TNC Client with PTS-IMC » History » Version 39
Andreas Steffen, 30.11.2011 10:49
1 | 16 | Andreas Steffen | h1. TNC Client with PTS-IMC |
---|---|---|---|
2 | 15 | Andreas Steffen | |
3 | 15 | Andreas Steffen | This HOWTO explains in a step-for-step fashion how a strongSwan IPsec client with integrated TNC client functionality and an attached Platform Trust Service Integrity Measurement Collector (PTS-IMC) can provide remote attestation measurement data to a TNC server via the IKEv2 EAP-TTLS protocol. |
4 | 1 | Andreas Steffen | |
5 | 14 | Andreas Steffen | {{>toc}} |
6 | 14 | Andreas Steffen | |
7 | 13 | Andreas Steffen | h2. Installation and Configuration |
8 | 13 | Andreas Steffen | |
9 | 12 | Andreas Steffen | The following steps describe the installation of the strongSwan software |
10 | 12 | Andreas Steffen | <pre> |
11 | 31 | Andreas Steffen | wget http://download.strongswan.org/strongswan-4.6.2dr1.tar.bz2 |
12 | 12 | Andreas Steffen | tar xjf strongswan-4.6.2dr1.tar.bz2 |
13 | 12 | Andreas Steffen | cd strongswan-4.6.2dr1 |
14 | 12 | Andreas Steffen | ./configure --prefix=/usr --sysconfdir=/etc --disable-pluto --enable-openssl --enable-curl |
15 | 12 | Andreas Steffen | --enable-eap --enable-eap-identity --enable-eap-md5 --enable-eap-ttls |
16 | 12 | Andreas Steffen | --enable-eap-tnc --enable-tnccs-20 --enable-tnc-imc --enable-imc-attestation |
17 | 12 | Andreas Steffen | make |
18 | 12 | Andreas Steffen | [sudo] make install |
19 | 12 | Andreas Steffen | </pre> |
20 | 12 | Andreas Steffen | |
21 | 4 | Andreas Steffen | The connection between IPsec client *carol* and IPsec gateway *moon* is defined in the /etc/ipsec.conf file: |
22 | 4 | Andreas Steffen | <pre> |
23 | 4 | Andreas Steffen | # ipsec.conf - strongSwan IPsec configuration file |
24 | 4 | Andreas Steffen | |
25 | 4 | Andreas Steffen | config setup |
26 | 4 | Andreas Steffen | charondebug="tnc 3, imc 3, pts 3" |
27 | 4 | Andreas Steffen | |
28 | 4 | Andreas Steffen | conn home |
29 | 4 | Andreas Steffen | left=%any |
30 | 4 | Andreas Steffen | leftid=carol@strongswan.org |
31 | 4 | Andreas Steffen | leftauth=eap |
32 | 4 | Andreas Steffen | right=192.168.0.1 |
33 | 4 | Andreas Steffen | rightid=@moon.strongswan.org |
34 | 4 | Andreas Steffen | rightsendcert=never |
35 | 4 | Andreas Steffen | rightsubnet=10.1.0.0/16 |
36 | 4 | Andreas Steffen | auto=start |
37 | 4 | Andreas Steffen | </pre> |
38 | 4 | Andreas Steffen | |
39 | 5 | Andreas Steffen | The debug levels for the TNC, IMC, and PTS components are increased to 3, so that HEX dumps of PB-TNC (IF-TNCCS 2.0) messages and PA-TNC (IF-M) attributes will be included in the log file. |
40 | 4 | Andreas Steffen | |
41 | 4 | Andreas Steffen | The IKEv2 client *carol* is going to use EAP-based authentication with the user credentials being stored in the /etc/ipsec.secrets file: |
42 | 4 | Andreas Steffen | <pre> |
43 | 4 | Andreas Steffen | # /etc/ipsec.secrets - strongSwan IPsec secrets file |
44 | 4 | Andreas Steffen | |
45 | 4 | Andreas Steffen | carol@strongswan.org : EAP "Ar3etTnp" |
46 | 4 | Andreas Steffen | </pre> |
47 | 4 | Andreas Steffen | |
48 | 8 | Andreas Steffen | The following IKEv2 charon and Attestation IMC options are defined in the /etc/strongswan.conf file |
49 | 1 | Andreas Steffen | <pre> |
50 | 8 | Andreas Steffen | # strongswan.conf - strongSwan configuration file |
51 | 8 | Andreas Steffen | |
52 | 8 | Andreas Steffen | charon { |
53 | 8 | Andreas Steffen | load = sha1 random gmp pkcs1 pem x509 pubkey openssl hmac revocation curl kernel-netlink socket-default eap-md5 eap-ttls eap-tnc tnc-imc tnc-tnccs tnccs-20 eap-identity resolve stroke |
54 | 8 | Andreas Steffen | plugins { |
55 | 1 | Andreas Steffen | eap-tnc { |
56 | 1 | Andreas Steffen | protocol = tnccs-2.0 |
57 | 12 | Andreas Steffen | } |
58 | 12 | Andreas Steffen | tnc-imc { |
59 | 12 | Andreas Steffen | preferred_language = en |
60 | 8 | Andreas Steffen | } |
61 | 8 | Andreas Steffen | } |
62 | 8 | Andreas Steffen | } |
63 | 8 | Andreas Steffen | |
64 | 8 | Andreas Steffen | libimcv { |
65 | 8 | Andreas Steffen | plugins { |
66 | 8 | Andreas Steffen | imc-attestation { |
67 | 8 | Andreas Steffen | aik_cert = /home/andi/privacyca/AIK_3_Cert.der |
68 | 8 | Andreas Steffen | aik_blob = /home/andi/privacyca/AIK_3_Blob.bin |
69 | 8 | Andreas Steffen | |
70 | 8 | Andreas Steffen | pcr17_meas = d537d437f058136eb3d7be517dbe7647b623c619 |
71 | 8 | Andreas Steffen | pcr17_before = 1717171717171717171717171717171717171717 |
72 | 8 | Andreas Steffen | pcr17_after = ffffffffffffffffffffffffffffffffffffffff |
73 | 8 | Andreas Steffen | |
74 | 8 | Andreas Steffen | pcr18_meas = 160d2b04d11eb225fb148615b699081869e15b6c |
75 | 8 | Andreas Steffen | pcr18_before = 1818181818181818181818181818181818181818 |
76 | 8 | Andreas Steffen | pcr18_after = ffffffffffffffffffffffffffffffffffffffff |
77 | 8 | Andreas Steffen | } |
78 | 8 | Andreas Steffen | } |
79 | 8 | Andreas Steffen | } |
80 | 8 | Andreas Steffen | </pre> |
81 | 8 | Andreas Steffen | |
82 | 13 | Andreas Steffen | h2. IKEv2 Negotiation |
83 | 13 | Andreas Steffen | |
84 | 18 | Andreas Steffen | h3. Startup and Initialization |
85 | 18 | Andreas Steffen | |
86 | 8 | Andreas Steffen | The command |
87 | 8 | Andreas Steffen | <pre> |
88 | 1 | Andreas Steffen | ipsec start |
89 | 1 | Andreas Steffen | </pre> |
90 | 1 | Andreas Steffen | |
91 | 8 | Andreas Steffen | starts the TNC-enabled IPsec client: |
92 | 1 | Andreas Steffen | <pre> |
93 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[DMN] Starting IKEv2 charon daemon (strongSwan 4.6.2dr1) |
94 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[KNL] listening on interfaces: |
95 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[KNL] wlan0 |
96 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[KNL] 10.35.167.97 |
97 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[KNL] fe80::221:6aff:fe06:cf4c |
98 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[KNL] umlbr0 |
99 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[KNL] 192.168.0.254 |
100 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[KNL] fe80::103c:e8ff:fec0:db34 |
101 | 1 | Andreas Steffen | </pre> |
102 | 1 | Andreas Steffen | |
103 | 1 | Andreas Steffen | The file /etc/tnc_config |
104 | 1 | Andreas Steffen | <pre> |
105 | 1 | Andreas Steffen | IMC configuration file for strongSwan client |
106 | 1 | Andreas Steffen | |
107 | 1 | Andreas Steffen | IMC "Attestation" /usr/lib/ipsec/imcvs/imc-attestation.so |
108 | 1 | Andreas Steffen | </pre> |
109 | 1 | Andreas Steffen | |
110 | 1 | Andreas Steffen | defines which IMCs are loaded by the TNC client: |
111 | 1 | Andreas Steffen | <pre> |
112 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[TNC] loading IMCs from '/etc/tnc_config' |
113 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] mandatory PTS measurement algorithm HASH_SHA1[sha1] available |
114 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] mandatory PTS measurement algorithm HASH_SHA256[openssl] available |
115 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] optional PTS measurement algorithm HASH_SHA384[openssl] available |
116 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] optional PTS DH group MODP_2048[gmp] available |
117 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] optional PTS DH group MODP_1536[gmp] available |
118 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] optional PTS DH group MODP_1024[gmp] available |
119 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] mandatory PTS DH group ECP_256[openssl] available |
120 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] optional PTS DH group ECP_384[openssl] available |
121 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[TNC] added IETF attributes |
122 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[TNC] added ITA-HSR attributes |
123 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[LIB] libimcv initialized |
124 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[IMC] IMC 1 "Attestation" initialized |
125 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[TNC] added TCG attributes |
126 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] added TCG functional component namespace |
127 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] added ITA-HSR functional component namespace |
128 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] added ITA-HSR functional component 'Trusted GRUB Boot Loader' |
129 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] added ITA-HSR functional component 'Trusted Boot' |
130 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[PTS] added ITA-HSR functional component 'Linux IMA' |
131 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[LIB] libpts initialized |
132 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[IMC] IMC 1 "Attestation" provided with bind function |
133 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[TNC] IMC 1 supports 1 message type: 0x00559701 |
134 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[TNC] IMC 1 "Attestation" loaded from '/usr/lib/ipsec/imcvs/imc-attestation.so' |
135 | 1 | Andreas Steffen | </pre> |
136 | 1 | Andreas Steffen | |
137 | 1 | Andreas Steffen | Next the IKEv2 credentials and all necessary plugins are loaded |
138 | 1 | Andreas Steffen | <pre> |
139 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[CFG] loading ca certificates from '/etc/ipsec.d/cacerts' |
140 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[CFG] loaded ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA" from '/etc/ipsec.d/cacerts/strongswanCert.pem' |
141 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[CFG] loading aa certificates from '/etc/ipsec.d/aacerts' |
142 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[CFG] loading ocsp signer certificates from '/etc/ipsec.d/ocspcerts' |
143 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[CFG] loading attribute certificates from '/etc/ipsec.d/acerts' |
144 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[CFG] loading crls from '/etc/ipsec.d/crls' |
145 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[CFG] loading secrets from '/etc/ipsec.secrets' |
146 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[CFG] loaded EAP secret for carol@strongswan.org |
147 | 8 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[DMN] loaded plugins: sha1 random gmp pkcs1 pem x509 pubkey openssl hmac revocation curl kernel-netlink socket-default eap-md5 eap-ttls eap-tnc tnc-imc tnc-tnccs tnccs-20 eap-identity resolve stroke |
148 | 1 | Andreas Steffen | Nov 29 07:39:21 merthyr charon: 00[JOB] spawning 16 worker threads |
149 | 1 | Andreas Steffen | </pre> |
150 | 18 | Andreas Steffen | |
151 | 18 | Andreas Steffen | h3. IKEv2 Exchanges |
152 | 1 | Andreas Steffen | |
153 | 20 | Andreas Steffen | Due to auto=start the IKEv2 negotiation automatically starts with the IKE_SA_INIT exchange |
154 | 1 | Andreas Steffen | <pre> |
155 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 04[CFG] received stroke: add connection 'home' |
156 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 04[CFG] left nor right host is our side, assuming left=local |
157 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 04[CFG] added configuration 'home' |
158 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 04[CFG] received stroke: initiate 'home' |
159 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 04[IKE] initiating IKE_SA home[1] to 192.168.0.1 |
160 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 04[ENC] generating IKE_SA_INIT request 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) ] |
161 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 04[NET] sending packet: from 192.168.0.254[500] to 192.168.0.1[500] |
162 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 06[NET] received packet: from 192.168.0.1[500] to 192.168.0.254[500] |
163 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 06[ENC] parsed IKE_SA_INIT response 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) ] |
164 | 1 | Andreas Steffen | </pre> |
165 | 1 | Andreas Steffen | |
166 | 17 | Andreas Steffen | followed by the IKE_AUTH exchange where the IKEv2 gateway proposes a mutual IKEv2 EAP-TTLS only authentication: |
167 | 1 | Andreas Steffen | <pre> |
168 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 06[IKE] establishing CHILD_SA home |
169 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 06[ENC] generating IKE_AUTH request 1 [ IDi N(INIT_CONTACT) IDr SA TSi TSr N(MOBIKE_SUP) N(ADD_4_ADDR) N(ADD_4_ADDR) N(ADD_4_ADDR) N(EAP_ONLY) ] |
170 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 06[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
171 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 10[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
172 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 10[ENC] parsed IKE_AUTH response 1 [ IDr EAP/REQ/TTLS ] |
173 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 10[IKE] server requested EAP_TTLS authentication (id 0xA8) |
174 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 10[TLS] EAP_TTLS version is v0 |
175 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 10[IKE] allow mutual EAP-only authentication |
176 | 1 | Andreas Steffen | </pre> |
177 | 1 | Andreas Steffen | |
178 | 17 | Andreas Steffen | h3. IKEv2 EAP-TTLS Tunnel |
179 | 16 | Andreas Steffen | |
180 | 16 | Andreas Steffen | The IKEv2 EAP-TTLS tunnel is set up with certificate-based server authentication |
181 | 1 | Andreas Steffen | <pre> |
182 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 10[ENC] generating IKE_AUTH request 2 [ EAP/RES/TTLS ] |
183 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 10[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
184 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 05[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
185 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 05[ENC] parsed IKE_AUTH response 2 [ EAP/REQ/TTLS ] |
186 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 05[ENC] generating IKE_AUTH request 3 [ EAP/RES/TTLS ] |
187 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 05[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
188 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
189 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[ENC] parsed IKE_AUTH response 3 [ EAP/REQ/TTLS ] |
190 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[TLS] negotiated TLS version TLS 1.2 with suite TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA |
191 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[TLS] received TLS server certificate 'C=CH, O=Linux strongSwan, CN=moon.strongswan.org' |
192 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] using certificate "C=CH, O=Linux strongSwan, CN=moon.strongswan.org" |
193 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] using trusted ca certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA" |
194 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] checking certificate status of "C=CH, O=Linux strongSwan, CN=moon.strongswan.org" |
195 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] fetching crl from 'http://crl.strongswan.org/strongswan.crl' ... |
196 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] using trusted certificate "C=CH, O=Linux strongSwan, CN=strongSwan Root CA" |
197 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] crl correctly signed by "C=CH, O=Linux strongSwan, CN=strongSwan Root CA" |
198 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] crl is valid: until Dec 02 09:19:24 2011 |
199 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] certificate status is good |
200 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[CFG] reached self-signed root ca with a path length of 0 |
201 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[ENC] generating IKE_AUTH request 4 [ EAP/RES/TTLS ] |
202 | 1 | Andreas Steffen | Nov 29 07:39:22 merthyr charon: 15[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
203 | 1 | Andreas Steffen | </pre> |
204 | 1 | Andreas Steffen | |
205 | 16 | Andreas Steffen | h3. Tunneled EAP-Identity |
206 | 16 | Andreas Steffen | |
207 | 2 | Andreas Steffen | Via the IKEv2 EAP-TTLS tunnel the server requests the EAP client identity |
208 | 2 | Andreas Steffen | <pre> |
209 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 14[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
210 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 14[ENC] parsed IKE_AUTH response 4 [ EAP/REQ/TTLS ] |
211 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 14[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/ID] |
212 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 14[IKE] server requested EAP_IDENTITY authentication (id 0x00) |
213 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 14[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/ID] |
214 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 14[ENC] generating IKE_AUTH request 5 [ EAP/RES/TTLS ] |
215 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 14[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
216 | 1 | Andreas Steffen | </pre> |
217 | 1 | Andreas Steffen | |
218 | 16 | Andreas Steffen | h3. Tunneled EAP-MD5 Client Authentication |
219 | 16 | Andreas Steffen | |
220 | 16 | Andreas Steffen | Next follows an EAP-MD5 client authentication |
221 | 2 | Andreas Steffen | <pre> |
222 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
223 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 03[ENC] parsed IKE_AUTH response 5 [ EAP/REQ/TTLS ] |
224 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 03[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/MD5] |
225 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 03[IKE] server requested EAP_MD5 authentication (id 0x36) |
226 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 03[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/MD5] |
227 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 03[ENC] generating IKE_AUTH request 6 [ EAP/RES/TTLS ] |
228 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 03[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
229 | 1 | Andreas Steffen | </pre> |
230 | 2 | Andreas Steffen | |
231 | 16 | Andreas Steffen | h3. Tunneled EAP-TNC Transport |
232 | 16 | Andreas Steffen | |
233 | 2 | Andreas Steffen | Now the EAP-TNC transport protocol connecting the TNC client with the TNC server is started: |
234 | 2 | Andreas Steffen | <pre> |
235 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
236 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[ENC] parsed IKE_AUTH response 6 [ EAP/REQ/TTLS ] |
237 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/TNC] |
238 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[IKE] server requested EAP_TNC authentication (id 0x84) |
239 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TLS] EAP_TNC version is v1 |
240 | 1 | Andreas Steffen | </pre> |
241 | 1 | Andreas Steffen | |
242 | 14 | Andreas Steffen | h2. PB-TNC/IF-TNCCS 2.0 Connection |
243 | 1 | Andreas Steffen | |
244 | 20 | Andreas Steffen | A new TNCCS connection is instantiated on the TNC client and its IF-TNCCS 2.0 state machine is set to the Init state. |
245 | 14 | Andreas Steffen | |
246 | 2 | Andreas Steffen | !IF-TNCCS-20-State-Diagram.png! |
247 | 10 | Andreas Steffen | |
248 | 14 | Andreas Steffen | A first PB-TNC CDATA (IF-TNCCS 2.0 ClientData) batch is prepared and a PB-Language-Preference message for Englisch (en) is added: |
249 | 11 | Andreas Steffen | <pre> |
250 | 14 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] assigned TNCCS Connection ID 1 |
251 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] creating PB-TNC CDATA batch |
252 | 2 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] adding PB-Language-Preference message |
