The Version of FreeS/WAN I amusing on both machines is 1.97 the Kernel
Version is 2.4.3-20mdk for both machines. I believe that FreeS/WAN is
using the x.509 patch as this shows up in the logs. However I used the
rpm to install the application.
Here is a transcript of barf...it is quite long
"
+ ipsec --version
Linux FreeS/WAN U1.97/K1.9
See `ipsec --copyright' for copyright information.
+ _________________________ proc/version
+ cat /proc/version
Linux version 2.4.3-20mdk (chmou_at_no.mandrakesoft.com) (gcc version
egcs-2.91.66 19990314/Linux (egcs-1.1.2 release / Linux-Mandrake 8.
0)) #1 Sun Apr 15 23:03:10 CEST 2001
+ _________________________ proc/net/ipsec_eroute
+ sort +3 /proc/net/ipsec_eroute
192.168.1.0/24 -> 192.168.0.0/24 => tun0x1001_at_202.138.210.2
192.168.0.0/24 -> 192.168.1.0/24 => tun0x102c_at_150.101.211.14
+ _________________________ proc/net/ipsec_spi
+ cat /proc/net/ipsec_spi
+ _________________________ proc/net/ipsec_spigrp
+ cat /proc/net/ipsec_spigrp
+ _________________________ netstart-rn
+ netstat -nr
Kernel IP routing table
Destination Gateway Genmask Flags MSS Window irtt
Iface
192.168.1.0 202.138.210.1 255.255.255.0 UG 40 0 0
ipsec0
192.168.0.0 0.0.0.0 255.255.255.0 U 40 0 0
eth0
202.138.210.0 0.0.0.0 255.255.255.0 U 40 0 0
eth1
202.138.210.0 0.0.0.0 255.255.255.0 U 40 0 0
ipsec0
127.0.0.0 0.0.0.0 255.0.0.0 U 40 0 0
lo
0.0.0.0 202.138.210.1 0.0.0.0 UG 40 0 0
eth1
+ _________________________ proc/net/ipsec_tncfg
+ cat /proc/net/ipsec_tncfg
ipsec0 -> eth1 mtu=16260 -> 1500
ipsec1 -> NULL mtu=0 -> 0
ipsec2 -> NULL mtu=0 -> 0
ipsec3 -> NULL mtu=0 -> 0
+ _________________________ proc/net/pf_key
+ cat /proc/net/pf_key
sock pid socket next prev e n p sndbf Flags Type
St
c4aec0a0 857 c31f21f4 0 0 0 0 2 65535 00000000 3
1
+ _________________________ proc/net/pf_key-star
+ cd /proc/net
+ egrep '^' pf_key_registered pf_key_supported
pf_key_registered:satype socket pid sk
pf_key_registered: 2 c31f21f4 857 c4aec0a0
pf_key_registered: 3 c31f21f4 857 c4aec0a0
pf_key_registered: 9 c31f21f4 857 c4aec0a0
pf_key_registered: 10 c31f21f4 857 c4aec0a0
pf_key_supported:satype exttype alg_id ivlen minbits maxbits
pf_key_supported: 2 14 3 0 160 160
pf_key_supported: 2 14 2 0 128 128
pf_key_supported: 3 15 3 128 168 168
pf_key_supported: 3 14 3 0 160 160
pf_key_supported: 3 14 2 0 128 128
pf_key_supported: 9 15 4 0 128 128
pf_key_supported: 9 15 3 0 32 128
pf_key_supported: 9 15 2 0 128 32
pf_key_supported: 9 15 1 0 32 32
pf_key_supported: 10 15 2 0 1 1
+ _________________________ proc/sys/net/ipsec-star
+ cd /proc/sys/net/ipsec
+ egrep '^' icmp inbound_policy_check no_eroute_pass opportunistic tos
icmp:1
inbound_policy_check:1
no_eroute_pass:0
opportunistic:0
tos:1
+ _________________________ ipsec/status
+ ipsec auto --status
000 interface ipsec0/eth1 202.138.210.2
000
000 "fair-frank":
192.168.0.0/24===202.138.210.2---202.138.210.1...150.101.211.13---150.10
1.211.14===192.168.1.0/24
000 "fair-frank": ike_life: 3600s; ipsec_life: 28800s; rekey_margin:
540s; rekey_fuzz: 100%; keyingtries: 0
000 "fair-frank": policy: RSASIG+ENCRYPT+TUNNEL+PFS; interface: eth1;
