74 63 68 20 32 30  ecurity patch 20
866 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  112: 31 35 2D 35 2D 33 30 0D 0A 00 00 0A 8B 00 00 00  15-5-30.........
867 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  128: 3E 00 00 00 11 32 2E 35 2E 33 00 00 0A 8B 00 00  >....2.5.3......
868 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  144: 00 3F 00 00 00 1C 00 00 00 02 00 00 00 05 00 00  .?..............
869 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  160: 00 03 00 00 00 00 00 00 0A 8B 00 00 00 64 00 00  .............d..
870 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  176: 00 14 45 61 73 79 53 63 61 6E 00 00 0A 8B 00 00  ..EasyScan......
871 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  192: 00 65 00 00 00 0C 00 00 0A 8B 00 00 00 66 00 00  .e...........f..
872 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  208: 00 15 32 2E 32 2E 33 2E 35 2E 37 00 00 0A 8B 00  ..2.2.3.5.7.....
873 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  224: 00 00 67 00 00 00 1C 00 00 00 02 00 00 00 02 00  ..g.............
874 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IMC]  240: 00 00 03 00 05 00 07                             .......
875 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-PA message type 'PWG/HCD Scanner' 0x000a8b/0x00000032
876 1 Andreas Steffen
</pre>
877 1 Andreas Steffen
878 1 Andreas Steffen
<pre>
879 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] TNC client is handling outbound connection
880 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] PB-TNC state transition from 'Client Working' to 'Server Working'
881 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] creating PB-TNC CDATA batch
882 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
883 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
884 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
885 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
886 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
887 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] adding IETF/PB-PA message
888 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[TNC] sending PB-TNC CDATA batch (1397 bytes) for Connection ID 1
889 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
890 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[ENC] generating IKE_AUTH request 9 [ EAP/RES/TTLS ]
891 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 05[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (1100 bytes)
892 1 Andreas Steffen
</pre>
893 1 Andreas Steffen
894 14 Andreas Steffen
h2. No more attributes to send
895 14 Andreas Steffen
896 1 Andreas Steffen
<pre>
897 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 11[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
898 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 11[ENC] parsed IKE_AUTH response 9 [ EAP/REQ/TTLS ]
899 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 11[ENC] generating IKE_AUTH request 10 [ EAP/RES/TTLS ]
900 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 11[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (524 bytes)
901 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (156 bytes)
902 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[ENC] parsed IKE_AUTH response 10 [ EAP/REQ/TTLS ]
903 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
904 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] received TNCCS batch (8 bytes)
905 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] TNC client is handling inbound connection
906 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] processing PB-TNC SDATA batch for Connection ID 1
907 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] PB-TNC state transition from 'Server Working' to 'Client Working'
908 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] TNC client is handling outbound connection
909 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] no client data to send, sending empty PB-TNC CDATA batch
910 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] PB-TNC state transition from 'Client Working' to 'Server Working'
911 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] creating PB-TNC CDATA batch
912 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[TNC] sending PB-TNC CDATA batch (8 bytes) for Connection ID 1
913 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
914 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[ENC] generating IKE_AUTH request 11 [ EAP/RES/TTLS ]
915 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 04[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
916 1 Andreas Steffen
</pre>
917 14 Andreas Steffen
918 15 Andreas Steffen
h2. Receiving assessment result
919 1 Andreas Steffen
920 1 Andreas Steffen
<pre>
921 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (188 bytes)
922 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[ENC] parsed IKE_AUTH response 11 [ EAP/REQ/TTLS ]
923 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/PT]
924 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] received TNCCS batch (40 bytes)
925 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] TNC client is handling inbound connection
926 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] processing PB-TNC RESULT batch for Connection ID 1
927 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] PB-TNC state transition from 'Server Working' to 'Decided'
928 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] processing IETF/PB-Assessment-Result message (16 bytes)
929 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] processing IETF/PB-Access-Recommendation message (16 bytes)
930 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] PB-TNC assessment result is 'don't know'
931 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] PB-TNC access recommendation is 'Access Denied'
932 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[IMC] IMC 1 "OS" changed state of Connection ID 1 to 'None'
933 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[IMC] IMC 2 "HCD" changed state of Connection ID 1 to 'None'
934 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] TNC client is handling outbound connection
935 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] PB-TNC state transition from 'Decided' to 'End'
936 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] creating PB-TNC CLOSE batch
937 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[TNC] sending PB-TNC CLOSE batch (8 bytes) for Connection ID 1
938 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/PT]
939 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[ENC] generating IKE_AUTH request 12 [ EAP/RES/TTLS ]
940 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 12[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (156 bytes)
941 1 Andreas Steffen
</pre>
942 1 Andreas Steffen
943 1 Andreas Steffen
<pre>
944 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (140 bytes)
945 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] parsed IKE_AUTH response 12 [ EAP/REQ/TTLS ]
946 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[TLS] received TLS close notify
947 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[TLS] sending TLS close notify
948 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[ENC] generating IKE_AUTH request 13 [ EAP/RES/TTLS ]
949 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 13[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (140 bytes)
950 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.100[4500] (76 bytes)
951 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] parsed IKE_AUTH response 13 [ EAP/FAIL ]
952 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IKE] received EAP_FAILURE, EAP authentication failed
953 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[ENC] generating INFORMATIONAL request 14 [ N(AUTH_FAILED) ]
954 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[NET] sending packet: from 192.168.0.100[4500] to 192.168.0.1[4500] (76 bytes)
955 1 Andreas Steffen
</pre>
956 1 Andreas Steffen
957 1 Andreas Steffen
<pre>
958 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[TNC] TODO: setup PT-TLS connection to aaa.strongswan.org:271
959 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IMC] IMC 1 "OS" deleted the state of Connection ID 1
960 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[IMC] IMC 2 "HCD" deleted the state of Connection ID 1
961 12 Andreas Steffen
Aug  4 17:24:15 carol charon: 03[TNC] removed TNCCS Connection ID 1
962 1 Andreas Steffen
</pre>
963 12 Andreas Steffen
964 12 Andreas Steffen
<pre>
965 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[DMN] signal of type SIGINT received. Shutting down
966 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[IMC] IMC 2 "HCD" terminated
967 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[IMC] IMC 1 "OS" terminated
968 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[TNC] removed IETF attributes
969 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[TNC] removed ITA-HSR attributes
970 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[TNC] removed PWG attributes
971 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[TNC] removed TCG attributes
972 12 Andreas Steffen
Aug  4 17:24:59 carol charon: 00[LIB] libimcv terminated</pre>