253 | 2 | Andreas Steffen | </pre> |
254 | 3 | Andreas Steffen | |
255 | 3 | Andreas Steffen | An instance of the Attestation PTS-IMC is created which in a first step determines the client operating systen |
256 | 3 | Andreas Steffen | <pre> |
257 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] platform is 'Ubuntu 11.10 i686' |
258 | 3 | Andreas Steffen | </pre> |
259 | 3 | Andreas Steffen | |
260 | 9 | Andreas Steffen | and then loads the AIK certificate and the matching AIK private key, the latter in the form of a TPM-encrypted binary blob |
261 | 3 | Andreas Steffen | <pre> |
262 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] loaded AIK certificate from '/home/andi/privacyca/AIK_3_Cert.der' |
263 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] loaded AIK Blob from '/home/andi/privacyca/AIK_3_Blob.bin' |
264 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] AIK Blob: => 559 bytes @ 0x8266b24 |
265 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 0: 01 01 00 00 00 12 00 00 00 04 00 00 00 00 01 00 ................ |
266 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 16: 01 00 02 00 00 00 0C 00 00 08 00 00 00 00 02 00 ................ |
267 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 32: 00 00 00 00 00 00 00 00 00 01 00 E9 1C 5F 57 5B ............._W[ |
268 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 48: 73 5F 35 15 BD AF 29 89 13 F1 F9 8D 83 62 6C 73 s_5...)......bls |
269 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 64: C0 5F 8B 90 5A B8 1A 72 B9 D2 51 F8 DC 24 CF 0D ._..Z..r..Q..$.. |
270 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 80: 9E E2 0B F8 8D 11 CD B2 E5 6B CB C2 AB FA BD F4 .........k...... |
271 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 96: 74 D2 25 B3 AE CE 47 66 58 A6 65 A4 CA 36 24 1E t.%...GfX.e..6$. |
272 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 112: 6E 22 A4 9F 88 C5 63 78 AD 53 33 90 22 91 6F 83 n"....cx.S3.".o. |
273 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 128: 8F 2A A8 98 0C 15 3E 89 19 48 63 BE 4C 35 02 F4 .*....>..Hc.L5.. |
274 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 144: 03 7E 10 8E 4D DB 5A D1 63 9A 3C D9 63 F5 7B C6 .~..M.Z.c.<.c.{. |
275 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 160: 73 0F 23 05 B6 00 30 3B 34 6C 3C 10 A9 A5 4A 79 s.#...0;4l<...Jy |
276 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 176: 2E 62 88 E3 CC 7F 7B A7 5A E3 6F 13 7A BD BF 86 .b....{.Z.o.z... |
277 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 192: 1D 3C E3 12 3A 8C 0E 7D 47 55 C6 76 A9 D3 61 16 .<..:..}GU.v..a. |
278 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 208: 22 8A 32 C5 E7 CD 17 DB 5F A1 67 CC 1D F5 D9 25 ".2....._.g....% |
279 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 224: 51 01 33 1E 05 45 85 53 2E 2C 2B 1D 59 E5 FE C2 Q.3..E.S.,+.Y... |
280 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 240: 61 26 36 12 05 F2 5C 95 F8 70 E6 6A DB BF 30 1E a&6...\..p.j..0. |
281 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 256: 46 05 E6 0E 94 3C 0C C6 1C 96 B4 59 AC 5C 63 15 F....<.....Y.\c. |
282 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 272: 8C 77 E8 45 91 6B 8B B1 0D DB 26 3C E5 34 1C E8 .w.E.k....&<.4.. |
283 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 288: B9 B5 6E 7F 9B 6E 7D 24 82 6E 2B 00 00 01 00 22 ..n..n}$.n+...." |
284 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 304: 35 22 CB 61 E6 28 B9 53 4A EB 52 10 A9 CD 5A 2A 5".a.(.SJ.R...Z* |
285 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 320: 23 3A DD 32 77 53 44 8D 94 40 7E 6A 28 83 9D 9D #:.2wSD..@~j(... |
286 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 336: 1E 1B CE 7C CE D2 8A C9 04 BE 66 A5 A1 CA E3 03 ...|......f..... |
287 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 352: 7F 33 97 AD EF A8 E8 83 C9 65 CA 38 27 22 8A 26 .3.......e.8'".& |
288 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 368: 90 B1 1E B0 AE F6 B3 77 5E E3 C8 C2 C6 49 DC 74 .......w^....I.t |
289 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 384: EF 6E A4 31 DF 13 12 F0 4B 53 3D 85 5C 4F 98 C3 .n.1....KS=.\O.. |
290 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 400: 32 7D 05 EB C1 D6 2A AC 6A 38 B8 C4 D4 B7 FE B7 2}....*.j8...... |
291 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 416: 11 39 AD 14 39 EE C2 38 4D 31 86 D9 6F 10 85 90 .9..9..8M1..o... |
292 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 432: 07 43 AA DF AA 25 84 79 5D 01 7B 2B B1 DB 3D CA .C...%.y].{+..=. |
293 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 448: 34 A5 94 B6 35 3B 87 EC 77 56 8E B4 13 DD 3F 25 4...5;..wV....?% |
294 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 464: 12 F9 97 CB 23 CF B8 AB D5 1C 2A D6 2D 13 85 3B ....#.....*.-..; |
295 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 480: D3 77 48 B8 A4 C0 31 C6 68 C0 92 33 7C 5B AA 8E .wH...1.h..3|[.. |
296 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 496: A5 86 05 EF 99 0D CA 02 5F 96 9A 68 C3 DA A2 A8 ........_..h.... |
297 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 512: B7 4C C6 EC 09 98 45 E7 E6 E5 DC A6 E3 B3 54 2A .L....E.......T* |
298 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 528: F5 5A 94 78 3C 26 5B FD D0 01 4B A4 5D B2 C2 EC .Z.x<&[...K.]... |
299 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[PTS] 544: B6 56 A0 DB EC C8 BA 0D E9 56 EC F0 77 7A AB .V.......V..wz. |
300 | 3 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[IMC] IMC 1 "Attestation" created a state for Connection ID 1 |
301 | 3 | Andreas Steffen | </pre> |
302 | 3 | Andreas Steffen | |
303 | 3 | Andreas Steffen | Via the IF-IMC interface the PTS-IMC receives a 'Handshake' state change from the TNC client |
304 | 3 | Andreas Steffen | <pre> |
305 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[IMC] IMC 1 "Attestation" changed state of Connection ID 1 to 'Handshake' |
306 | 5 | Andreas Steffen | </pre> |
307 | 5 | Andreas Steffen | |
308 | 5 | Andreas Steffen | The PTS-IMC generates a PA-TNC message of type TCG/PTS targeted at the remote PTS-IMV, containing a single PA-TNC attribute of type 'IETF/Product Information' with the client operating system information: |
309 | 5 | Andreas Steffen | <pre> |
310 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] creating PA-TNC message with ID 0x569e528e |
311 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] creating PA-TNC attribute type 'IETF/Product Information' 0x000000/0x00000002 |
312 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] => 22 bytes @ 0x82452bc |
313 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 0: 00 00 00 00 00 55 62 75 6E 74 75 20 31 31 2E 31 .....Ubuntu 11.1 |
314 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 16: 30 20 69 36 38 36 0 i686 |
315 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] creating PB-PA message type 'TCG/PTS' 0x005597/0x01 |
316 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] adding PB-PA message |
317 | 5 | Andreas Steffen | </pre> |
318 | 5 | Andreas Steffen | |
319 | 5 | Andreas Steffen | The PA-TNC message is received by the TNC client via the IF-IMC SendMessage call and is inserted together with the |
320 | 5 | Andreas Steffen | PB-Language-Preference message into the PB-TNC CDATA batch which is then sent via the IKEv2 EAP-TTLS tunnel to the TNC server. |
321 | 5 | Andreas Steffen | <pre> |
322 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] PB-TNC state transition from 'Init' to 'Server Working' |
323 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] sending PB-TNC CDATA batch (105 bytes) for Connection ID 1 |
324 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] => 105 bytes @ 0x82669a4 |
325 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 0: 02 00 00 01 00 00 00 69 00 00 00 00 00 00 00 06 .......i........ |
326 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 16: 00 00 00 1F 41 63 63 65 70 74 2D 4C 61 6E 67 75 ....Accept-Langu |
327 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 32: 61 67 65 3A 20 65 6E 80 00 00 00 00 00 00 01 00 age: en......... |
328 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 48: 00 00 42 00 00 55 97 00 00 00 01 00 01 FF FF 01 ..B..U.......... |
329 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 64: 00 00 00 56 9E 52 8E 00 00 00 00 00 00 00 02 00 ...V.R.......... |
330 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 80: 00 00 22 00 00 00 00 00 55 62 75 6E 74 75 20 31 ..".....Ubuntu 1 |
331 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[TNC] 96: 31 2E 31 30 20 69 36 38 36 1.10 i686 |
332 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/TNC] |
333 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[ENC] generating IKE_AUTH request 7 [ EAP/RES/TTLS ] |
334 | 5 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 02[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
335 | 1 | Andreas Steffen | </pre> |
336 | 1 | Andreas Steffen | |
337 | 17 | Andreas Steffen | h3. PTS Capability Discovery |
338 | 17 | Andreas Steffen | |
339 | 7 | Andreas Steffen | As a response a PB-TNC SDATA (IF-TNCCS 2.0 ServerData) batch is received from the TNC server |
340 | 6 | Andreas Steffen | <pre> |
341 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
342 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[ENC] parsed IKE_AUTH response 7 [ EAP/REQ/TTLS ] |
343 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/TNC] |
344 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] received TNCCS batch (72 bytes) for Connection ID 1 |
345 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] => 72 bytes @ 0x826212e |
346 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 0: 02 80 00 02 00 00 00 48 80 00 00 00 00 00 00 01 .......H........ |
347 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 16: 00 00 00 40 00 00 55 97 00 00 00 01 FF FF 00 01 ...@..U......... |
348 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 32: 01 00 00 00 10 FB C9 31 80 00 55 97 01 00 00 00 .......1..U..... |
349 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 48: 00 00 00 10 00 00 00 0E 80 00 55 97 06 00 00 00 ..........U..... |
350 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 64: 00 00 00 10 00 00 80 00 ........ |
351 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] PB-TNC state transition from 'Server Working' to 'Client Working' |
352 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] processing PB-TNC SDATA batch |
353 | 6 | Andreas Steffen | </pre> |
354 | 6 | Andreas Steffen | |
355 | 6 | Andreas Steffen | containing a PB-PA message of type TCG/PTS to which the PTS-IMC is subscribed: |
356 | 6 | Andreas Steffen | <pre> |
357 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] processing PB-PA message (64 bytes) |
358 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] handling PB-PA message type 'TCG/PTS' 0x005597/0x01 |
359 | 6 | Andreas Steffen | </pre> |
360 | 6 | Andreas Steffen | |
361 | 6 | Andreas Steffen | The PA-TNC message transferred via the IF-IMC interface to the PTS-IMC contains two PA-TNC attributes from the TCG/PTS namespace: |
362 | 1 | Andreas Steffen | <pre> |
363 | 19 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] processing PA-TNC message with ID 0x10fbc931 |
364 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] processing PA-TNC attribute type 'TCG/Request PTS Protocol Capabilities' 0x005597/0x01000000 |
365 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] => 4 bytes @ 0x8268da0 |
366 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 0: 00 00 00 0E .... |
367 | 6 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] processing PA-TNC attribute type 'TCG/PTS Measurement Algorithm Request' 0x005597/0x06000000 |
368 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] => 4 bytes @ 0x8268db0 |
369 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 0: 00 00 80 00 .... |
370 | 1 | Andreas Steffen | </pre> |
371 | 1 | Andreas Steffen | |
372 | 16 | Andreas Steffen | namely the requests 'Request PTS Protocol Capabilities' and 'PTS Measurement Algorithm Request'. The PTS-IMV supports the Verification (V), DH Nonce Negotiation (D) and Trusted Platform Evidence (T) PTS protocol capabilities and the PTS-IMC does as well. |
373 | 16 | Andreas Steffen | |
374 | 16 | Andreas Steffen | <pre> |
375 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[PTS] supported PTS protocol capabilities: .VDT. |
376 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[PTS] selected PTS measurement algorithm is HASH_SHA1 |
377 | 16 | Andreas Steffen | </pre> |
378 | 16 | Andreas Steffen | |
379 | 16 | Andreas Steffen | The PTS-IMV proposes SHA-1 only for the PTS measurement algorithm which is accepted by the PTS-IMC. These two selections are sent back to the PTS-IMV in a PA-TNC message containing the TCG attributes 'PTS Protocol Capabilities' and 'PTS Measurement Algorithm": |
380 | 16 | Andreas Steffen | <pre> |
381 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] creating PA-TNC message with ID 0x0ed3f1f3 |
382 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] creating PA-TNC attribute type 'TCG/PTS Protocol Capabilities' 0x005597/0x02000000 |
383 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] => 4 bytes @ 0x8266b04 |
384 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 0: 00 00 00 0E .... |
385 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] creating PA-TNC attribute type 'TCG/PTS Measurement Algorithm' 0x005597/0x07000000 |
386 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] => 4 bytes @ 0x825f17c |
387 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 0: 00 00 80 00 .... |
388 | 16 | Andreas Steffen | </pre> |
389 | 16 | Andreas Steffen | |
390 | 1 | Andreas Steffen | This PA-TNC message is sent as a PB-PA payload in a PB-TNC CDATA batch to the TNC server: |
391 | 16 | Andreas Steffen | <pre> |
392 | 19 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] creating PB-PA message type 'TCG/PTS' 0x005597/0x01 |
393 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] creating PB-TNC CDATA batch |
394 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] adding PB-PA message |
395 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] PB-TNC state transition from 'Client Working' to 'Server Working' |
396 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] sending PB-TNC CDATA batch (72 bytes) for Connection ID 1 |
397 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] => 72 bytes @ 0x82679fc |
398 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 0: 02 00 00 01 00 00 00 48 80 00 00 00 00 00 00 01 .......H........ |
399 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 16: 00 00 00 40 00 00 55 97 00 00 00 01 00 01 FF FF ...@..U......... |
400 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 32: 01 00 00 00 0E D3 F1 F3 00 00 55 97 02 00 00 00 ..........U..... |
401 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 48: 00 00 00 10 00 00 00 0E 00 00 55 97 07 00 00 00 ..........U..... |
402 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[TNC] 64: 00 00 00 10 00 00 80 00 ........ |
403 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/TNC] |
404 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[ENC] generating IKE_AUTH request 8 [ EAP/RES/TTLS ] |
405 | 16 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 13[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
406 | 17 | Andreas Steffen | </pre> |
407 | 1 | Andreas Steffen | |
408 | 17 | Andreas Steffen | h3. DH Nonce Parameters |
409 | 17 | Andreas Steffen | |
410 | 23 | Andreas Steffen | The next PB-TNC SDATA batch is received: |
411 | 17 | Andreas Steffen | <pre> |
412 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
413 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[ENC] parsed IKE_AUTH response 8 [ EAP/REQ/TTLS ] |
414 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/TNC] |
415 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] received TNCCS batch (56 bytes) for Connection ID 1 |
416 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] => 56 bytes @ 0x825e5b6 |
417 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 0: 02 80 00 02 00 00 00 38 80 00 00 00 00 00 00 01 .......8........ |
418 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 16: 00 00 00 30 00 00 55 97 00 00 00 01 FF FF 00 01 ...0..U......... |
419 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 32: 01 00 00 00 C2 D1 8E F1 80 00 55 97 03 00 00 00 ..........U..... |
420 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 48: 00 00 00 10 00 00 F0 00 ........ |
421 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] PB-TNC state transition from 'Server Working' to 'Client Working' |
422 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] processing PB-TNC SDATA batch |
423 | 17 | Andreas Steffen | </pre> |
424 | 1 | Andreas Steffen | |
425 | 19 | Andreas Steffen | containing a PB-PA message of type TCG/PTS to which the PTS-IMC is subscribed: |
426 | 1 | Andreas Steffen | <pre> |
427 | 19 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] processing PB-PA message (48 bytes) |
428 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] handling PB-PA message type 'TCG/PTS' 0x005597/0x01 |
429 | 19 | Andreas Steffen | </pre> |
430 | 19 | Andreas Steffen | |
431 | 21 | Andreas Steffen | The PA-TNC message contains a 'DH Nonce Parameters Request' from the TCG namespace |
432 | 19 | Andreas Steffen | <pre> |
433 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] processing PA-TNC message with ID 0xc2d18ef1 |
434 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] processing PA-TNC attribute type 'TCG/DH Nonce Parameters Request' 0x005597/0x03000000 |
435 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] => 4 bytes @ 0x82452d0 |
436 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 0: 00 00 F0 00 .... |
437 | 19 | Andreas Steffen | </pre> |
438 | 19 | Andreas Steffen | |
439 | 21 | Andreas Steffen | and offers the set of IKE DH groups {2, 5, 14, 19} from which the PTS-IMC selects ECP_256 (group 19). |
440 | 19 | Andreas Steffen | <pre> |
441 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[PTS] selected PTS DH group is ECP_256 |
442 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[PTS] nonce length is 20 |
443 | 19 | Andreas Steffen | </pre> |
444 | 19 | Andreas Steffen | |
445 | 21 | Andreas Steffen | The PTS-IMC also returns a 20 byte DH responder nonce and the 32 byte ECP_256 DH responder public value: |
446 | 19 | Andreas Steffen | <pre> |
447 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] creating PA-TNC message with ID 0xa69f8b02 |
448 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] creating PA-TNC attribute type 'TCG/DH Nonce Parameters Response' 0x005597/0x04000000 |
449 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] => 92 bytes @ 0x826a53c |
450 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 0: 00 00 00 14 10 00 E0 00 AA B1 9A 5C 9B 47 D0 0D ...........\.G.. |
451 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 16: EF 3B F4 48 7A 55 EF DA 89 55 D3 74 DF CE B2 FB .;.HzU...U.t.... |
452 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 32: 44 16 FD 98 44 1D 79 1F 36 7A A5 67 94 30 81 C8 D...D.y.6z.g.0.. |
453 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 48: 38 A8 1A AD 99 55 0E 91 2F E4 36 62 FA C2 08 63 8....U../.6b...c |
454 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 64: 88 69 41 79 35 D4 64 8C 4C D4 CB E9 7B 5E CF 0A .iAy5.d.L...{^.. |
455 | 1 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 80: E0 E9 74 66 4C BB 06 3B F8 DE 96 2E ..tfL..;.... |
456 | 19 | Andreas Steffen | </pre> |
457 | 19 | Andreas Steffen | |
458 | 21 | Andreas Steffen | This PA-TNC message is carried in a PB-PA message encapsulated in a PB-TNC CDATA batch: |