trap erouted
000 "fair-frank": newest ISAKMP SA: #0; newest IPsec SA: #0; eroute
owner: #0
000
+ _________________________ ifconfig-a
+ ifconfig -a
eth0 Link encap:Ethernet HWaddr 00:40:05:66:96:FC
inet addr:192.168.0.8 Bcast:192.168.0.255 Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:182017 errors:0 dropped:0 overruns:0 frame:0
TX packets:125056 errors:0 dropped:0 overruns:0 carrier:0
collisions:131 txqueuelen:100
RX bytes:24599868 (23.4 Mb) TX bytes:64826455 (61.8 Mb)
Interrupt:10 Base address:0x6000
eth1 Link encap:Ethernet HWaddr 00:40:05:E5:27:98
inet addr:202.138.210.2 Bcast:202.138.210.255
Mask:255.255.255.0
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:94291 errors:0 dropped:0 overruns:0 frame:0
TX packets:88227 errors:0 dropped:0 overruns:0 carrier:0
collisions:58 txqueuelen:100
RX bytes:46454977 (44.3 Mb) TX bytes:14460296 (13.7 Mb)
Interrupt:9 Base address:0x6100
ipsec0 Link encap:Ethernet HWaddr 00:40:05:E5:27:98
inet addr:202.138.210.2 Mask:255.255.255.0
UP RUNNING NOARP MTU:16260 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:10
RX bytes:0 (0.0 b) TX bytes:0 (0.0 b)
ipsec1 Link encap:IPIP Tunnel HWaddr
NOARP MTU:0 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:10
RX bytes:0 (0.0 b) TX bytes:0 (0.0 b)
ipsec2 Link encap:IPIP Tunnel HWaddr
NOARP MTU:0 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:10
RX bytes:0 (0.0 b) TX bytes:0 (0.0 b)
ipsec3 Link encap:IPIP Tunnel HWaddr
NOARP MTU:0 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:10
RX bytes:0 (0.0 b) TX bytes:0 (0.0 b)
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:1347 errors:0 dropped:0 overruns:0 frame:0
TX packets:1347 errors:0 dropped:0 overruns:0 carrier:0
ipsec2 Link encap:IPIP Tunnel HWaddr
NOARP MTU:0 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:10
RX bytes:0 (0.0 b) TX bytes:0 (0.0 b)
ipsec3 Link encap:IPIP Tunnel HWaddr
NOARP MTU:0 Metric:1
RX packets:0 errors:0 dropped:0 overruns:0 frame:0
TX packets:0 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:10
RX bytes:0 (0.0 b) TX bytes:0 (0.0 b)
lo Link encap:Local Loopback
inet addr:127.0.0.1 Mask:255.0.0.0
UP LOOPBACK RUNNING MTU:16436 Metric:1
RX packets:1347 errors:0 dropped:0 overruns:0 frame:0
TX packets:1347 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:159961 (156.2 Kb) TX bytes:159961 (156.2 Kb)
+ _________________________ ipsec/directory
+ ipsec --directory
/usr/lib/ipsec
+ _________________________ hostname/fqdn
+ hostname --fqdn
proxy.dolphindsl.com.au
+ _________________________ hostname/ipaddress
+ hostname --ip-address
202.138.210.2
+ _________________________ uptime
+ uptime
7:32pm up 1 day, 2:01, 1 user, load average: 0.08, 0.04, 0.01
+ _________________________ ps
+ ps alxwf
+ egrep -i 'ppid|pluto|ipsec|klips'
F UID PID PPID PRI NI VSZ RSS WCHAN STAT TTY TIME
COMMAND
040 0 854 1 9 0 2048 948 wait4 S ? 0:00
/bin/sh /usr/lib/ipsec/_plutorun --debug none --uniqueids yes -
040 0 856 854 9 0 2048 952 wait4 S ? 0:00 \_
/bin/sh /usr/lib/ipsec/_plutorun --debug none --uniqueids y
100 0 857 856 9 0 2004 1016 do_sel S ? 0:33 |