459 | 19 | Andreas Steffen | <pre> |
460 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] creating PB-PA message type 'TCG/PTS' 0x005597/0x01 |
461 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] creating PB-TNC CDATA batch |
462 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] adding PB-PA message |
463 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] PB-TNC state transition from 'Client Working' to 'Server Working' |
464 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] sending PB-TNC CDATA batch (144 bytes) for Connection ID 1 |
465 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] => 144 bytes @ 0x826e85c |
466 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 0: 02 00 00 01 00 00 00 90 80 00 00 00 00 00 00 01 ................ |
467 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 16: 00 00 00 88 00 00 55 97 00 00 00 01 00 01 FF FF ......U......... |
468 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 32: 01 00 00 00 A6 9F 8B 02 00 00 55 97 04 00 00 00 ..........U..... |
469 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 48: 00 00 00 68 00 00 00 14 10 00 E0 00 AA B1 9A 5C ...h...........\ |
470 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 64: 9B 47 D0 0D EF 3B F4 48 7A 55 EF DA 89 55 D3 74 .G...;.HzU...U.t |
471 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 80: DF CE B2 FB 44 16 FD 98 44 1D 79 1F 36 7A A5 67 ....D...D.y.6z.g |
472 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 96: 94 30 81 C8 38 A8 1A AD 99 55 0E 91 2F E4 36 62 .0..8....U../.6b |
473 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 112: FA C2 08 63 88 69 41 79 35 D4 64 8C 4C D4 CB E9 ...c.iAy5.d.L... |
474 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[TNC] 128: 7B 5E CF 0A E0 E9 74 66 4C BB 06 3B F8 DE 96 2E {^....tfL..;.... |
475 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/TNC] |
476 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[ENC] generating IKE_AUTH request 9 [ EAP/RES/TTLS ] |
477 | 17 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 01[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
478 | 16 | Andreas Steffen | </pre> |
479 | 22 | Andreas Steffen | |
480 | 30 | Andreas Steffen | h3. DH Nonce Finish and TPM Version/AIK Info |
481 | 23 | Andreas Steffen | |
482 | 23 | Andreas Steffen | The next PB-TNC SDATA batch is received: |
483 | 22 | Andreas Steffen | <pre> |
484 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
485 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[ENC] parsed IKE_AUTH response 9 [ EAP/REQ/TTLS ] |
486 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/TNC] |
487 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] received TNCCS batch (172 bytes) for Connection ID 1 |
488 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] => 172 bytes @ 0x826e866 |
489 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 0: 02 80 00 02 00 00 00 AC 80 00 00 00 00 00 00 01 ................ |
490 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 16: 00 00 00 A4 00 00 55 97 00 00 00 01 FF FF 00 01 ......U......... |
491 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 32: 01 00 00 00 83 45 BD D1 80 00 55 97 05 00 00 00 .....E....U..... |
492 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 48: 00 00 00 64 00 14 80 00 B1 E2 2D 2D 11 80 E2 BC ...d......--.... |
493 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 64: 83 5A 56 DC 1B 18 3F 91 3B 63 E0 E9 09 2A 67 0D .ZV...?.;c...*g. |
494 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 80: AE FB D6 94 32 39 5A 2C D2 2C 58 2C 5F 3E B4 00 ....29Z,.,X,_>.. |
495 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 96: 25 68 E8 EB 9E 46 93 B3 C7 AE 5C 57 26 92 D7 4E %h...F....\W&..N |
496 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 112: F2 14 08 60 96 A4 74 78 46 C4 11 FB 33 64 F3 27 ...`..txF...3d.' |
497 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 128: 1D 62 3D C4 83 73 AE AE 8B 36 E4 F5 80 00 55 97 .b=..s...6....U. |
498 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 144: 08 00 00 00 00 00 00 10 00 00 00 00 80 00 55 97 ..............U. |
499 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 160: 0D 00 00 00 00 00 00 10 00 00 00 00 ............ |
500 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] PB-TNC state transition from 'Server Working' to 'Client Working' |
501 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] processing PB-TNC SDATA batch |
502 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] processing PB-PA message (164 bytes) |
503 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] handling PB-PA message type 'TCG/PTS' 0x005597/0x01 |
504 | 26 | Andreas Steffen | </pre> |
505 | 1 | Andreas Steffen | |
506 | 23 | Andreas Steffen | containing a PA-TNC message with the 'DH Nonce Finish', 'Get TPM Version Information' and 'Get Attestation Identity Key' |
507 | 23 | Andreas Steffen | attributes from the TCG namespace: |
508 | 22 | Andreas Steffen | <pre> |
509 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] processing PA-TNC message with ID 0x8345bdd1 |
510 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] processing PA-TNC attribute type 'TCG/DH Nonce Finish' 0x005597/0x05000000 |
511 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] => 88 bytes @ 0x826a928 |
512 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 0: 00 14 80 00 B1 E2 2D 2D 11 80 E2 BC 83 5A 56 DC ......--.....ZV. |
513 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 16: 1B 18 3F 91 3B 63 E0 E9 09 2A 67 0D AE FB D6 94 ..?.;c...*g..... |
514 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 32: 32 39 5A 2C D2 2C 58 2C 5F 3E B4 00 25 68 E8 EB 29Z,.,X,_>..%h.. |
515 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 48: 9E 46 93 B3 C7 AE 5C 57 26 92 D7 4E F2 14 08 60 .F....\W&..N...` |
516 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 64: 96 A4 74 78 46 C4 11 FB 33 64 F3 27 1D 62 3D C4 ..txF...3d.'.b=. |
517 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 80: 83 73 AE AE 8B 36 E4 F5 .s...6.. |
518 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] processing PA-TNC attribute type 'TCG/Get TPM Version Information' 0x005597/0x08000000 |
519 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] => 4 bytes @ 0x826a98c |
520 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 0: 00 00 00 00 .... |
521 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] processing PA-TNC attribute type 'TCG/Get Attestation Identity Key' 0x005597/0x0d000000 |
522 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] => 4 bytes @ 0x826a99c |
523 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 0: 00 00 00 00 .... |
524 | 22 | Andreas Steffen | </pre> |
525 | 1 | Andreas Steffen | |
526 | 23 | Andreas Steffen | The PTS-IMV reports that it selected SHA-1 as the DH hash algorithm and provides its 20 byte nonce and 32 byte public DH factor |
527 | 23 | Andreas Steffen | so that the share DH secret can be computed: |
528 | 22 | Andreas Steffen | <pre> |
529 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] selected DH hash algorithm is HASH_SHA1 |
530 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] initiator nonce: => 20 bytes @ 0x82594a4 |
531 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] 0: 46 C4 11 FB 33 64 F3 27 1D 62 3D C4 83 73 AE AE F...3d.'.b=..s.. |
532 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] 16: 8B 36 E4 F5 .6.. |
533 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] responder nonce: => 20 bytes @ 0x8266a7c |
534 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] 0: AA B1 9A 5C 9B 47 D0 0D EF 3B F4 48 7A 55 EF DA ...\.G...;.HzU.. |
535 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] 16: 89 55 D3 74 .U.t |
536 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] shared DH secret: => 32 bytes @ 0x826c8e4 |
537 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] 0: 61 E8 7D D7 8C C8 DF 4E 5C 5A B7 48 75 38 0C B8 a.}....N\Z.Hu8.. |
538 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] 16: 2D 23 08 8E E2 D5 B9 25 04 F8 03 BA 35 9F 3A 52 -#.....%....5.:R |
539 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] secret assessment value: => 20 bytes @ 0x8266ea4 |
540 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] 0: E1 1B 01 B4 FF 2B 56 83 24 AD AD AD 8B 7B 36 B7 .....+V.$....{6. |
541 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] 16: FF CA D9 59 ...Y |
542 | 22 | Andreas Steffen | </pre> |
543 | 1 | Andreas Steffen | |
544 | 30 | Andreas Steffen | Answering the 'Get TPM Version Information' request, the following TPM version info is returned in binary form: |
545 | 22 | Andreas Steffen | <pre> |
546 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[PTS] TPM 1.2 Version Info: Chip Version: 1.2.1.2, Spec Level: 2, Errata Rev: 0, Vendor ID: IFX |
547 | 22 | Andreas Steffen | </pre> |
548 | 1 | Andreas Steffen | |
549 | 30 | Andreas Steffen | Besides the 'TPM Version Information' attribute, also the 'Attestation Identity Key' is included in the PA-TNC message to be forwarded to the PTS-IMV: |
550 | 22 | Andreas Steffen | <pre> |
551 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] creating PA-TNC message with ID 0x1e82d806 |
552 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] creating PA-TNC attribute type 'TCG/TPM Version Information' 0x005597/0x09000000 |
553 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] => 15 bytes @ 0x826a9ec |
554 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 0: 00 30 01 02 01 02 00 02 00 49 46 58 00 00 00 .0.......IFX... |
555 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] creating PA-TNC attribute type 'TCG/Attestation Identity Key' 0x005597/0x0e000000 |
556 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] => 1334 bytes @ 0x826e274 |
557 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 0: 00 30 82 05 31 30 82 04 19 A0 03 02 01 02 02 10 .0..10.......... |
558 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 16: 15 C8 E6 07 AD F7 B6 3C 0A F2 87 51 0C 34 F7 BA .......<...Q.4.. |
559 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 32: 30 0D 06 09 2A 86 48 86 F7 0D 01 01 05 05 00 30 0...*.H........0 |
560 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 48: 4D 31 16 30 14 06 03 55 04 0A 13 0D 70 72 69 76 M1.0...U....priv |
561 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 64: 61 63 79 63 61 2E 63 6F 6D 31 33 30 31 06 03 55 acyca.com1301..U |
562 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 80: 04 03 13 2A 50 72 69 76 61 63 79 20 43 41 20 45 ...*Privacy CA E |
563 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 96: 4B 2D 43 65 72 74 2D 43 68 65 63 6B 65 64 20 41 K-Cert-Checked A |
564 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 112: 49 4B 20 43 65 72 74 69 66 69 63 61 74 65 30 1E IK Certificate0. |
565 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 128: 17 0D 31 31 31 31 30 32 30 37 35 30 35 31 5A 17 ..111102075051Z. |
566 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 144: 0D 31 32 31 31 30 32 30 37 35 30 35 31 5A 30 00 .121102075051Z0. |
567 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 160: 30 82 01 22 30 0D 06 09 2A 86 48 86 F7 0D 01 01 0.."0...*.H..... |
568 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 176: 01 05 00 03 82 01 0F 00 30 82 01 0A 02 82 01 01 ........0....... |
569 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 192: 00 E9 1C 5F 57 5B 73 5F 35 15 BD AF 29 89 13 F1 ..._W[s_5...)... |
570 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 208: F9 8D 83 62 6C 73 C0 5F 8B 90 5A B8 1A 72 B9 D2 ...bls._..Z..r.. |
571 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 224: 51 F8 DC 24 CF 0D 9E E2 0B F8 8D 11 CD B2 E5 6B Q..$...........k |
572 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 240: CB C2 AB FA BD F4 74 D2 25 B3 AE CE 47 66 58 A6 ......t.%...GfX. |
573 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 256: 65 A4 CA 36 24 1E 6E 22 A4 9F 88 C5 63 78 AD 53 e..6$.n"....cx.S |
574 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 272: 33 90 22 91 6F 83 8F 2A A8 98 0C 15 3E 89 19 48 3.".o..*....>..H |
575 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 288: 63 BE 4C 35 02 F4 03 7E 10 8E 4D DB 5A D1 63 9A c.L5...~..M.Z.c. |
576 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 304: 3C D9 63 F5 7B C6 73 0F 23 05 B6 00 30 3B 34 6C <.c.{.s.#...0;4l |
577 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 320: 3C 10 A9 A5 4A 79 2E 62 88 E3 CC 7F 7B A7 5A E3 <...Jy.b....{.Z. |
578 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 336: 6F 13 7A BD BF 86 1D 3C E3 12 3A 8C 0E 7D 47 55 o.z....<..:..}GU |
579 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 352: C6 76 A9 D3 61 16 22 8A 32 C5 E7 CD 17 DB 5F A1 .v..a.".2....._. |
580 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 368: 67 CC 1D F5 D9 25 51 01 33 1E 05 45 85 53 2E 2C g....%Q.3..E.S., |
581 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 384: 2B 1D 59 E5 FE C2 61 26 36 12 05 F2 5C 95 F8 70 +.Y...a&6...\..p |
582 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 400: E6 6A DB BF 30 1E 46 05 E6 0E 94 3C 0C C6 1C 96 .j..0.F....<.... |
583 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 416: B4 59 AC 5C 63 15 8C 77 E8 45 91 6B 8B B1 0D DB .Y.\c..w.E.k.... |
584 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 432: 26 3C E5 34 1C E8 B9 B5 6E 7F 9B 6E 7D 24 82 6E &<.4....n..n}$.n |
585 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 448: 2B 02 03 01 00 01 A3 82 02 58 30 82 02 54 30 81 +........X0..T0. |
586 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 464: 93 06 03 55 1D 09 04 81 8B 30 81 88 30 3A 06 03 ...U.....0..0:.. |
587 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 480: 55 04 34 31 33 30 0B 30 09 06 05 2B 0E 03 02 1A U.4130.0...+.... |
588 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 496: 05 00 30 24 30 22 06 09 2A 86 48 86 F7 0D 01 01 ..0$0"..*.H..... |
589 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 512: 07 30 15 A2 13 30 11 06 09 2A 86 48 86 F7 0D 01 .0...0...*.H.... |
590 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 528: 01 09 04 04 54 43 50 41 30 16 06 05 67 81 05 02 ....TCPA0...g... |
591 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 544: 10 31 0D 30 0B 0C 03 31 2E 32 02 01 02 02 01 00 .1.0...1.2...... |
592 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 560: 30 32 06 05 67 81 05 02 12 31 29 30 27 01 01 FF 02..g....1)0'... |
593 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 576: A0 03 0A 01 01 A1 03 0A 01 00 A2 03 0A 01 00 A3 ................ |
594 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 592: 10 30 0E 16 03 33 2E 30 0A 01 04 0A 01 00 01 01 .0...3.0........ |
595 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 608: FF 01 01 FF 30 62 06 03 55 1D 11 01 01 FF 04 58 ....0b..U......X |
596 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 624: 30 56 A4 47 30 45 31 16 30 14 06 05 67 81 05 02 0V.G0E1.0...g... |
597 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 640: 01 0C 0B 69 64 3A 34 39 34 36 35 38 30 30 31 17 ...id:494658001. |
598 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 656: 30 15 06 05 67 81 05 02 02 0C 0C 53 4C 42 39 36 0...g......SLB96 |
599 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 672: 33 35 54 54 31 2E 32 31 12 30 10 06 05 67 81 05 35TT1.21.0...g.. |
600 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 688: 02 03 0C 07 69 64 3A 30 31 30 32 A0 0B 06 05 67 ....id:0102....g |
601 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 704: 81 05 02 0F A0 02 0C 00 30 0C 06 03 55 1D 13 01 ........0...U... |
602 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 720: 01 FF 04 02 30 00 30 82 01 27 06 03 55 1D 20 01 ....0.0..'..U. . |
603 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 736: 01 FF 04 82 01 1B 30 82 01 17 30 67 06 0A 2B 06 ......0...0g..+. |
604 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 752: 01 04 01 81 E3 42 01 11 30 59 30 29 06 08 2B 06 .....B..0Y0)..+. |
605 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 768: 01 05 05 07 02 01 16 1D 68 74 74 70 3A 2F 2F 77 ........http://w |
606 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 784: 77 77 2E 70 72 69 76 61 63 79 63 61 2E 63 6F 6D ww.privacyca.com |
607 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 800: 2F 63 70 73 2F 30 2C 06 08 2B 06 01 05 05 07 02 /cps/0,..+...... |
608 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 816: 02 30 20 0C 1E 54 43 50 41 20 54 72 75 73 74 65 .0 ..TCPA Truste |
609 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 832: 64 20 50 6C 61 74 66 6F 72 6D 20 49 64 65 6E 74 d Platform Ident |
610 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 848: 69 74 79 30 81 AB 06 0B 60 86 48 01 86 F8 45 01 ity0....`.H...E. |
611 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 864: 07 2F 01 30 81 9B 30 39 06 08 2B 06 01 05 05 07 ./.0..09..+..... |
612 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 880: 02 01 16 2D 68 74 74 70 3A 2F 2F 77 77 77 2E 76 ...-http://www.v |
613 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 896: 65 72 69 73 69 67 6E 2E 63 6F 6D 2F 72 65 70 6F erisign.com/repo |
614 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 912: 73 69 74 6F 72 79 2F 69 6E 64 65 78 2E 68 74 6D sitory/index.htm |
615 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 928: 6C 30 5E 06 08 2B 06 01 05 05 07 02 02 30 52 1E l0^..+.......0R. |
616 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 944: 50 00 54 00 43 00 50 00 41 00 20 00 54 00 72 00 P.T.C.P.A. .T.r. |
617 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 960: 75 00 73 00 74 00 65 00 64 00 20 00 50 00 6C 00 u.s.t.e.d. .P.l. |
618 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 976: 61 00 74 00 66 00 6F 00 72 00 6D 00 20 00 4D 00 a.t.f.o.r.m. .M. |
619 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 992: 6F 00 64 00 75 00 6C 00 65 00 20 00 45 00 6E 00 o.d.u.l.e. .E.n. |
620 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1008: 64 00 6F 00 72 00 73 00 65 00 6D 00 65 00 6E 00 d.o.r.s.e.m.e.n. |
621 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1024: 74 30 1F 06 03 55 1D 23 04 18 30 16 80 14 66 FF t0...U.#..0...f. |
622 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1040: 3C C0 41 02 0A 60 27 4C BE 29 81 F0 58 DC B2 A3 <.A..`'L.)..X... |
623 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1056: 3E A2 30 0D 06 09 2A 86 48 86 F7 0D 01 01 05 05 >.0...*.H....... |
624 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1072: 00 03 82 01 01 00 78 17 95 B0 D1 B5 99 AE 90 DF ......x......... |
625 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1088: 4A AA 02 38 60 9A 05 7A 53 08 00 E9 4B F8 0F 01 J..8`..zS...K... |
626 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1104: A7 26 B7 54 B0 8E F8 9C 64 B1 CE 9B D1 F5 D6 C2 .&.T....d....... |
627 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1120: 3C 4A 20 56 FC 64 B0 21 58 B9 7B 5B FB 65 0C 2A <J V.d.!X.{[.e.* |
628 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1136: BE 0A 64 92 DC 60 EE 3A 6F E9 89 E3 2C 59 D8 DB ..d..`.:o...,Y.. |
629 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1152: E5 97 6B 97 EE D3 D5 E1 01 A8 80 2A 56 7A 4F 36 ..k........*VzO6 |
630 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1168: 2B F8 2B 84 91 A1 0A 16 00 B3 4E BE 1D BE 6F C3 +.+.......N...o. |
631 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1184: 6C 5F ED A9 61 43 54 84 8D E8 E2 9C 08 5D 01 D2 l_..aCT......].. |
632 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1200: FC E0 0E CB 2B 00 BF CE 42 B2 68 B2 E2 79 9D 26 ....+...B.h..y.& |
633 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1216: CC FE C4 25 D6 6A AB 16 CA 39 FE 55 E5 EA AC 43 ...%.j...9.U...C |
634 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1232: D8 B1 C5 CE 94 03 FB 5F E9 88 A1 64 64 C1 53 8A ......._...dd.S. |
635 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1248: 6C 80 D1 9C B6 AC 83 FA 6F E4 B6 67 55 85 06 D2 l.......o..gU... |
636 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1264: 86 49 0E 97 7B 23 1D 8B 60 6B FD 98 29 47 99 D3 .I..{#..`k..)G.. |
637 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1280: A8 69 5D 71 E2 0E 3F 12 D4 82 FC 66 3B 72 24 06 .i]q..?....f;r$. |
638 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1296: 99 77 EF 28 92 FD E0 03 3B 95 21 C0 1C EF BA 75 .w.(....;.!....u |
639 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1312: B1 04 B6 1B 4A CE 59 66 D9 DF BE 2B 03 4A CD BB ....J.Yf...+.J.. |
640 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1328: 21 32 C4 E3 27 49 !2..'I |
641 | 22 | Andreas Steffen | </pre> |
642 | 1 | Andreas Steffen | |
643 | 23 | Andreas Steffen | The TNC client packs this large PA-TNC message into an outgoing PB-TNC CDATA batch: |
644 | 22 | Andreas Steffen | <pre> |
645 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] creating PB-PA message type 'TCG/PTS' 0x005597/0x01 |
646 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] creating PB-TNC CDATA batch |
647 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] adding PB-PA message |
648 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] PB-TNC state transition from 'Client Working' to 'Server Working' |
649 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] sending PB-TNC CDATA batch (1413 bytes) for Connection ID 1 |
650 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] => 1413 bytes @ 0x826f1c4 |
651 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 0: 02 00 00 01 00 00 05 85 80 00 00 00 00 00 00 01 ................ |
652 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 16: 00 00 05 7D 00 00 55 97 00 00 00 01 00 01 FF FF ...}..U......... |
653 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 32: 01 00 00 00 1E 82 D8 06 00 00 55 97 09 00 00 00 ..........U..... |
654 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 48: 00 00 00 1B 00 30 01 02 01 02 00 02 00 49 46 58 .....0.......IFX |
655 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 64: 00 00 00 00 00 55 97 0E 00 00 00 00 00 05 42 00 .....U........B. |
656 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 80: 30 82 05 31 30 82 04 19 A0 03 02 01 02 02 10 15 0..10........... |
657 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 96: C8 E6 07 AD F7 B6 3C 0A F2 87 51 0C 34 F7 BA 30 ......<...Q.4..0 |
658 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 112: 0D 06 09 2A 86 48 86 F7 0D 01 01 05 05 00 30 4D ...*.H........0M |
659 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 128: 31 16 30 14 06 03 55 04 0A 13 0D 70 72 69 76 61 1.0...U....priva |
660 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 144: 63 79 63 61 2E 63 6F 6D 31 33 30 31 06 03 55 04 cyca.com1301..U. |
661 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 160: 03 13 2A 50 72 69 76 61 63 79 20 43 41 20 45 4B ..*Privacy CA EK |
662 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 176: 2D 43 65 72 74 2D 43 68 65 63 6B 65 64 20 41 49 -Cert-Checked AI |
663 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 192: 4B 20 43 65 72 74 69 66 69 63 61 74 65 30 1E 17 K Certificate0.. |
664 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 208: 0D 31 31 31 31 30 32 30 37 35 30 35 31 5A 17 0D .111102075051Z.. |
665 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 224: 31 32 31 31 30 32 30 37 35 30 35 31 5A 30 00 30 121102075051Z0.0 |
666 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 240: 82 01 22 30 0D 06 09 2A 86 48 86 F7 0D 01 01 01 .."0...*.H...... |
667 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 256: 05 00 03 82 01 0F 00 30 82 01 0A 02 82 01 01 00 .......0........ |
668 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 272: E9 1C 5F 57 5B 73 5F 35 15 BD AF 29 89 13 F1 F9 .._W[s_5...).... |
669 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 288: 8D 83 62 6C 73 C0 5F 8B 90 5A B8 1A 72 B9 D2 51 ..bls._..Z..r..Q |
670 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 304: F8 DC 24 CF 0D 9E E2 0B F8 8D 11 CD B2 E5 6B CB ..$...........k. |
671 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 320: C2 AB FA BD F4 74 D2 25 B3 AE CE 47 66 58 A6 65 .....t.%...GfX.e |
672 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 336: A4 CA 36 24 1E 6E 22 A4 9F 88 C5 63 78 AD 53 33 ..6$.n"....cx.S3 |
673 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 352: 90 22 91 6F 83 8F 2A A8 98 0C 15 3E 89 19 48 63 .".o..*....>..Hc |
674 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 368: BE 4C 35 02 F4 03 7E 10 8E 4D DB 5A D1 63 9A 3C .L5...~..M.Z.c.< |
675 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 384: D9 63 F5 7B C6 73 0F 23 05 B6 00 30 3B 34 6C 3C .c.{.s.#...0;4l< |
676 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 400: 10 A9 A5 4A 79 2E 62 88 E3 CC 7F 7B A7 5A E3 6F ...Jy.b....{.Z.o |
677 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 416: 13 7A BD BF 86 1D 3C E3 12 3A 8C 0E 7D 47 55 C6 .z....<..:..}GU. |
678 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 432: 76 A9 D3 61 16 22 8A 32 C5 E7 CD 17 DB 5F A1 67 v..a.".2....._.g |
679 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 448: CC 1D F5 D9 25 51 01 33 1E 05 45 85 53 2E 2C 2B ....%Q.3..E.S.,+ |
680 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 464: 1D 59 E5 FE C2 61 26 36 12 05 F2 5C 95 F8 70 E6 .Y...a&6...\..p. |
681 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 480: 6A DB BF 30 1E 46 05 E6 0E 94 3C 0C C6 1C 96 B4 j..0.F....<..... |
682 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 496: 59 AC 5C 63 15 8C 77 E8 45 91 6B 8B B1 0D DB 26 Y.\c..w.E.k....& |
683 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 512: 3C E5 34 1C E8 B9 B5 6E 7F 9B 6E 7D 24 82 6E 2B <.4....n..n}$.n+ |
684 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 528: 02 03 01 00 01 A3 82 02 58 30 82 02 54 30 81 93 ........X0..T0.. |
685 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 544: 06 03 55 1D 09 04 81 8B 30 81 88 30 3A 06 03 55 ..U.....0..0:..U |
686 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 560: 04 34 31 33 30 0B 30 09 06 05 2B 0E 03 02 1A 05 .4130.0...+..... |
687 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 576: 00 30 24 30 22 06 09 2A 86 48 86 F7 0D 01 01 07 .0$0"..*.H...... |
688 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 592: 30 15 A2 13 30 11 06 09 2A 86 48 86 F7 0D 01 01 0...0...*.H..... |
689 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 608: 09 04 04 54 43 50 41 30 16 06 05 67 81 05 02 10 ...TCPA0...g.... |
690 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 624: 31 0D 30 0B 0C 03 31 2E 32 02 01 02 02 01 00 30 1.0...1.2......0 |
691 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 640: 32 06 05 67 81 05 02 12 31 29 30 27 01 01 FF A0 2..g....1)0'.... |
692 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 656: 03 0A 01 01 A1 03 0A 01 00 A2 03 0A 01 00 A3 10 ................ |
693 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 672: 30 0E 16 03 33 2E 30 0A 01 04 0A 01 00 01 01 FF 0...3.0......... |
694 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 688: 01 01 FF 30 62 06 03 55 1D 11 01 01 FF 04 58 30 ...0b..U......X0 |
695 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 704: 56 A4 47 30 45 31 16 30 14 06 05 67 81 05 02 01 V.G0E1.0...g.... |
696 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 720: 0C 0B 69 64 3A 34 39 34 36 35 38 30 30 31 17 30 ..id:494658001.0 |
697 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 736: 15 06 05 67 81 05 02 02 0C 0C 53 4C 42 39 36 33 ...g......SLB963 |
698 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 752: 35 54 54 31 2E 32 31 12 30 10 06 05 67 81 05 02 5TT1.21.0...g... |
699 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 768: 03 0C 07 69 64 3A 30 31 30 32 A0 0B 06 05 67 81 ...id:0102....g. |
700 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 784: 05 02 0F A0 02 0C 00 30 0C 06 03 55 1D 13 01 01 .......0...U.... |
701 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 800: FF 04 02 30 00 30 82 01 27 06 03 55 1D 20 01 01 ...0.0..'..U. .. |
702 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 816: FF 04 82 01 1B 30 82 01 17 30 67 06 0A 2B 06 01 .....0...0g..+.. |
703 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 832: 04 01 81 E3 42 01 11 30 59 30 29 06 08 2B 06 01 ....B..0Y0)..+.. |
704 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 848: 05 05 07 02 01 16 1D 68 74 74 70 3A 2F 2F 77 77 .......http://ww |
705 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 864: 77 2E 70 72 69 76 61 63 79 63 61 2E 63 6F 6D 2F w.privacyca.com/ |
706 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 880: 63 70 73 2F 30 2C 06 08 2B 06 01 05 05 07 02 02 cps/0,..+....... |
707 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 896: 30 20 0C 1E 54 43 50 41 20 54 72 75 73 74 65 64 0 ..TCPA Trusted |
708 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 912: 20 50 6C 61 74 66 6F 72 6D 20 49 64 65 6E 74 69 Platform Identi |
709 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 928: 74 79 30 81 AB 06 0B 60 86 48 01 86 F8 45 01 07 ty0....`.H...E.. |
710 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 944: 2F 01 30 81 9B 30 39 06 08 2B 06 01 05 05 07 02 /.0..09..+...... |
711 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 960: 01 16 2D 68 74 74 70 3A 2F 2F 77 77 77 2E 76 65 ..-http://www.ve |
712 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 976: 72 69 73 69 67 6E 2E 63 6F 6D 2F 72 65 70 6F 73 risign.com/repos |
713 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 992: 69 74 6F 72 79 2F 69 6E 64 65 78 2E 68 74 6D 6C itory/index.html |
714 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1008: 30 5E 06 08 2B 06 01 05 05 07 02 02 30 52 1E 50 0^..+.......0R.P |
715 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1024: 00 54 00 43 00 50 00 41 00 20 00 54 00 72 00 75 .T.C.P.A. .T.r.u |
716 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1040: 00 73 00 74 00 65 00 64 00 20 00 50 00 6C 00 61 .s.t.e.d. .P.l.a |
717 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1056: 00 74 00 66 00 6F 00 72 00 6D 00 20 00 4D 00 6F .t.f.o.r.m. .M.o |
718 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1072: 00 64 00 75 00 6C 00 65 00 20 00 45 00 6E 00 64 .d.u.l.e. .E.n.d |
719 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1088: 00 6F 00 72 00 73 00 65 00 6D 00 65 00 6E 00 74 .o.r.s.e.m.e.n.t |
720 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1104: 30 1F 06 03 55 1D 23 04 18 30 16 80 14 66 FF 3C 0...U.#..0...f.< |
721 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1120: C0 41 02 0A 60 27 4C BE 29 81 F0 58 DC B2 A3 3E .A..`'L.)..X...> |
722 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1136: A2 30 0D 06 09 2A 86 48 86 F7 0D 01 01 05 05 00 .0...*.H........ |
723 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1152: 03 82 01 01 00 78 17 95 B0 D1 B5 99 AE 90 DF 4A .....x.........J |
724 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1168: AA 02 38 60 9A 05 7A 53 08 00 E9 4B F8 0F 01 A7 ..8`..zS...K.... |
725 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1184: 26 B7 54 B0 8E F8 9C 64 B1 CE 9B D1 F5 D6 C2 3C &.T....d.......< |
726 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1200: 4A 20 56 FC 64 B0 21 58 B9 7B 5B FB 65 0C 2A BE J V.d.!X.{[.e.*. |
727 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1216: 0A 64 92 DC 60 EE 3A 6F E9 89 E3 2C 59 D8 DB E5 .d..`.:o...,Y... |
728 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1232: 97 6B 97 EE D3 D5 E1 01 A8 80 2A 56 7A 4F 36 2B .k........*VzO6+ |
729 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1248: F8 2B 84 91 A1 0A 16 00 B3 4E BE 1D BE 6F C3 6C .+.......N...o.l |
730 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1264: 5F ED A9 61 43 54 84 8D E8 E2 9C 08 5D 01 D2 FC _..aCT......]... |
731 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1280: E0 0E CB 2B 00 BF CE 42 B2 68 B2 E2 79 9D 26 CC ...+...B.h..y.&. |
732 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1296: FE C4 25 D6 6A AB 16 CA 39 FE 55 E5 EA AC 43 D8 ..%.j...9.U...C. |
733 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1312: B1 C5 CE 94 03 FB 5F E9 88 A1 64 64 C1 53 8A 6C ......_...dd.S.l |
734 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1328: 80 D1 9C B6 AC 83 FA 6F E4 B6 67 55 85 06 D2 86 .......o..gU.... |
735 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1344: 49 0E 97 7B 23 1D 8B 60 6B FD 98 29 47 99 D3 A8 I..{#..`k..)G... |
736 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1360: 69 5D 71 E2 0E 3F 12 D4 82 FC 66 3B 72 24 06 99 i]q..?....f;r$.. |
737 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1376: 77 EF 28 92 FD E0 03 3B 95 21 C0 1C EF BA 75 B1 w.(....;.!....u. |
738 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1392: 04 B6 1B 4A CE 59 66 D9 DF BE 2B 03 4A CD BB 21 ...J.Yf...+.J..! |
739 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[TNC] 1408: 32 C4 E3 27 49 2..'I |
740 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/TNC] |
741 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[ENC] generating IKE_AUTH request 10 [ EAP/RES/TTLS ] |
742 | 22 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 04[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
743 | 22 | Andreas Steffen | </pre> |
744 | 25 | Andreas Steffen | |
745 | 1 | Andreas Steffen | h3. File Metadata and Measurement |
746 | 25 | Andreas Steffen | |
747 | 29 | Andreas Steffen | This PB-TNC CDATA batch contains file metadata and measurement requests: |
748 | 25 | Andreas Steffen | <pre> |
749 | 25 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 06[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
750 | 25 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 06[ENC] parsed IKE_AUTH response 10 [ EAP/REQ/TTLS ] |
751 | 25 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 06[ENC] generating IKE_AUTH request 11 [ EAP/RES/TTLS ] |
752 | 25 | Andreas Steffen | Nov 29 07:39:23 merthyr charon: 06[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
753 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
754 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[ENC] parsed IKE_AUTH response 11 [ EAP/REQ/TTLS ] |
755 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/TNC] |
756 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] received TNCCS batch (263 bytes) for Connection ID 1 |
757 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 263 bytes @ 0x82665f6 |
758 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 02 80 00 02 00 00 01 07 80 00 00 00 00 00 00 01 ................ |
759 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 00 00 00 FF 00 00 55 97 00 00 00 01 FF FF 00 01 ......U......... |
760 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 01 00 00 00 DF 70 5C F3 80 00 55 97 00 70 00 00 .....p\...U..p.. |
761 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 48: 00 00 00 1F 00 2F 00 00 2F 65 74 63 2F 74 6E 63 ...../../etc/tnc |
762 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 64: 5F 63 6F 6E 66 69 67 80 00 55 97 00 C0 00 00 00 _config..U...... |
763 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 80: 00 00 32 00 00 00 01 00 00 00 2F 2F 6C 69 62 2F ..2.......//lib/ |
764 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 96: 69 33 38 36 2D 6C 69 6E 75 78 2D 67 6E 75 2F 6C i386-linux-gnu/l |
765 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 112: 69 62 64 6C 2E 73 6F 2E 32 80 00 55 97 00 C0 00 ibdl.so.2..U.... |
766 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 128: 00 00 00 00 22 00 00 00 02 00 00 00 2F 2F 73 62 ....".......//sb |
767 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 144: 69 6E 2F 69 70 74 61 62 6C 65 73 80 00 55 97 00 in/iptables..U.. |
768 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 160: C0 00 00 00 00 00 28 00 00 00 03 00 00 00 2F 2F ......(.......// |
769 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 176: 6C 69 62 2F 6C 69 62 78 74 61 62 6C 65 73 2E 73 lib/libxtables.s |
770 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 192: 6F 2E 35 80 00 55 97 00 C0 00 00 00 00 00 21 80 o.5..U........!. |
771 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 208: 00 00 04 00 00 00 2F 2F 6C 69 62 2F 78 74 61 62 ......//lib/xtab |
772 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 224: 6C 65 73 2F 80 00 55 97 00 C0 00 00 00 00 00 23 les/..U........# |
773 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 240: 00 00 00 05 00 00 00 2F 2F 73 62 69 6E 2F 69 70 .......//sbin/ip |
774 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 256: 36 74 61 62 6C 65 73 6tables |
775 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] PB-TNC state transition from 'Server Working' to 'Client Working' |
776 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PB-TNC SDATA batch |
777 | 1 | Andreas Steffen | </pre> |
778 | 25 | Andreas Steffen | |
779 | 26 | Andreas Steffen | Again the PTS-IMC is subscribed to this PB-PA message type: |
780 | 1 | Andreas Steffen | <pre> |
781 | 28 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PB-PA message (255 bytes) |
782 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] handling PB-PA message type 'TCG/PTS' 0x005597/0x01 |
783 | 1 | Andreas Steffen | </pre> |
784 | 25 | Andreas Steffen | |
785 | 1 | Andreas Steffen | The PA-TNC message consists of one 'Request File Metadata' and five 'Request File Measurement' attributes: |
786 | 26 | Andreas Steffen | <pre> |
787 | 28 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PA-TNC message with ID 0xdf705cf3 |
788 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PA-TNC attribute type 'TCG/Request File Metadata' 0x005597/0x00700000 |
789 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 19 bytes @ 0x8268c20 |
790 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 2F 00 00 2F 65 74 63 2F 74 6E 63 5F 63 6F 6E ./../etc/tnc_con |
791 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 66 69 67 fig |
792 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PA-TNC attribute type 'TCG/Request File Measurement' 0x005597/0x00c00000 |
793 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 38 bytes @ 0x8268c3f |
794 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 01 00 00 00 2F 2F 6C 69 62 2F 69 33 38 .......//lib/i38 |
795 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 36 2D 6C 69 6E 75 78 2D 67 6E 75 2F 6C 69 62 64 6-linux-gnu/libd |
796 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 6C 2E 73 6F 2E 32 l.so.2 |
797 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PA-TNC attribute type 'TCG/Request File Measurement' 0x005597/0x00c00000 |
798 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 22 bytes @ 0x8268c71 |
799 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 02 00 00 00 2F 2F 73 62 69 6E 2F 69 70 .......//sbin/ip |
800 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 74 61 62 6C 65 73 tables |
801 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PA-TNC attribute type 'TCG/Request File Measurement' 0x005597/0x00c00000 |
802 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 28 bytes @ 0x8268c93 |
803 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 03 00 00 00 2F 2F 6C 69 62 2F 6C 69 62 .......//lib/lib |
804 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 78 74 61 62 6C 65 73 2E 73 6F 2E 35 xtables.so.5 |
805 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PA-TNC attribute type 'TCG/Request File Measurement' 0x005597/0x00c00000 |
806 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 21 bytes @ 0x8268cbb |
807 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 80 00 00 04 00 00 00 2F 2F 6C 69 62 2F 78 74 61 .......//lib/xta |
808 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 62 6C 65 73 2F bles/ |