\_ /usr/lib/ipsec/pluto --nofork --debug-none --uniqueids
000 0 881 857 9 0 1388 336 do_sel S ? 0:00 |
\_ _pluto_adns 7 10
000 0 858 854 8 0 2020 984 pipe_w S ? 0:00 \_
/bin/sh /usr/lib/ipsec/_plutoload --load %search --start %s
000 0 855 1 9 0 1320 416 pipe_w S ? 0:00
logger -p daemon.error -t ipsec__plutorun
000 0 4130 3209 9 0 2040 984 wait4 S pts/0 0:00
\_ /bin/sh /usr/sbin/ipsec barf
000 0 4131 4130 10 0 2064 1036 wait4 S pts/0 0:00
\_ /bin/sh /usr/lib/ipsec/barf
000 0 4171 4131 10 0 1460 536 pipe_w S pts/0 0:00
\_ egrep -i ppid|pluto|ipsec|klips
+ _________________________ ipsec/showdefaults
+ ipsec showdefaults
routephys=eth1
routephys=eth1
routevirt=ipsec0
routevirt=ipsec0
routeaddr=202.138.210.2
routeaddr=202.138.210.2
routenexthop=202.138.210.1
routenexthop=202.138.210.1
defaultroutephys=eth1
defaultroutevirt=ipsec0
defaultrouteaddr=202.138.210.2
defaultroutenexthop=202.138.210.1
+ _________________________ ipsec/conf
+ ipsec _include /e"
+ ipsec _keycensor
#< /etc/freeswan/ipsec.conf 1
# /etc/freeswan/ipsec.conf - FreeS/WAN IPsec configuration file
# More elaborate and more varied sample configurations can be found
# in FreeS/WAN's doc/examples file, and in the HTML documentation.
# basic configuration
config setup
# THIS SETTING MUST BE CORRECT or almost nothing will work;
# %defaultroute is okay for most simple cases.
interfaces=%defaultroute
# Debug-logging controls: "none" for (almost) none, "all" for
lots.
klipsdebug=none
plutodebug=none
# Use auto= parameters in conn descriptions to control startup
actions.
plutoload=%search
plutostart=%search
# Close down old connection when new one using same ID shows up.
uniqueids=yes
# defaults for subsequent connection descriptions
# (these defaults will soon go away)
conn %default
keyingtries=0
disablearrivalcheck=no
authby=rsasig
#leftrsasigkey=%dns
#rightrsasigkey=%dns
# connection description for opportunistic encryption
# (requires KEY record in your DNS reverse map; see
doc/opportunism.howto)
conn me-to-anyone
left=%defaultroute
right=%opportunistic
keylife=1h
rekey=no
# for initiator only OE, uncomment and uncomment this
# after putting your key in your forward map
#leftid=@myhostname.example.com
# uncomment this next line to enable it
#auto=route
# sample VPN connection
conn fair-frank
# Left security gateway, subnet behind it, next hop toward
right.
left=202.138.210.2
leftsubnet=192.168.0.0/24
leftrsasigkey=[keyid AQPaReMlx]
leftnexthop=202.138.210.1
# Right security gateway, subnet behind it, next hop toward
left.
right=150.101.211.14
rightsubnet=192.168.1.0/24
rightrsasigkey=[keyid AQNlyCclX]
rightnexthop=150.101.211.13
# To authorize this connection, but not actually start it, at
startup,
# uncomment this.
auto=add
+ _________________________ ipsec/secrets
+ ipsec _include /etc/freeswan/ipsec.secrets
+ ipsec _secretcensor
#< /etc/freeswan/ipsec.secrets 1
: RSA {
# RSA 2192 bits proxy.dolphindsl.com.au Mon May 13 17:12:42
2002
# for signatures only, UNSAFE FOR ENCRYPTION
#pubkey=[keyid AQPaReMlx]
#IN KEY 0x4200 4 1 [keyid AQPaReMlx]
# (0x4200 = auth-only host-level, 4 = IPSec, 1 = RSA)
Modulus: [...]