809 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] processing PA-TNC attribute type 'TCG/Request File Measurement' 0x005597/0x00c00000 |
810 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 23 bytes @ 0x8268cdc |
811 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 05 00 00 00 2F 2F 73 62 69 6E 2F 69 70 .......//sbin/ip |
812 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 36 74 61 62 6C 65 73 6tables |
813 | 25 | Andreas Steffen | </pre> |
814 | 1 | Andreas Steffen | |
815 | 30 | Andreas Steffen | The metadata for /etc/tnc_config is retrieved and the SHA-1 hash values for the four file measurement requests are computed. |
816 | 30 | Andreas Steffen | Measurement request 4 is for the contents of a directory which generates quite some work. |
817 | 25 | Andreas Steffen | <pre> |
818 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[IMC] metadata request for file '/etc/tnc_config' |
819 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[IMC] measurement request 1 for file '/lib/i386-linux-gnu/libdl.so.2' |
820 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 40:76:39:35:cd:ea:25:11:90:02:c4:2f:98:4b:99:4d:8d:2a:6d:75 for 'libdl.so.2' |
821 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[IMC] measurement request 2 for file '/sbin/iptables' |
822 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] ff:6d:ec:a0:ee:b7:a2:57:20:5c:5f:0a:b5:f5:d8:21:ea:18:40:98 for 'iptables' |
823 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[IMC] measurement request 3 for file '/lib/libxtables.so.5' |
824 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 7a:3c:a7:21:58:e6:0b:0c:91:e4:8a:42:08:48:f1:b6:93:ae:a2:6c for 'libxtables.so.5' |
825 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[IMC] measurement request 4 for directory '/lib/xtables/' |
826 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 2d:0d:d5:0b:f5:10:78:05:b7:f9:35:c7:2f:94:c9:ba:a2:01:22:b0 for 'libxt_quota.so' |
827 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 33:9a:58:a1:b3:13:83:0c:3c:c7:4c:b3:fb:52:a5:b8:15:2f:44:e6 for 'libxt_esp.so' |
828 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] a3:45:6c:85:20:bf:0b:c3:f0:ee:0a:1c:80:03:21:c0:19:b4:a8:82 for 'libxt_standard.so' |
829 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 47:e0:cf:82:a1:21:16:d6:8a:a6:42:39:c4:9a:23:aa:b6:cb:35:f4 for 'libxt_string.so' |
830 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 3e:1c:20:2b:10:37:cc:24:54:fd:0d:cc:cc:40:e3:15:71:63:0d:9f for 'libxt_CONNMARK.so' |
831 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 3d:c5:69:0b:31:f0:69:93:3c:cc:14:e4:3f:7c:09:da:a3:e0:09:8d for 'libxt_mac.so' |
832 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 2b:07:68:91:49:e0:7c:ed:d6:d3:77:49:3d:17:68:ff:23:78:ac:b8 for 'libip6t_ipv6header.so' |
833 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] fd:d2:27:82:6f:c2:9d:b7:d1:b6:ed:2b:e4:14:52:14:f3:92:16:cd for 'libipt_TTL.so' |
834 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 1d:74:0a:bd:38:f9:f4:bc:81:ca:43:4a:0e:25:b6:e2:17:04:24:8b for 'libxt_tcp.so' |
835 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 18:36:41:80:9a:27:b0:8f:fe:59:c1:38:8c:da:6c:41:4b:dc:e6:d6 for 'libxt_tos.so' |
836 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 2d:32:ef:93:12:6a:bf:8c:66:0d:57:c6:7e:50:76:c6:39:4c:ab:e8 for 'libxt_policy.so' |
837 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 8f:d3:f5:95:98:1c:49:89:61:fc:94:67:83:0d:dd:37:20:08:c0:85 for 'libxt_physdev.so' |
838 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 34:3d:51:24:47:fc:02:22:63:19:9f:d2:3f:7b:21:6b:46:e0:1e:b3 for 'libxt_sctp.so' |
839 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 3b:1c:fb:8c:71:c9:04:be:b5:57:19:34:87:91:5f:f5:82:6a:33:47 for 'libipt_ecn.so' |
840 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 06:5d:f7:20:d2:c2:86:71:72:8a:96:33:53:0d:e5:94:cf:bf:e8:97 for 'libxt_recent.so' |
841 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 00:32:1b:d8:00:d7:08:2f:0d:ee:78:ef:a1:66:1e:24:6c:3d:aa:b4 for 'libxt_iprange.so' |
842 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] ac:87:0e:51:06:2d:69:a6:b1:9a:71:e5:1d:19:4b:9b:0c:29:51:cf for 'libip6t_dst.so' |
843 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 24:15:12:c0:4d:81:6c:c8:91:10:f1:c0:fd:ab:39:d4:97:ad:9f:1b for 'libxt_TPROXY.so' |
844 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 32:d4:43:76:1a:af:13:ef:8b:3c:d7:86:9a:f9:0b:57:a7:44:58:25 for 'libxt_connlimit.so' |
845 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 71:40:3f:f1:c6:ca:92:7a:ba:1d:c6:8c:8e:52:a6:76:ae:c1:c9:70 for 'libxt_RATEEST.so' |
846 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] c1:66:c2:84:d3:95:78:3a:48:d3:02:c9:61:cb:60:d7:ec:e7:68:ab for 'libxt_multiport.so' |
847 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 22:35:fe:d7:aa:6b:9a:8b:9b:db:7f:db:34:9a:35:9f:01:c1:b4:01 for 'libxt_u32.so' |
848 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 6c:f9:db:a7:25:ac:38:d3:be:ff:dc:d8:f6:65:5b:d5:f4:66:6d:25 for 'libipt_icmp.so' |
849 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] d6:c8:df:ba:ae:7a:b2:8b:5c:ef:26:26:a2:af:3f:99:a6:ea:43:65 for 'libipt_LOG.so' |
850 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 39:09:5f:23:c9:34:72:21:57:5d:a8:a1:30:41:cc:7b:dc:de:73:54 for 'libxt_cpu.so' |
851 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 23:29:6f:48:27:6e:16:0b:6d:99:b1:b4:2a:91:14:df:72:0b:b1:ab for 'libip6t_LOG.so' |
852 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] c9:16:92:db:c9:06:c0:de:e9:7c:b9:6e:ba:fd:6e:f1:ff:cc:4d:1b for 'libip6t_icmp6.so' |
853 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 2e:a8:67:ef:38:48:b8:a0:2d:a4:d3:99:4b:1f:0e:bc:db:5c:9e:80 for 'libxt_comment.so' |
854 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] b5:99:55:3b:bd:35:be:b4:f9:93:90:33:f4:4b:65:3d:ad:ba:5e:9c for 'libxt_statistic.so' |
855 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 18:fa:a3:14:df:37:fc:d0:1b:9f:1a:ea:6f:db:f0:70:c8:38:b6:a6 for 'libxt_state.so' |
856 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] aa:9a:5b:58:cb:d0:53:5b:ce:8d:d9:e4:f2:d8:d3:25:38:ce:24:72 for 'libxt_tcpmss.so' |
857 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 1c:b5:30:10:26:19:6e:d1:d2:6f:9c:7f:92:f3:6f:b1:ee:39:48:41 for 'libxt_time.so' |
858 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 7f:cd:3d:b6:df:87:13:c0:e7:c7:2d:ad:d7:04:55:99:a7:49:f2:a0 for 'libipt_REJECT.so' |
859 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 73:d7:5e:80:9f:53:fc:84:40:73:08:db:52:89:3f:3d:31:83:53:10 for 'libxt_limit.so' |
860 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] ee:9b:c9:37:a8:db:06:d4:ba:a2:14:7b:47:8e:ac:af:fe:8c:c8:f7 for 'libipt_realm.so' |
861 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 86:6c:55:30:ae:45:69:1b:3c:4e:08:ba:29:3b:33:26:e8:ff:1f:b3 for 'libip6t_frag.so' |
862 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] d0:27:a6:aa:de:8b:34:d2:72:d5:f2:23:5d:81:78:83:90:40:48:13 for 'libxt_DSCP.so' |
863 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 24:f6:13:0d:e2:e5:bb:94:30:b7:1a:aa:e5:c9:42:47:b3:b6:ea:91 for 'libip6t_hl.so' |
864 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] ab:78:0c:51:34:7b:ff:66:9c:97:1e:f2:c7:0b:06:d9:bd:78:7b:c9 for 'libxt_connmark.so' |
865 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] f2:b9:91:45:6c:6b:6e:55:04:03:d4:66:5c:13:d6:c2:3e:a9:f4:a3 for 'libxt_SET.so' |
866 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] a6:06:e1:bb:12:92:88:f1:90:0d:57:88:1c:3e:ac:ee:e7:27:ec:64 for 'libxt_socket.so' |
867 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 9d:96:65:a3:38:9e:3f:67:a8:15:3f:a1:c3:7b:59:68:85:a4:09:b9 for 'libipt_SAME.so' |
868 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 5c:3a:42:5d:c4:25:60:8c:21:f7:3a:58:de:45:90:43:3a:e4:19:ad for 'libipt_ULOG.so' |
869 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] c5:22:71:d3:8f:10:56:78:d4:cd:0c:3c:04:0a:21:cc:db:24:57:e3 for 'libxt_pkttype.so' |
870 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 38:e9:ff:af:cf:02:73:6d:6b:9c:5e:b4:03:c5:d5:26:12:a4:64:16 for 'libxt_SECMARK.so' |
871 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 28:e0:5c:e1:9a:52:ab:16:23:71:cb:5c:14:8f:b1:6e:c7:c3:4a:d6 for 'libxt_NFLOG.so' |
872 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] e2:db:af:67:88:9b:bd:1f:f0:fb:da:b8:4e:00:e2:87:53:9d:61:ed for 'libxt_helper.so' |
873 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 44:92:7e:1b:2d:34:c5:d9:45:b8:13:33:8c:ca:41:98:3c:be:20:f7 for 'libxt_dscp.so' |
874 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] d6:0e:93:16:f6:2d:46:bd:1d:6b:f9:b7:34:d3:ac:7e:40:2f:29:30 for 'libipt_ttl.so' |
875 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 5d:93:68:d5:e3:ea:c0:93:d6:dc:ba:d5:c0:24:ed:3d:56:66:68:c2 for 'libxt_length.so' |
876 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 3e:f8:a5:fd:8a:e2:28:77:84:ae:7e:dc:f8:4f:bf:b5:24:b4:97:bb for 'libxt_CONNSECMARK.so' |
877 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 42:4c:99:a6:21:e1:19:c8:8b:f7:0e:78:ff:b6:4c:6d:72:db:7b:51 for 'libxt_NFQUEUE.so' |
878 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 29:8a:18:85:82:22:26:dc:be:b2:e9:08:f2:b2:69:b7:a8:27:1a:66 for 'libxt_CLASSIFY.so' |
879 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] c6:3e:0e:cc:c2:03:94:f9:3d:49:25:3b:33:0d:f3:2c:47:ff:d9:96 for 'libxt_CT.so' |
880 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 95:3b:e7:07:c1:5b:15:80:a3:bb:ed:4c:7e:4c:22:1e:2d:58:44:ff for 'libxt_CHECKSUM.so' |
881 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 7f:f7:ef:5a:4e:01:de:31:18:5d:79:cc:d9:a3:14:a6:a1:2d:3a:65 for 'libxt_TCPMSS.so' |
882 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 5a:eb:2e:92:6c:bd:3c:95:fe:82:25:e0:b3:ef:87:3a:3d:19:42:4b for 'libipt_MIRROR.so' |
883 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 7a:b7:2f:5e:8e:54:89:e6:d3:aa:3d:4f:8b:ac:d0:f9:3a:71:4b:e2 for 'libxt_TRACE.so' |
884 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] af:75:74:c5:d6:74:4d:fa:2e:2d:8c:d0:c4:f4:cc:f7:06:42:20:30 for 'libipt_NETMAP.so' |
885 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] f8:93:2b:81:16:dd:d4:cf:0f:d5:f5:52:88:18:f2:1a:df:90:cb:74 for 'libxt_ipvs.so' |
886 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 69:47:c7:94:45:0c:04:df:1c:c8:e4:17:15:ce:3d:24:7f:c5:16:c9 for 'libxt_connbytes.so' |
887 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 5a:0d:07:ab:03:66:03:a7:67:59:e5:f6:1f:7d:04:f2:d3:c0:56:cc for 'libipt_MASQUERADE.so' |
888 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 56:7e:01:c5:09:23:ab:1c:19:03:b6:fb:84:9f:a6:8f:19:63:0c:a3 for 'libip6t_HL.so' |
889 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 32:7f:fa:63:fc:c0:8e:14:e5:64:6b:78:ac:e3:76:94:3a:95:12:7a for 'libip6t_mh.so' |
890 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] d5:37:d4:37:f0:58:13:6e:b3:d7:be:51:7d:be:76:47:b6:23:c6:19 for 'libxt_mark.so' |
891 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 5d:32:1b:a9:90:9d:a2:38:b6:de:15:0b:0d:10:33:7c:16:cf:4c:e4 for 'libxt_TCPOPTSTRIP.so' |
892 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 47:52:53:2c:b9:41:a1:fd:98:11:4c:2f:99:9e:b6:16:98:bd:df:35 for 'libip6t_eui64.so' |
893 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] a0:7e:a0:ae:3d:00:8f:37:97:c5:67:e6:29:cb:73:79:cb:15:02:ed for 'libipt_addrtype.so' |
894 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 2c:19:75:6c:4a:35:48:68:d0:50:a6:58:32:e7:c1:36:b4:a9:94:c3 for 'libxt_LED.so' |
895 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 0f:c1:21:24:64:f3:b1:b9:73:eb:c0:6c:19:90:bb:b9:88:fe:cc:8a for 'libipt_CLUSTERIP.so' |
896 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] e3:58:f5:3f:5c:4b:73:df:16:22:e8:16:41:d9:18:f9:23:ab:c6:2c for 'libxt_cluster.so' |
897 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 20:cf:56:e5:ce:52:11:72:29:f5:5e:1e:ad:52:31:a7:66:b2:dd:5c for 'libxt_hashlimit.so' |
898 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 51:f1:be:7e:59:08:62:a2:c2:5f:29:f4:c5:ef:01:f0:52:df:2a:c5 for 'libipt_REDIRECT.so' |
899 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 3e:f9:01:0e:e2:24:7c:f2:d7:64:1c:f0:4f:0c:a7:32:d0:fd:e8:68 for 'libxt_NOTRACK.so' |
900 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] fc:ca:5d:a6:7d:11:c7:ad:fd:f8:49:88:b0:96:b0:20:f9:0e:77:8a for 'libip6t_rt.so' |
901 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 53:0e:8c:15:15:4a:da:bc:f7:39:c5:e2:46:ba:15:36:6f:05:b3:6b for 'libipt_ah.so' |
902 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] aa:d3:68:ae:62:e7:d0:1d:a3:3e:a7:8e:1a:7c:1a:1f:18:2a:6a:d4 for 'libxt_dccp.so' |
903 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] f7:d6:a5:d8:5a:32:98:d2:1c:ec:71:37:d9:47:da:90:c4:55:e4:6b for 'libxt_rateest.so' |
904 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 4e:05:db:c9:87:2d:6c:6d:af:38:45:8b:35:b1:ba:6d:6a:94:d2:1f for 'libip6t_REJECT.so' |
905 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 9f:b6:70:dc:86:7c:58:b5:83:ef:59:a0:c8:1b:56:35:1d:6b:2c:4b for 'libxt_IDLETIMER.so' |
906 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 36:1d:6f:75:96:07:ad:c4:0d:6f:e0:af:7d:3f:91:57:94:a4:db:b0 for 'libipt_ECN.so' |
907 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] f9:e3:53:1a:bb:67:a0:20:cf:66:7d:46:ca:82:36:75:dd:0a:0d:d4 for 'libxt_MARK.so' |
908 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 9a:d0:87:53:a6:70:8e:1d:60:da:ce:3a:58:ef:44:00:27:70:a6:bd for 'libipt_unclean.so' |
909 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 45:8a:e7:fc:05:34:ef:2a:eb:d5:6f:ce:4d:26:db:10:bd:7f:63:a4 for 'libip6t_hbh.so' |
910 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 42:2c:14:1e:ab:57:e9:c9:a8:0a:3c:7b:31:c2:6a:d4:d0:b5:ed:07 for 'libip6t_ah.so' |
911 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 37:d6:ae:25:19:77:21:4d:7a:d1:c2:95:80:94:24:af:1e:8e:76:b1 for 'libxt_set.so' |
912 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] dd:7b:c0:9b:d9:94:25:a1:e3:6b:69:a1:19:60:a9:00:37:e2:98:79 for 'libxt_TOS.so' |
913 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] ca:1e:da:79:68:a9:0f:6c:c9:14:0a:bd:d1:d1:77:11:6b:69:97:e1 for 'libxt_osf.so' |
914 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] e2:f7:b9:2a:bd:a7:69:f8:27:96:f5:7a:29:80:18:70:58:5d:ce:a3 for 'libipt_SNAT.so' |
915 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 48:a5:5a:a0:dc:11:94:af:63:ba:01:62:00:1c:e1:e9:b3:77:b1:59 for 'libxt_TEE.so' |
916 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 11:ce:3b:45:fe:b3:e6:6a:75:49:0d:42:ba:95:07:1a:c6:f4:0a:7f for 'libxt_udp.so' |
917 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 16:0d:2b:04:d1:1e:b2:25:fb:14:86:15:b6:99:08:18:69:e1:5b:6c for 'libipt_DNAT.so' |
918 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 33:d0:40:bc:0c:64:d3:8b:99:7b:fa:ee:ae:04:59:07:c5:2b:e6:70 for 'libxt_owner.so' |
919 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 6c:0b:2d:f4:fc:4c:91:22:b5:76:2a:e1:40:d5:3f:dd:1c:f9:e8:9b for 'libxt_conntrack.so' |
920 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[IMC] measurement request 5 for file '/sbin/ip6tables' |
921 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[PTS] 8a:7c:41:16:7b:c0:fc:c1:de:c8:32:9a:86:8b:a2:65:c2:38:57:f5 for 'ip6tables' |
922 | 1 | Andreas Steffen | </pre> |
923 | 25 | Andreas Steffen | |
924 | 26 | Andreas Steffen | Packed into one 'Unix-Style File Metadata' and four 'File Measurement' attributes the measured file data is returned to the TNC server: |
925 | 25 | Andreas Steffen | <pre> |
926 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PA-TNC message with ID 0xf30f6458 |
927 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PA-TNC attribute type 'TCG/Unix-Style File Metadata' 0x005597/0x00900000 |
928 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 70 bytes @ 0x826ba6c |
929 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 00 00 00 00 01 00 3E 08 00 00 00 00 00 .........>...... |
930 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 00 00 00 98 00 00 00 00 4E 51 49 8D 00 00 00 00 ........NQI..... |
931 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 4E 51 49 8D 00 00 00 00 4E D3 FC 59 00 00 00 00 NQI.....N..Y.... |
932 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 48: 00 00 00 00 00 00 00 00 00 00 00 00 74 6E 63 5F ............tnc_ |
933 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 64: 63 6F 6E 66 69 67 config |
934 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PA-TNC attribute type 'TCG/File Measurement' 0x005597/0x00d00000 |
935 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 44 bytes @ 0x82573ec |
936 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 00 00 00 00 01 00 01 00 14 40 76 39 35 ............@v95 |
937 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: CD EA 25 11 90 02 C4 2F 98 4B 99 4D 8D 2A 6D 75 ..%..../.K.M.*mu |
938 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 00 0A 6C 69 62 64 6C 2E 73 6F 2E 32 ..libdl.so.2 |
939 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PA-TNC attribute type 'TCG/File Measurement' 0x005597/0x00d00000 |
940 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 42 bytes @ 0x82646bc |
941 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 00 00 00 00 01 00 02 00 14 FF 6D EC A0 .............m.. |
942 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: EE B7 A2 57 20 5C 5F 0A B5 F5 D8 21 EA 18 40 98 ...W \_....!..@. |
943 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 00 08 69 70 74 61 62 6C 65 73 ..iptables |
944 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PA-TNC attribute type 'TCG/File Measurement' 0x005597/0x00d00000 |
945 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 49 bytes @ 0x826bc4c |
946 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 00 00 00 00 01 00 03 00 14 7A 3C A7 21 ............z<.! |
947 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 58 E6 0B 0C 91 E4 8A 42 08 48 F1 B6 93 AE A2 6C X......B.H.....l |
948 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 00 0F 6C 69 62 78 74 61 62 6C 65 73 2E 73 6F 2E ..libxtables.so. |
949 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 48: 35 5 |
950 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PA-TNC attribute type 'TCG/File Measurement' 0x005597/0x00d00000 |
951 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 3475 bytes @ 0x82713c4 |
952 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 00 00 00 00 5E 00 04 00 14 2D 0D D5 0B .......^....-... |
953 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: F5 10 78 05 B7 F9 35 C7 2F 94 C9 BA A2 01 22 B0 ..x...5./.....". |
954 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 00 0E 6C 69 62 78 74 5F 71 75 6F 74 61 2E 73 6F ..libxt_quota.so |
955 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 48: 33 9A 58 A1 B3 13 83 0C 3C C7 4C B3 FB 52 A5 B8 3.X.....<.L..R.. |
956 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 64: 15 2F 44 E6 00 0C 6C 69 62 78 74 5F 65 73 70 2E ./D...libxt_esp. |
957 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 80: 73 6F A3 45 6C 85 20 BF 0B C3 F0 EE 0A 1C 80 03 so.El. ......... |
958 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 96: 21 C0 19 B4 A8 82 00 11 6C 69 62 78 74 5F 73 74 !.......libxt_st |
959 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 112: 61 6E 64 61 72 64 2E 73 6F 47 E0 CF 82 A1 21 16 andard.soG....!. |
960 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 128: D6 8A A6 42 39 C4 9A 23 AA B6 CB 35 F4 00 0F 6C ...B9..#...5...l |
961 | 31 | Andreas Steffen | --------------- truncated attribute ---------------- |
962 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PA-TNC attribute type 'TCG/File Measurement' 0x005597/0x00d00000 |
963 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 43 bytes @ 0x8268bfc |
964 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 00 00 00 00 00 00 00 01 00 05 00 14 8A 7C 41 16 .............|A. |
965 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 7B C0 FC C1 DE C8 32 9A 86 8B A2 65 C2 38 57 F5 {.....2....e.8W. |
966 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 00 09 69 70 36 74 61 62 6C 65 73 ..ip6tables |
967 | 25 | Andreas Steffen | </pre> |
968 | 25 | Andreas Steffen | |
969 | 27 | Andreas Steffen | All data is packed into a huge PB-TNC CDATA batch spanning four IKEv2 UDP datagrams: |
970 | 25 | Andreas Steffen | <pre> |
971 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PB-PA message type 'TCG/PTS' 0x005597/0x01 |
972 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] creating PB-TNC CDATA batch |
973 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] adding PB-PA message |
974 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] PB-TNC state transition from 'Client Working' to 'Server Working' |
975 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] sending PB-TNC CDATA batch (3835 bytes) for Connection ID 1 |
976 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] => 3835 bytes @ 0x8270a3c |
977 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 0: 02 00 00 01 00 00 0E FB 80 00 00 00 00 00 00 01 ................ |
978 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 16: 00 00 0E F3 00 00 55 97 00 00 00 01 00 01 FF FF ......U......... |
979 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 32: 01 00 00 00 F3 0F 64 58 80 00 55 97 00 90 00 00 ......dX..U..... |
980 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 48: 00 00 00 52 00 00 00 00 00 00 00 01 00 3E 08 00 ...R.........>.. |
981 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 64: 00 00 00 00 00 00 00 98 00 00 00 00 4E 51 49 8D ............NQI. |
982 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 80: 00 00 00 00 4E 51 49 8D 00 00 00 00 4E D3 FC 59 ....NQI.....N..Y |
983 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 96: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ |
984 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 112: 74 6E 63 5F 63 6F 6E 66 69 67 80 00 55 97 00 D0 tnc_config..U... |
985 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 128: 00 00 00 00 00 38 00 00 00 00 00 00 00 01 00 01 .....8.......... |
986 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 144: 00 14 40 76 39 35 CD EA 25 11 90 02 C4 2F 98 4B ..@v95..%..../.K |
987 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 160: 99 4D 8D 2A 6D 75 00 0A 6C 69 62 64 6C 2E 73 6F .M.*mu..libdl.so |
988 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 176: 2E 32 80 00 55 97 00 D0 00 00 00 00 00 36 00 00 .2..U........6.. |
989 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 192: 00 00 00 00 00 01 00 02 00 14 FF 6D EC A0 EE B7 ...........m.... |
990 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 208: A2 57 20 5C 5F 0A B5 F5 D8 21 EA 18 40 98 00 08 .W \_....!..@... |
991 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 224: 69 70 74 61 62 6C 65 73 80 00 55 97 00 D0 00 00 iptables..U..... |
992 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 240: 00 00 00 3D 00 00 00 00 00 00 00 01 00 03 00 14 ...=............ |
993 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 256: 7A 3C A7 21 58 E6 0B 0C 91 E4 8A 42 08 48 F1 B6 z<.!X......B.H.. |
994 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 272: 93 AE A2 6C 00 0F 6C 69 62 78 74 61 62 6C 65 73 ...l..libxtables |
995 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 288: 2E 73 6F 2E 35 80 00 55 97 00 D0 00 00 00 00 0D .so.5..U........ |
996 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 304: 9F 00 00 00 00 00 00 00 5E 00 04 00 14 2D 0D D5 ........^....-.. |
997 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 320: 0B F5 10 78 05 B7 F9 35 C7 2F 94 C9 BA A2 01 22 ...x...5./....." |
998 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 336: B0 00 0E 6C 69 62 78 74 5F 71 75 6F 74 61 2E 73 ...libxt_quota.s |
999 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 352: 6F 33 9A 58 A1 B3 13 83 0C 3C C7 4C B3 FB 52 A5 o3.X.....<.L..R. |
1000 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 368: B8 15 2F 44 E6 00 0C 6C 69 62 78 74 5F 65 73 70 ../D...libxt_esp |
1001 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 384: 2E 73 6F A3 45 6C 85 20 BF 0B C3 F0 EE 0A 1C 80 .so.El. ........ |
1002 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 400: 03 21 C0 19 B4 A8 82 00 11 6C 69 62 78 74 5F 73 .!.......libxt_s |
1003 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[TNC] 416: 74 61 6E 64 61 72 64 2E 73 6F 47 E0 CF 82 A1 21 tandard.soG....! |
1004 | 31 | Andreas Steffen | ----------------- truncated batch ------------------ |
1005 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/TNC] |
1006 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[ENC] generating IKE_AUTH request 12 [ EAP/RES/TTLS ] |
1007 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 10[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1008 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 05[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1009 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 05[ENC] parsed IKE_AUTH response 12 [ EAP/REQ/TTLS ] |
1010 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 05[ENC] generating IKE_AUTH request 13 [ EAP/RES/TTLS ] |
1011 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 05[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1012 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 15[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1013 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 15[ENC] parsed IKE_AUTH response 13 [ EAP/REQ/TTLS ] |
1014 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 15[ENC] generating IKE_AUTH request 14 [ EAP/RES/TTLS ] |
1015 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 15[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1016 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 14[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1017 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 14[ENC] parsed IKE_AUTH response 14 [ EAP/REQ/TTLS ] |
1018 | 25 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 14[ENC] generating IKE_AUTH request 15 [ EAP/RES/TTLS ] |
1019 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 14[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1020 | 27 | Andreas Steffen | </pre> |
1021 | 27 | Andreas Steffen | |
1022 | 27 | Andreas Steffen | h3. Functional Component Evidence |
1023 | 27 | Andreas Steffen | |
1024 | 38 | Andreas Steffen | The final PB-TNC SDATA batch arrives from the TNC server: |
1025 | 27 | Andreas Steffen | <pre> |
1026 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1027 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[ENC] parsed IKE_AUTH response 15 [ EAP/REQ/TTLS ] |
1028 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/TNC] |
1029 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] received TNCCS batch (92 bytes) for Connection ID 1 |
1030 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] => 92 bytes @ 0x826a546 |
1031 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 0: 02 80 00 02 00 00 00 5C 80 00 00 00 00 00 00 01 .......\........ |
1032 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 16: 00 00 00 54 00 00 55 97 00 00 00 01 FF FF 00 01 ...T..U......... |
1033 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 32: 01 00 00 00 AA 37 58 07 80 00 55 97 00 10 00 00 .....7X...U..... |
1034 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 48: 00 00 00 24 10 00 00 00 00 90 2A 21 00 00 00 03 ...$......*!.... |
1035 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 64: 10 00 00 00 00 90 2A 21 00 00 00 02 80 00 55 97 ......*!......U. |
1036 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 80: 00 20 00 00 00 00 00 10 00 00 00 00 . .......... |
1037 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] PB-TNC state transition from 'Server Working' to 'Client Working' |
1038 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] processing PB-TNC SDATA batch |
1039 | 1 | Andreas Steffen | </pre> |
1040 | 27 | Andreas Steffen | |
1041 | 30 | Andreas Steffen | Again the PTS-IMC is subscribed to this PB-PA message type: |
1042 | 28 | Andreas Steffen | <pre> |
1043 | 1 | Andreas Steffen | Per subscription the PTS-IMC receives this PB-PA message type: |
1044 | 28 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] processing PB-PA message (84 bytes) |
1045 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] handling PB-PA message type 'TCG/PTS' 0x005597/0x01 |
1046 | 28 | Andreas Steffen | </pre> |
1047 | 28 | Andreas Steffen | |
1048 | 30 | Andreas Steffen | The PA-TNC message contains a 'Request Functional Component Evidence' and a final 'Generate Attestation Evidence' attribute from the TCG namespace:<pre> |
1049 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] processing PA-TNC message with ID 0xaa375807 |
1050 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] processing PA-TNC attribute type 'TCG/Request Functional Component Evidence' 0x005597/0x00100000 |
1051 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] => 24 bytes @ 0x826bc50 |
1052 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 0: 10 00 00 00 00 90 2A 21 00 00 00 03 10 00 00 00 ......*!........ |
1053 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 16: 00 90 2A 21 00 00 00 02 ..*!.... |
1054 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] processing PA-TNC attribute type 'TCG/Generate Attestation Evidence' 0x005597/0x00200000 |
1055 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] => 4 bytes @ 0x826bc74 |
1056 | 28 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[TNC] 0: 00 00 00 00 |
1057 | 28 | Andreas Steffen | </pre> |
1058 | 39 | Andreas Steffen | "RFC 2407":http://tools.ietf.org/html/rfc2407 |
1059 | 39 | Andreas Steffen | The first evidence request is for the "Linux IMA":http://linux-ima.sourceforge.net/ functional component defined in the ITA-HSR namespace which verifies |
1060 | 39 | Andreas Steffen | the 126 measurements extended into PCRs 0..7 during pre-boot process. |
1061 | 30 | Andreas Steffen | <pre> |
1062 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[IMC] evidence requested for 2 functional components |
1063 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] * ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1064 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] loaded bios measurements '/sys/kernel/security/tpm0/binary_bios_measurements' (126 entries) |
1065 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1066 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1067 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 extended with: 4d:89:4e:ef:0a:e7:cb:12:47:40:df:4f:6c:5c:35:aa:0f:e7:da:e8 |
1068 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 before value : 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00 |
1069 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 after value : 53:2d:3c:15:48:a8:56:f0:68:a9:dd:63:8f:b2:ed:6a:f2:f3:c7:90 |
1070 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1071 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1072 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 extended with: f2:c8:46:e7:f3:35:f7:b9:e9:dd:0a:44:f4:8c:48:e1:98:67:50:c7 |
1073 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 before value : 53:2d:3c:15:48:a8:56:f0:68:a9:dd:63:8f:b2:ed:6a:f2:f3:c7:90 |
1074 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 after value : 9c:69:c6:4a:1b:13:fc:27:4b:45:1e:c1:b5:65:49:77:88:da:f4:7a |
1075 | 31 | Andreas Steffen | --------------------- omitted another 54 PCR 0 measurements --------------------- |
1076 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1077 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1078 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 extended with: a2:3b:27:98:83:91:5b:0d:c3:31:30:81:92:43:66:ea:5e:75:bd:c1 |
1079 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 before value : 69:f8:2a:f1:0a:82:a2:57:37:ed:b6:bd:29:19:a0:cc:89:7c:2b:2c |
1080 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 after value : 83:2b:c0:fd:f5:cd:ab:86:fe:8f:c5:88:54:75:8f:40:0f:ff:58:f5 |
1081 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1082 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1083 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 extended with: ef:75:11:b5:24:85:57:ae:63:7f:46:b5:52:f8:af:59:02:0f:2b:00 |
1084 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 before value : 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00 |
1085 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 after value : e9:6e:49:77:ac:62:c8:e9:1f:c2:83:23:36:02:b3:b4:55:09:f0:5e |
1086 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1087 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1088 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 extended with: 62:40:c5:88:a2:d7:74:0f:5c:2c:95:23:bf:f7:d9:83:34:99:8d:77 |
1089 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 before value : e9:6e:49:77:ac:62:c8:e9:1f:c2:83:23:36:02:b3:b4:55:09:f0:5e |
1090 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 after value : a4:d1:b9:c6:e4:fa:28:96:1f:38:fa:1c:16:a6:8a:36:ec:9e:b3:f0 |
1091 | 31 | Andreas Steffen | --------------------- omitted another 8 PCR 2 measurements ---------------------- |
1092 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1093 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 extended with: 64:61:d3:77:19:99:c3:a4:b3:c1:5b:f4:e3:8d:a3:0b:91:bc:1b:17 |
1094 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 before value : d7:e7:4d:8a:31:27:fe:7f:56:90:f5:32:87:93:dd:ce:d7:d8:8f:2b |
1095 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 after value : dc:a3:35:e6:4e:b3:32:00:4f:7b:fd:52:37:3a:2e:66:8b:94:20:6d |
1096 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1097 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1098 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 6 extended with: fc:ad:78:7f:77:71:63:7d:65:96:38:d9:2b:5e:ee:93:85:b3:d7:b9 |
1099 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 6 before value : 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00 |
1100 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 6 after value : e9:ee:75:26:27:c1:99:88:cc:8b:3e:c7:58:8a:6d:80:f5:e9:d5:07 |
1101 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1102 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1103 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 extended with: 4b:90:d9:17:8e:fc:5c:f9:a9:dd:f4:f8:bc:c4:90:08:78:5d:76:ec |
1104 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 before value : 83:2b:c0:fd:f5:cd:ab:86:fe:8f:c5:88:54:75:8f:40:0f:ff:58:f5 |
1105 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 0 after value : ea:7d:5a:f1:39:6d:a6:35:23:cf:5c:97:49:89:7d:e4:c5:49:ae:a1 |
1106 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1107 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1108 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 extended with: e7:9e:46:8b:19:21:b2:29:3a:80:c5:91:7e:fa:6a:45:c3:79:e8:10 |
1109 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 before value : dc:a3:35:e6:4e:b3:32:00:4f:7b:fd:52:37:3a:2e:66:8b:94:20:6d |
1110 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 after value : 7b:83:a8:ab:51:ce:93:7b:6a:ea:c9:ec:cc:82:18:36:eb:7b:d2:de |
1111 | 32 | Andreas Steffen | --------------------- omitted another 5 PCR 2 measurements ---------------------- |
1112 | 32 | Andreas Steffen | ov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1113 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1114 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 extended with: 0b:a6:11:dd:45:de:9a:cb:e3:d0:da:0d:2e:47:8e:4a:a7:7f:f5:15 |
1115 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 before value : c8:cd:82:14:ee:b8:9d:e7:e4:98:9d:4f:52:0f:b2:6c:8a:4a:bf:50 |
1116 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 after value : 05:21:91:68:2b:2d:00:ec:d9:33:44:8f:4a:08:bc:03:aa:86:55:8a |
1117 | 1 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1118 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1119 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 4 extended with: 9b:4d:80:cf:ef:c7:d5:57:6c:4d:9f:22:48:72:50:58:96:ef:27:98 |
1120 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 4 before value : 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00 |
1121 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 4 after value : da:6f:12:b6:2d:5c:71:56:5d:1b:5d:4d:88:82:db:51:76:25:18:56 |
1122 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1123 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1124 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 extended with: e7:9e:46:8b:19:21:b2:29:3a:80:c5:91:7e:fa:6a:45:c3:79:e8:10 |
1125 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 before value : 05:21:91:68:2b:2d:00:ec:d9:33:44:8f:4a:08:bc:03:aa:86:55:8a |
1126 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 after value : 20:4b:04:96:e8:ec:2a:9f:4e:c6:84:07:bd:ce:92:53:3b:24:1a:b3 |
1127 | 32 | Andreas Steffen | --------------------- omitted another 2 PCR 2 measurements ---------------------- |
1128 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1129 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1130 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 extended with: be:1b:de:c0:aa:74:b4:dc:b0:79:94:3e:70:52:80:96:cc:a9:85:f8 |
1131 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 before value : b6:78:09:53:5b:5d:f5:bc:d0:7a:0a:8a:65:7f:30:45:0e:a1:53:0d |
1132 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 2 after value : 67:96:0d:ff:44:36:09:47:39:fe:34:34:33:c6:b9:cb:03:3e:7b:83 |
1133 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1134 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1135 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 1 extended with: 23:0b:3b:f1:3c:75:28:34:de:cf:47:f5:a8:6a:75:58:2a:be:e5:1c |
1136 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 1 before value : 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00 |
1137 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 1 after value : 22:ac:e7:ca:d4:3d:e8:b8:1b:5f:e0:37:9f:87:24:20:66:ed:6d:20 |
1138 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1139 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1140 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 1 extended with: 61:f5:9f:77:82:bb:39:61:0d:bb:6b:1f:57:03:3c:16:18:10:a2:67 |
1141 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 1 before value : 22:ac:e7:ca:d4:3d:e8:b8:1b:5f:e0:37:9f:87:24:20:66:ed:6d:20 |
1142 | 27 | Andreas Steffen | Nov 29 07:39:24 merthyr charon: 03[PTS] PCR 1 after value : bb:3a:e5:9e:da:fd:3f:c8:be:a9:7c:ac:3a:6a:eb:49:18:bd:0c:b5 |
1143 | 32 | Andreas Steffen | --------------------- omitted another 4 PCR 1 measurements ---------------------- |
1144 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1145 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1146 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 extended with: 67:47:61:98:f6:36:03:b8:4a:fa:23:59:70:61:1c:d6:14:56:0c:f2 |
1147 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 before value : 84:e3:8f:0d:4e:f7:b0:f1:70:e8:5d:e0:0c:2d:56:1c:f4:56:5c:25 |
1148 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 after value : ba:27:80:ec:41:5b:28:ad:4f:12:f7:9b:ed:58:60:13:58:f9:0d:bd |
1149 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1150 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1151 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 extended with: cd:f4:d7:9a:c0:a1:0d:46:a1:d9:d7:ec:96:42:88:3c:71:f7:7f:c7 |