PublicExponent: [...]
# everything after this point is secret
PrivateExponent: [...]
Prime1: [...]
Prime2: [...]
Exponent1: [...]
Exponent2: [...]
Coefficient: [...]
}
# do not change the indenting of that "[sums to 7d9d...]"
+ _________________________ ipsec/ls-dir
+ ls -l /usr/lib/ipsec
total 884
-rwxr-xr-x 1 root root 11119 Apr 16 12:03 _confread
-rwxr-xr-x 1 root root 4184 Apr 16 12:03 _copyright
-rwxr-xr-x 1 root root 2163 Apr 16 12:03 _include
-rwxr-xr-x 1 root root 1472 Apr 16 12:03 _keycensor
-rwxr-xr-x 1 root root 9736 Apr 16 12:03 _pluto_adns
-rwxr-xr-x 1 root root 3495 Apr 16 12:03 _plutoload
-rwxr-xr-x 1 root root 4265 Apr 16 12:03 _plutorun
-rwxr-xr-x 1 root root 7294 Apr 16 12:03 _realsetup
-rwxr-xr-x 1 root root 1971 Apr 16 12:03 _secretcensor
-rwxr-xr-x 1 root root 6839 Apr 16 12:03 _startklips
-rwxr-xr-x 1 root root 5014 Apr 16 12:03 _updown
-rwxr-xr-x 1 root root 12491 Apr 16 12:03 auto
-rwxr-xr-x 1 root root 7132 Apr 16 12:03 barf
-rwxr-xr-x 1 root root 64392 Apr 16 12:03 eroute
-rwxr-xr-x 1 root root 18100 Apr 16 12:03 ikeping
-rwxr-xr-x 1 root root 2918 Apr 16 12:03 ipsec
-rw-r--r-- 1 root root 1950 Apr 16 12:03
ipsec_pr.template
-rwxr-xr-x 1 root root 44136 Apr 16 12:03 klipsdebug
-rwxr-xr-x 1 root root 2437 Apr 16 12:03 look
-rwxr-xr-x 1 root root 16157 Apr 16 12:03 manual
-rwxr-xr-x 1 root root 1847 Apr 16 12:03 newhostkey
-rwxr-xr-x 1 root root 37196 Apr 16 12:03 pf_key
-rwxr-xr-x 1 root root 316104 Apr 16 12:03 pluto
-rwxr-xr-x 1 root root 6472 Apr 16 12:03 ranbits
-rwxr-xr-x 1 root root 18600 Apr 16 12:03 rsasigkey
-rwxr-xr-x 1 root root 16653 Apr 16 12:03 send-pr
lrwxrwxrwx 1 root root 30 May 13 17:12 setup ->
../../../etc/rc.d/init.d/ipsec
-rwxr-xr-x 1 root root 1041 Apr 16 12:03 showdefaults
-rwxr-xr-x 1 root root 3493 Apr 16 12:03 showhostkey
-rwxr-xr-x 1 root root 72776 Apr 16 12:03 spi
-rwxr-xr-x 1 root root 56136 Apr 16 12:03 spigrp
-rwxr-xr-x 1 root root 9708 Apr 16 12:03 tncfg
-rwxr-xr-x 1 root root 16616 Apr 16 12:03 uml_netjig
-rwxr-xr-x 1 root root 34728 Apr 16 12:03 whack
+ _________________________ ipsec/updowns
++ ls /usr/lib/ipsec
++ egrep updown
+ cat /usr/lib/ipsec/_updown
#! /bin/sh
# default updown script
# Copyright (C) 2000, 2001 D. Hugh Redelmeier, Henry Spencer
#
# This program is free software; you can redistribute it and/or modify
it
# under the terms of the GNU General Public License as published by the
# Free Software Foundation; either version 2 of the License, or (at your
# option) any later version. See <http://www.fsf.org/copyleft/gpl.txt>.
#
# This program is distributed in the hope that it will be useful, but
# WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY
# or FITNESS FOR A PARTICULAR PURPOSE. See the GNU General Public
License
# for more details.
#
# RCSID $Id: _updown,v 1.19 2002/03/25 18:04:42 henry Exp $
# CAUTION: Installing a new version of FreeS/WAN will install a new
# copy of this script, wiping out any custom changes you make. If
# you need changes, make a copy of this under another name, and
customize