1152 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 before value : 67:96:0d:ff:44:36:09:47:39:fe:34:34:33:c6:b9:cb:03:3e:7b:83 |
1153 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 after value : f6:2d:7c:34:73:dd:ad:25:36:18:40:99:10:d0:74:6e:4b:b9:59:5f |
1154 | 32 | Andreas Steffen | --------------------- omitted another 22 PCR 2 measurements --------------------- |
1155 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1156 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1157 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 extended with: ac:25:4b:04:f2:77:ca:7e:88:7a:41:41:bf:5e:d0:cf:62:60:0d:10 |
1158 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 before value : 33:e1:5c:ef:87:84:2c:4f:a7:ea:72:e9:db:ff:5d:0a:a3:d6:cc:30 |
1159 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 after value : b2:89:e6:e9:95:26:10:af:c8:9c:23:8e:e2:63:9c:84:d1:f4:5b:1c |
1160 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1161 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1162 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 extended with: 4f:13:5c:9e:e4:9c:a7:fb:fe:a0:79:e5:d6:71:48:02:f0:40:54:07 |
1163 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 before value : ba:27:80:ec:41:5b:28:ad:4f:12:f7:9b:ed:58:60:13:58:f9:0d:bd |
1164 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 after value : 7e:3e:f1:d5:8b:60:39:76:59:14:11:da:f1:32:ea:cc:dd:ff:bc:fe |
1165 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1166 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1167 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 0 extended with: 90:69:ca:78:e7:45:0a:28:51:73:43:1b:3e:52:c5:c2:52:99:e4:73 |
1168 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 0 before value : ea:7d:5a:f1:39:6d:a6:35:23:cf:5c:97:49:89:7d:e4:c5:49:ae:a1 |
1169 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 0 after value : 28:4a:e5:9c:73:7c:4d:1d:df:78:53:74:cb:b5:9a:4c:8d:63:55:90 |
1170 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1171 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1172 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 extended with: 90:69:ca:78:e7:45:0a:28:51:73:43:1b:3e:52:c5:c2:52:99:e4:73 |
1173 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 before value : 7e:3e:f1:d5:8b:60:39:76:59:14:11:da:f1:32:ea:cc:dd:ff:bc:fe |
1174 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 1 after value : 31:10:87:04:42:56:d9:c3:a0:b5:70:ba:31:24:cb:b4:d4:6f:11:97 |
1175 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1176 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1177 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 extended with: 90:69:ca:78:e7:45:0a:28:51:73:43:1b:3e:52:c5:c2:52:99:e4:73 |
1178 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 before value : b2:89:e6:e9:95:26:10:af:c8:9c:23:8e:e2:63:9c:84:d1:f4:5b:1c |
1179 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 2 after value : b1:f1:f6:75:42:76:40:aa:a7:7b:ef:93:f2:6a:33:3f:0d:57:c9:c5 |
1180 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1181 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1182 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 3 extended with: 90:69:ca:78:e7:45:0a:28:51:73:43:1b:3e:52:c5:c2:52:99:e4:73 |
1183 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 3 before value : 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00 |
1184 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 3 after value : b2:a8:3b:0e:bf:2f:83:74:29:9a:5b:2b:df:c3:1e:a9:55:ad:72:36 |
1185 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1186 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1187 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 extended with: 90:69:ca:78:e7:45:0a:28:51:73:43:1b:3e:52:c5:c2:52:99:e4:73 |
1188 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 before value : da:6f:12:b6:2d:5c:71:56:5d:1b:5d:4d:88:82:db:51:76:25:18:56 |
1189 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 after value : c3:19:5b:15:56:22:b4:75:fd:ac:49:28:06:b8:0d:de:3c:fc:91:ad |
1190 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1191 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1192 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 5 extended with: 90:69:ca:78:e7:45:0a:28:51:73:43:1b:3e:52:c5:c2:52:99:e4:73 |
1193 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 5 before value : 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00 |
1194 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 5 after value : b2:a8:3b:0e:bf:2f:83:74:29:9a:5b:2b:df:c3:1e:a9:55:ad:72:36 |
1195 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1196 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1197 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 6 extended with: 90:69:ca:78:e7:45:0a:28:51:73:43:1b:3e:52:c5:c2:52:99:e4:73 |
1198 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 6 before value : e9:ee:75:26:27:c1:99:88:cc:8b:3e:c7:58:8a:6d:80:f5:e9:d5:07 |
1199 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 6 after value : ee:1b:0f:99:7d:75:17:b2:86:bc:9d:73:a4:cf:74:2c:65:a7:69:be |
1200 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1201 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1202 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 7 extended with: 90:69:ca:78:e7:45:0a:28:51:73:43:1b:3e:52:c5:c2:52:99:e4:73 |
1203 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 7 before value : 00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00:00 |
1204 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 7 after value : b2:a8:3b:0e:bf:2f:83:74:29:9a:5b:2b:df:c3:1e:a9:55:ad:72:36 |
1205 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1206 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1207 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 extended with: c1:e2:5c:3f:6b:0d:c7:8d:57:29:6a:a2:87:0c:a6:f7:82:cc:f8:0f |
1208 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 before value : c3:19:5b:15:56:22:b4:75:fd:ac:49:28:06:b8:0d:de:3c:fc:91:ad |
1209 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 after value : 03:c5:0f:7f:39:60:67:85:0d:84:2f:75:eb:40:f1:36:6f:08:05:25 |
1210 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1211 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1212 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 extended with: 67:a0:a9:8b:c4:d6:32:11:42:89:5a:4d:93:8b:34:2f:69:59:c1:a9 |
1213 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 before value : 03:c5:0f:7f:39:60:67:85:0d:84:2f:75:eb:40:f1:36:6f:08:05:25 |
1214 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 after value : 6b:49:da:a9:04:84:56:ad:00:87:47:4c:d4:33:7f:12:8c:1f:fe:4a |
1215 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1216 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1217 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 extended with: 06:d6:0b:3a:0d:ee:9b:b9:be:b2:f0:b0:4a:ff:2e:75:bd:1d:28:60 |
1218 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 before value : 6b:49:da:a9:04:84:56:ad:00:87:47:4c:d4:33:7f:12:8c:1f:fe:4a |
1219 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 4 after value : 78:1c:3c:ee:5c:34:68:a0:9f:5e:be:e8:e7:d5:34:ac:ea:0d:25:13 |
1220 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Linux IMA' [K.] 'Trusted Platform' |
1221 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:23:21 2011 |
1222 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 5 extended with: 1b:87:00:3b:6c:7d:90:48:37:13:c9:01:00:cc:a3:e6:23:92:b9:bc |
1223 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 5 before value : b2:a8:3b:0e:bf:2f:83:74:29:9a:5b:2b:df:c3:1e:a9:55:ad:72:36 |
1224 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 5 after value : fe:c1:94:a9:d8:f3:af:2b:38:76:d4:bf:bb:eb:f9:80:e8:7e:36:e9 |
1225 | 32 | Andreas Steffen | </pre> |
1226 | 1 | Andreas Steffen | |
1227 | 39 | Andreas Steffen | The second evidence request is for the 'Trusted Boot' functional component also defined in the ITA-HSR namespace which |
1228 | 39 | Andreas Steffen | verifies the MLE measurements extended into PCRs 17 and 18 by Intel's TXT instruction used by Trusted Boot. This component |
1229 | 39 | Andreas Steffen | hasn't been fully completed yet, so dummy measurements values defined in /etc/strongswan.conf are used. |
1230 | 32 | Andreas Steffen | <pre> |
1231 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] * ITA-HSR functional component 'Trusted Boot' [K.] 'Trusted Platform' |
1232 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Trusted Boot' [K.] 'Trusted Platform' |
1233 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:39:25 2011 |
1234 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 17 extended with: d5:37:d4:37:f0:58:13:6e:b3:d7:be:51:7d:be:76:47:b6:23:c6:19 |
1235 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 17 before value : 17:17:17:17:17:17:17:17:17:17:17:17:17:17:17:17:17:17:17:17 |
1236 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 17 after value : ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff |
1237 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] ITA-HSR functional component 'Trusted Boot' [K.] 'Trusted Platform' |
1238 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] measurement time: Nov 29 07:39:25 2011 |
1239 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 18 extended with: 16:0d:2b:04:d1:1e:b2:25:fb:14:86:15:b6:99:08:18:69:e1:5b:6c |
1240 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 18 before value : 18:18:18:18:18:18:18:18:18:18:18:18:18:18:18:18:18:18:18:18 |
1241 | 27 | Andreas Steffen | Nov 29 07:39:25 merthyr charon: 03[PTS] PCR 18 after value : ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff:ff |
1242 | 32 | Andreas Steffen | </pre> |
1243 | 32 | Andreas Steffen | |
1244 | 34 | Andreas Steffen | h3. TPM Quote Signature |
1245 | 34 | Andreas Steffen | |
1246 | 33 | Andreas Steffen | The latest states of all PCRs involved in the previous functional component evidence measurements are put into a 'PCR Composite' structure, hashed and then signed by the TPM with a Quote Signature operation: |
1247 | 32 | Andreas Steffen | <pre> |
1248 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] Hash of PCR Composite: 81:c9:e6:a1:c3:4f:d2:24:20:62:71:b0:69:38:a2:c4:63:4e:35:41 |
1249 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] TPM Quote Info: => 52 bytes @ 0x829d4cc |
1250 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 0: 00 36 51 55 54 32 E1 1B 01 B4 FF 2B 56 83 24 AD .6QUT2.....+V.$. |
1251 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 16: AD AD 8B 7B 36 B7 FF CA D9 59 00 03 FF 00 06 01 ...{6....Y...... |
1252 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 32: 81 C9 E6 A1 C3 4F D2 24 20 62 71 B0 69 38 A2 C4 .....O.$ bq.i8.. |
1253 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 48: 63 4E 35 41 cN5A |
1254 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] TPM Quote Signature: => 256 bytes @ 0x829d914 |
1255 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 0: 95 81 40 BE C2 5D D6 19 3E 1A 4C E5 71 86 C0 3A ..@..]..>.L.q..: |
1256 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 16: 89 EF 28 53 EC D9 40 21 83 9C F4 6E FD 51 AD 6D ..(S..@!...n.Q.m |
1257 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 32: 94 46 DF 0D 51 A5 71 A7 D8 CF FD 8E 0B CA 51 A7 .F..Q.q.......Q. |
1258 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 48: 6A 2A C0 85 0F F5 28 0D A1 9A B9 F0 DC 34 AA 08 j*....(......4.. |
1259 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 64: 47 39 8A 2B 9A 19 0C 91 EB C6 99 CD 18 5D 66 CE G9.+.........]f. |
1260 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 80: CA C1 93 08 E3 46 9F 44 79 CB 1A F3 12 FC 9A 80 .....F.Dy....... |
1261 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 96: A6 54 5F 5C 6C A0 DE F2 06 AA CD A0 E0 F5 35 52 .T_\l.........5R |
1262 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 112: 2D 99 DD 9A 8C B5 E3 53 0E 32 1A DB 20 88 D3 16 -......S.2.. ... |
1263 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 128: 80 6B 35 12 74 1E 9E 34 43 B9 1A E7 72 4C F4 09 .k5.t..4C...rL.. |
1264 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 144: 92 75 21 2C 00 9C AC 0D 97 0F 7A 01 E1 69 92 1C .u!,......z..i.. |
1265 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 160: F9 D8 E2 06 DA 25 75 CA C5 59 FC D5 C0 EA 2D 85 .....%u..Y....-. |
1266 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 176: 68 E5 AB 64 D7 65 33 57 9B 85 80 69 CE 2A C9 97 h..d.e3W...i.*.. |
1267 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 192: 65 47 9C 14 D1 05 D2 96 13 38 90 31 D6 CA E0 5A eG.......8.1...Z |
1268 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 208: 03 8D 9D A6 7D F9 5B 08 E5 AD 4B 1E 0A 59 A6 25 ....}.[...K..Y.% |
1269 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 224: 80 27 1B BD 76 BD CE 1F 1F D5 80 AF 79 33 89 35 .'..v.......y3.5 |
1270 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[PTS] 240: 23 EA 7F 96 C3 A1 A9 2D A5 96 E0 8D 3B 10 55 6F #......-....;.Uo |
1271 | 32 | Andreas Steffen | </pre> |
1272 | 32 | Andreas Steffen | |
1273 | 35 | Andreas Steffen | The PA-TNC message created by the PTS-IMC contains 128 'Simple Component Evidence' attributes and one closing 'Simple Evidence Final' attribute both from the TCG namespace: |
1274 | 32 | Andreas Steffen | <pre> |
1275 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PA-TNC message with ID 0x95f82a49 |
1276 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PA-TNC attribute type 'TCG/Simple Component Evidence' 0x005597/0x00300000 |
1277 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] => 102 bytes @ 0x829fd5c |
1278 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 0: 80 00 00 00 00 90 2A 21 00 00 00 03 80 00 00 00 ......*!........ |
1279 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 16: 80 00 01 00 32 30 31 31 2D 31 31 2D 32 39 54 30 ....2011-11-29T0 |
1280 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 32: 36 3A 32 33 3A 32 31 5A 00 14 00 00 00 00 00 00 6:23:21Z........ |
1281 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 48: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 53 2D ..............S- |
1282 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 64: 3C 15 48 A8 56 F0 68 A9 DD 63 8F B2 ED 6A F2 F3 <.H.V.h..c...j.. |
1283 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 80: C7 90 4D 89 4E EF 0A E7 CB 12 47 40 DF 4F 6C 5C ..M.N.....G@.Ol\ |
1284 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 96: 35 AA 0F E7 DA E8 5..... |
1285 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PA-TNC attribute type 'TCG/Simple Component Evidence' 0x005597/0x00300000 |
1286 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] => 102 bytes @ 0x829ff74 |
1287 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 0: 80 00 00 00 00 90 2A 21 00 00 00 03 80 00 00 00 ......*!........ |
1288 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 16: 80 00 01 00 32 30 31 31 2D 31 31 2D 32 39 54 30 ....2011-11-29T0 |
1289 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 32: 36 3A 32 33 3A 32 31 5A 00 14 53 2D 3C 15 48 A8 6:23:21Z..S-<.H. |
1290 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 48: 56 F0 68 A9 DD 63 8F B2 ED 6A F2 F3 C7 90 9C 69 V.h..c...j.....i |
1291 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 64: C6 4A 1B 13 FC 27 4B 45 1E C1 B5 65 49 77 88 DA .J...'KE...eIw.. |
1292 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 80: F4 7A F2 C8 46 E7 F3 35 F7 B9 E9 DD 0A 44 F4 8C .z..F..5.....D.. |
1293 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 96: 48 E1 98 67 50 C7 H..gP. |
1294 | 33 | Andreas Steffen | ----- omitted another 122 'TCG/Simple Component Evidence' attributes -- |
1295 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PA-TNC attribute type 'TCG/Simple Component Evidence' 0x005597/0x00300000 |
1296 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] => 102 bytes @ 0x82a7b6c |
1297 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 0: 80 00 00 00 00 90 2A 21 00 00 00 03 80 00 00 04 ......*!........ |
1298 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 16: 80 00 01 00 32 30 31 31 2D 31 31 2D 32 39 54 30 ....2011-11-29T0 |
1299 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 32: 36 3A 32 33 3A 32 31 5A 00 14 6B 49 DA A9 04 84 6:23:21Z..kI.... |
1300 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 48: 56 AD 00 87 47 4C D4 33 7F 12 8C 1F FE 4A 78 1C V...GL.3.....Jx. |
1301 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 64: 3C EE 5C 34 68 A0 9F 5E BE E8 E7 D5 34 AC EA 0D <.\4h..^....4... |
1302 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 80: 25 13 06 D6 0B 3A 0D EE 9B B9 BE B2 F0 B0 4A FF %....:........J. |
1303 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 96: 2E 75 BD 1D 28 60 .u..(` |
1304 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PA-TNC attribute type 'TCG/Simple Component Evidence' 0x005597/0x00300000 |
1305 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] => 102 bytes @ 0x82a7c6c |
1306 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 0: 80 00 00 00 00 90 2A 21 00 00 00 03 80 00 00 05 ......*!........ |
1307 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 16: 80 00 01 00 32 30 31 31 2D 31 31 2D 32 39 54 30 ....2011-11-29T0 |
1308 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 32: 36 3A 32 33 3A 32 31 5A 00 14 B2 A8 3B 0E BF 2F 6:23:21Z....;../ |
1309 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 48: 83 74 29 9A 5B 2B DF C3 1E A9 55 AD 72 36 FE C1 .t).[+....U.r6.. |
1310 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 64: 94 A9 D8 F3 AF 2B 38 76 D4 BF BB EB F9 80 E8 7E .....+8v.......~ |
1311 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 80: 36 E9 1B 87 00 3B 6C 7D 90 48 37 13 C9 01 00 CC 6....;l}.H7..... |
1312 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 96: A3 E6 23 92 B9 BC ..#... |
1313 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PA-TNC attribute type 'TCG/Simple Component Evidence' 0x005597/0x00300000 |
1314 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] => 102 bytes @ 0x82a7d6c |
1315 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 0: 80 00 00 00 00 90 2A 21 00 00 00 02 80 00 00 11 ......*!........ |
1316 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 16: 80 00 01 00 32 30 31 31 2D 31 31 2D 32 39 54 30 ....2011-11-29T0 |
1317 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 32: 36 3A 33 39 3A 32 35 5A 00 14 17 17 17 17 17 17 6:39:25Z........ |
1318 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 48: 17 17 17 17 17 17 17 17 17 17 17 17 17 17 FF FF ................ |
1319 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 64: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF ................ |
1320 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 80: FF FF D5 37 D4 37 F0 58 13 6E B3 D7 BE 51 7D BE ...7.7.X.n...Q}. |
1321 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 96: 76 47 B6 23 C6 19 vG.#.. |
1322 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PA-TNC attribute type 'TCG/Simple Component Evidence' 0x005597/0x00300000 |
1323 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] => 102 bytes @ 0x82a7e6c |
1324 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 0: 80 00 00 00 00 90 2A 21 00 00 00 02 80 00 00 12 ......*!........ |
1325 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 16: 80 00 01 00 32 30 31 31 2D 31 31 2D 32 39 54 30 ....2011-11-29T0 |
1326 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 32: 36 3A 33 39 3A 32 35 5A 00 14 18 18 18 18 18 18 6:39:25Z........ |
1327 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 48: 18 18 18 18 18 18 18 18 18 18 18 18 18 18 FF FF ................ |
1328 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 64: FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF ................ |
1329 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 80: FF FF 16 0D 2B 04 D1 1E B2 25 FB 14 86 15 B6 99 ....+....%...... |
1330 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 96: 08 18 69 E1 5B 6C ..i.[l |
1331 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PA-TNC attribute type 'TCG/Simple Evidence Final' 0x005597/0x00400000 |
1332 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] => 288 bytes @ 0x82a80ac |
1333 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 0: 80 00 80 00 00 00 00 14 81 C9 E6 A1 C3 4F D2 24 .............O.$ |
1334 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 16: 20 62 71 B0 69 38 A2 C4 63 4E 35 41 00 00 01 00 bq.i8..cN5A.... |
1335 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 32: 95 81 40 BE C2 5D D6 19 3E 1A 4C E5 71 86 C0 3A ..@..]..>.L.q..: |
1336 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 48: 89 EF 28 53 EC D9 40 21 83 9C F4 6E FD 51 AD 6D ..(S..@!...n.Q.m |
1337 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 64: 94 46 DF 0D 51 A5 71 A7 D8 CF FD 8E 0B CA 51 A7 .F..Q.q.......Q. |
1338 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 80: 6A 2A C0 85 0F F5 28 0D A1 9A B9 F0 DC 34 AA 08 j*....(......4.. |
1339 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 96: 47 39 8A 2B 9A 19 0C 91 EB C6 99 CD 18 5D 66 CE G9.+.........]f. |
1340 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 112: CA C1 93 08 E3 46 9F 44 79 CB 1A F3 12 FC 9A 80 .....F.Dy....... |
1341 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 128: A6 54 5F 5C 6C A0 DE F2 06 AA CD A0 E0 F5 35 52 .T_\l.........5R |
1342 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 144: 2D 99 DD 9A 8C B5 E3 53 0E 32 1A DB 20 88 D3 16 -......S.2.. ... |
1343 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 160: 80 6B 35 12 74 1E 9E 34 43 B9 1A E7 72 4C F4 09 .k5.t..4C...rL.. |
1344 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 176: 92 75 21 2C 00 9C AC 0D 97 0F 7A 01 E1 69 92 1C .u!,......z..i.. |
1345 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 192: F9 D8 E2 06 DA 25 75 CA C5 59 FC D5 C0 EA 2D 85 .....%u..Y....-. |
1346 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 208: 68 E5 AB 64 D7 65 33 57 9B 85 80 69 CE 2A C9 97 h..d.e3W...i.*.. |
1347 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 224: 65 47 9C 14 D1 05 D2 96 13 38 90 31 D6 CA E0 5A eG.......8.1...Z |
1348 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 240: 03 8D 9D A6 7D F9 5B 08 E5 AD 4B 1E 0A 59 A6 25 ....}.[...K..Y.% |
1349 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 256: 80 27 1B BD 76 BD CE 1F 1F D5 80 AF 79 33 89 35 .'..v.......y3.5 |
1350 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 272: 23 EA 7F 96 C3 A1 A9 2D A5 96 E0 8D 3B 10 55 6F #......-....;.Uo |
1351 | 33 | Andreas Steffen | </pre> |
1352 | 33 | Andreas Steffen | |
1353 | 38 | Andreas Steffen | This is a huge PB-TNC CDATA batch comprising 14'932 bytes distributed over 15 IKEv2 EAP-TTLS messages: |
1354 | 33 | Andreas Steffen | <pre> |
1355 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PB-PA message type 'TCG/PTS' 0x005597/0x01 |
1356 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] creating PB-TNC CDATA batch |
1357 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] adding PB-PA message |
1358 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] PB-TNC state transition from 'Client Working' to 'Server Working' |
1359 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] sending PB-TNC CDATA batch (14932 bytes) for Connection ID 1 |
1360 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] => 14932 bytes @ 0x827a0fc |
1361 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 0: 02 00 00 01 00 00 3A 54 80 00 00 00 00 00 00 01 ......:T........ |
1362 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 16: 00 00 3A 4C 00 00 55 97 00 00 00 01 00 01 FF FF ..:L..U......... |
1363 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 32: 01 00 00 00 95 F8 2A 49 00 00 55 97 00 30 00 00 ......*I..U..0.. |
1364 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 48: 00 00 00 72 80 00 00 00 00 90 2A 21 00 00 00 03 ...r......*!.... |
1365 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 64: 80 00 00 00 80 00 01 00 32 30 31 31 2D 31 31 2D ........2011-11- |
1366 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 80: 32 39 54 30 36 3A 32 33 3A 32 31 5A 00 14 00 00 29T06:23:21Z.... |
1367 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 96: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ |
1368 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 112: 00 00 53 2D 3C 15 48 A8 56 F0 68 A9 DD 63 8F B2 ..S-<.H.V.h..c.. |
1369 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 128: ED 6A F2 F3 C7 90 4D 89 4E EF 0A E7 CB 12 47 40 .j....M.N.....G@ |
1370 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 144: DF 4F 6C 5C 35 AA 0F E7 DA E8 00 00 55 97 00 30 .Ol\5.......U..0 |
1371 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 160: 00 00 00 00 00 72 80 00 00 00 00 90 2A 21 00 00 .....r......*!.. |
1372 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 176: 00 03 80 00 00 00 80 00 01 00 32 30 31 31 2D 31 ..........2011-1 |
1373 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 192: 31 2D 32 39 54 30 36 3A 32 33 3A 32 31 5A 00 14 1-29T06:23:21Z.. |
1374 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 208: 53 2D 3C 15 48 A8 56 F0 68 A9 DD 63 8F B2 ED 6A S-<.H.V.h..c...j |
1375 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 224: F2 F3 C7 90 9C 69 C6 4A 1B 13 FC 27 4B 45 1E C1 .....i.J...'KE.. |
1376 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 240: B5 65 49 77 88 DA F4 7A F2 C8 46 E7 F3 35 F7 B9 .eIw...z..F..5.. |
1377 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[TNC] 256: E9 DD 0A 44 F4 8C 48 E1 98 67 50 C7 00 00 55 97 ...D..H..gP...U. |
1378 | 33 | Andreas Steffen | ----------------- truncated batch ------------------ |
1379 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/TNC] |
1380 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[ENC] generating IKE_AUTH request 16 [ EAP/RES/TTLS ] |
1381 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1382 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 04[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1383 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 04[ENC] parsed IKE_AUTH response 16 [ EAP/REQ/TTLS ] |
1384 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 04[ENC] generating IKE_AUTH request 17 [ EAP/RES/TTLS ] |
1385 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 04[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1386 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 15[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1387 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 15[ENC] parsed IKE_AUTH response 17 [ EAP/REQ/TTLS ] |
1388 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 15[ENC] generating IKE_AUTH request 18 [ EAP/RES/TTLS ] |
1389 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 15[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1390 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1391 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 13[ENC] parsed IKE_AUTH response 18 [ EAP/REQ/TTLS ] |
1392 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 13[ENC] generating IKE_AUTH request 19 [ EAP/RES/TTLS ] |
1393 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 13[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1394 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 05[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1395 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 05[ENC] parsed IKE_AUTH response 19 [ EAP/REQ/TTLS ] |
1396 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 05[ENC] generating IKE_AUTH request 20 [ EAP/RES/TTLS ] |
1397 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 05[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1398 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 06[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1399 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 06[ENC] parsed IKE_AUTH response 20 [ EAP/REQ/TTLS ] |
1400 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 06[ENC] generating IKE_AUTH request 21 [ EAP/RES/TTLS ] |
1401 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 06[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1402 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 02[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1403 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 02[ENC] parsed IKE_AUTH response 21 [ EAP/REQ/TTLS ] |
1404 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 02[ENC] generating IKE_AUTH request 22 [ EAP/RES/TTLS ] |
1405 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 02[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1406 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 14[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1407 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 14[ENC] parsed IKE_AUTH response 22 [ EAP/REQ/TTLS ] |
1408 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 14[ENC] generating IKE_AUTH request 23 [ EAP/RES/TTLS ] |
1409 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 14[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1410 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 01[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1411 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 01[ENC] parsed IKE_AUTH response 23 [ EAP/REQ/TTLS ] |
1412 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 01[ENC] generating IKE_AUTH request 24 [ EAP/RES/TTLS ] |
1413 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 01[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1414 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 10[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1415 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 10[ENC] parsed IKE_AUTH response 24 [ EAP/REQ/TTLS ] |
1416 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 10[ENC] generating IKE_AUTH request 25 [ EAP/RES/TTLS ] |
1417 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 10[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1418 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1419 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[ENC] parsed IKE_AUTH response 25 [ EAP/REQ/TTLS ] |
1420 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[ENC] generating IKE_AUTH request 26 [ EAP/RES/TTLS ] |
1421 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 03[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1422 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 04[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1423 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 04[ENC] parsed IKE_AUTH response 26 [ EAP/REQ/TTLS ] |
1424 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 04[ENC] generating IKE_AUTH request 27 [ EAP/RES/TTLS ] |
1425 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 04[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1426 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 15[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1427 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 15[ENC] parsed IKE_AUTH response 27 [ EAP/REQ/TTLS ] |
1428 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 15[ENC] generating IKE_AUTH request 28 [ EAP/RES/TTLS ] |
1429 | 27 | Andreas Steffen | Nov 29 07:39:27 merthyr charon: 15[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1430 | 27 | Andreas Steffen | Nov 29 07:39:28 merthyr charon: 13[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1431 | 27 | Andreas Steffen | Nov 29 07:39:28 merthyr charon: 13[ENC] parsed IKE_AUTH response 28 [ EAP/REQ/TTLS ] |
1432 | 27 | Andreas Steffen | Nov 29 07:39:28 merthyr charon: 13[ENC] generating IKE_AUTH request 29 [ EAP/RES/TTLS ] |
1433 | 27 | Andreas Steffen | Nov 29 07:39:28 merthyr charon: 13[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1434 | 27 | Andreas Steffen | Nov 29 07:39:28 merthyr charon: 05[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1435 | 27 | Andreas Steffen | Nov 29 07:39:28 merthyr charon: 05[ENC] parsed IKE_AUTH response 29 [ EAP/REQ/TTLS ] |
1436 | 27 | Andreas Steffen | Nov 29 07:39:28 merthyr charon: 05[ENC] generating IKE_AUTH request 30 [ EAP/RES/TTLS ] |
1437 | 27 | Andreas Steffen | Nov 29 07:39:28 merthyr charon: 05[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1438 | 27 | Andreas Steffen | </pre> |
1439 | 27 | Andreas Steffen | |
1440 | 33 | Andreas Steffen | Because the remote PTS-IMV is quite busy processing all measurements, the IKE_AUTH response 30 is |
1441 | 33 | Andreas Steffen | delayed and after 3 seconds the IKEv2 client starts a retransmission of IKE_AUTH request 30: |
1442 | 27 | Andreas Steffen | <pre> |
1443 | 27 | Andreas Steffen | Nov 29 07:39:32 merthyr charon: 13[IKE] retransmit 1 of request with message ID 30 |
1444 | 1 | Andreas Steffen | Nov 29 07:39:32 merthyr charon: 13[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1445 | 35 | Andreas Steffen | </pre> |
1446 | 35 | Andreas Steffen | |
1447 | 1 | Andreas Steffen | h3. TNC Assessment |
1448 | 35 | Andreas Steffen | |
1449 | 38 | Andreas Steffen | A PB-TNC RESULT batch is received from the TNC server containing a 'PB-Assessment-Result' and a 'PB-Access-Recommendation' message |
1450 | 38 | Andreas Steffen | causing the IF-TNCCS 2.0 state machine to go into the 'Decided' state: |
1451 | 35 | Andreas Steffen | <pre> |
1452 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1453 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[ENC] parsed IKE_AUTH response 30 [ EAP/REQ/TTLS ] |
1454 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[IKE] received tunneled EAP-TTLS AVP [EAP/REQ/TNC] |
1455 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] received TNCCS batch (40 bytes) for Connection ID 1 |
1456 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] => 40 bytes @ 0x824a346 |
1457 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] 0: 02 80 00 03 00 00 00 28 80 00 00 00 00 00 00 02 .......(........ |
1458 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] 16: 00 00 00 10 00 00 00 00 00 00 00 00 00 00 00 03 ................ |
1459 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] 32: 00 00 00 10 00 00 00 01 ........ |
1460 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] PB-TNC state transition from 'Server Working' to 'Decided' |
1461 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] processing PB-TNC RESULT batch |
1462 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] processing PB-Assessment-Result message (16 bytes) |
1463 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] processing PB-Access-Recommendation message (16 bytes) |
1464 | 35 | Andreas Steffen | </pre> |
1465 | 35 | Andreas Steffen | |
1466 | 37 | Andreas Steffen | The received TNC assessment result is 'compliant' and the access recommendation is 'Access Allowed': |
1467 | 35 | Andreas Steffen | <pre> |
1468 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] PB-TNC assessment result is 'compliant' |
1469 | 1 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] PB-TNC access recommendation is 'Access Allowed' |
1470 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[IMC] IMC 1 "Attestation" changed state of Connection ID 1 to 'Allowed' |
1471 | 35 | Andreas Steffen | </pre> |
1472 | 35 | Andreas Steffen | |
1473 | 38 | Andreas Steffen | The IF-TNCCS 2.0 finite state machine goes into the final Close state and sends a PB-TNC CLOSE batch back to the TNC server: |
1474 | 35 | Andreas Steffen | <pre> |
1475 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] creating PB-TNC CLOSE batch |
1476 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] PB-TNC state transition from 'Decided' to 'End' |
1477 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] sending PB-TNC CLOSE batch (8 bytes) for Connection ID 1 |
1478 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] => 8 bytes @ 0x82378ac |
1479 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[TNC] 0: 02 00 00 06 00 00 00 08 ........ |
1480 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[IKE] sending tunneled EAP-TTLS AVP [EAP/RES/TNC] |
1481 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[ENC] generating IKE_AUTH request 31 [ EAP/RES/TTLS ] |
1482 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 05[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1483 | 35 | Andreas Steffen | </pre> |
1484 | 36 | Andreas Steffen | |
1485 | 1 | Andreas Steffen | h2. Final Mutual IKEv2 EAP Authentication |
1486 | 36 | Andreas Steffen | |
1487 | 37 | Andreas Steffen | Based on the positive TNC assessment the IPsec gateway acting as a Policy Enforcement Point (PEP) finalizes the EAP-TTLS authentication with an EAP SUCCESS message: |
1488 | 35 | Andreas Steffen | <pre> |
1489 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 06[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1490 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 06[ENC] parsed IKE_AUTH response 31 [ EAP/SUCC ] |
1491 | 1 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 06[IKE] EAP method EAP_TTLS succeeded, MSK established |
1492 | 35 | Andreas Steffen | </pre> |
1493 | 1 | Andreas Steffen | |
1494 | 37 | Andreas Steffen | The IPsec client generates its IKEv2 AUTH payload by binding it to the MSK from the EAP-TTLS tunnel: |
1495 | 35 | Andreas Steffen | <pre> |
1496 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 06[IKE] authentication of 'carol@strongswan.org' (myself) with EAP |
1497 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 06[ENC] generating IKE_AUTH request 32 [ AUTH ] |
1498 | 1 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 06[NET] sending packet: from 192.168.0.254[4500] to 192.168.0.1[4500] |
1499 | 35 | Andreas Steffen | </pre> |
1500 | 35 | Andreas Steffen | |
1501 | 37 | Andreas Steffen | The IKE_AUTH response received from the IPsec gateway finalizes the IKEv2 negotiation: |
1502 | 35 | Andreas Steffen | <pre> |
1503 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[NET] received packet: from 192.168.0.1[4500] to 192.168.0.254[4500] |
1504 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[ENC] parsed IKE_AUTH response 32 [ AUTH SA TSi TSr N(AUTH_LFT) N(MOBIKE_SUP) N(ADD_4_ADDR) N(ADD_6_ADDR) N(ADD_6_ADDR) ] |
1505 | 1 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[IKE] authentication of 'moon.strongswan.org' with EAP successful |
1506 | 35 | Andreas Steffen | </pre> |
1507 | 35 | Andreas Steffen | |
1508 | 37 | Andreas Steffen | The Attestation IMC instance deletes itself and the PB-TNC (IF-TNCCS 2.0) connection is closed: |
1509 | 35 | Andreas Steffen | <pre> |
1510 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[IMC] IMC 1 "Attestation" deleted the state of Connection ID 1 |
1511 | 1 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[TNC] removed TNCCS Connection ID 1 |
1512 | 1 | Andreas Steffen | </pre> |
1513 | 36 | Andreas Steffen | |
1514 | 37 | Andreas Steffen | An IPsec Security Association is established between IPsec client and IPsec gateway and payload traffic can now be securely tunneled: |
1515 | 35 | Andreas Steffen | <pre> |
1516 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[IKE] IKE_SA home[1] established between 192.168.0.254[carol@strongswan.org]...192.168.0.1[moon.strongswan.org] |
1517 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[IKE] scheduling reauthentication in 9867s |
1518 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[IKE] maximum IKE_SA lifetime 10407s |
1519 | 35 | Andreas Steffen | Nov 29 07:39:34 merthyr charon: 01[IKE] CHILD_SA home{1} established with SPIs cd7bf53a_i c102a9d4_o and TS 192.168.0.254/32 === 10.1.0.0/28 |
1520 | 25 | Andreas Steffen | </pre> |