# that, and use the (left/right)updown parameters in ipsec.conf to make
# FreeS/WAN use yours instead of this default one.
# check interface version
case "$PLUTO_VERSION" in
1.[0]) # Older Pluto?!? Play it safe, script may be using new
features.
echo "$0: obsolete interface version \`$PLUTO_VERSION'," >&2
echo "$0: called by obsolete Pluto?" >&2
exit 2
;;
1.*) ;;
*) echo "$0: unknown interface version \`$PLUTO_VERSION'" >&2
exit 2
;;
esac
# check parameter(s)
case "$1:$*" in
':') # no parameters
;;
ipfwadm:ipfwadm) # due to (left/right)firewall; for default
script only
;;
custom:*) # custom parameters (see above CAUTION comment)
;;
*) echo "$0: unknown parameters \`$*'" >&2
exit 2
;;
esac
# utility functions for route manipulation
# Meddling with this stuff should not be necessary and requires great
care.
uproute() {
doroute add
}
downroute() {
doroute del
}
doroute() {
parms="-net $PLUTO_PEER_CLIENT_NET netmask
$PLUTO_PEER_CLIENT_MASK"
parms2="dev $PLUTO_INTERFACE gw $PLUTO_NEXT_HOP"
case "$PLUTO_PEER_CLIENT_NET/$PLUTO_PEER_CLIENT_MASK" in
"0.0.0.0/0.0.0.0")
# horrible kludge for obscure routing bug with
opportunistic
it="route $1 -net 0.0.0.0 netmask 128.0.0.0 $parms2 &&
route $1 -net 128.0.0.0 netmask 128.0.0.0
$parms2"
;;
*) it="route $1 $parms $parms2"
;;
esac
eval $it
st=$?
if test $st -ne 0
then
# route has already given its own cryptic message
echo "$0: \`$it' failed" >&2
if test " $1 $st" = " add 7"
then
# another totally undocumented interface -- 7
and
# "SIOCADDRT: Network is unreachable" means that
# the gateway isn't reachable.
echo "$0: (incorrect or missing nexthop
setting??)" >&2
fi
fi
return $st
}
# the big choice
case "$PLUTO_VERB:$1" in
prepare-host:*|prepare-client:*)
# delete possibly-existing route (preliminary to adding a route)
case "$PLUTO_PEER_CLIENT_NET/$PLUTO_PEER_CLIENT_MASK" in
"0.0.0.0/0.0.0.0")
# horrible kludge for obscure routing bug with
opportunistic
it="route del -net 0.0.0.0 netmask 128.0.0.0 2>&1 ;
route del -net 128.0.0.0 netmask 128.0.0.0 2>&1"
;;
*)
it="route del -net $PLUTO_PEER_CLIENT_NET \
netmask $PLUTO_PEER_CLIENT_MASK
2>&1"
;;
esac
oops="`eval $it`"
status="$?"
if test " $oops" = " " -a " $status" != " 0"
then
oops="silent error, exit status $status"
fi
case "$oops" in
'SIOCDELRT: No such process'*)
# This is what route (currently -- not documented!)
gives
# for "could not find such a route".
oops=
status=0
;;
esac
if test " $oops" != " " -o " $status" != " 0"
then
echo "$0: \`$it' failed ($oops)" >&2
fi
exit $status
;;
route-host:*|route-client:*)
# connection to me or my client subnet being routed
uproute
;;
unroute-host:*|unroute-client:*)
# connection to me or my client subnet being unrouted
downroute
;;
up-host:*)
# connection to me coming up
# If you are doing a custom version, firewall commands go here.
;;
down-host:*)
# connection to me going down
# If you are doing a custom version, firewall commands go here.
;;
up-client:)
# connection to my client subnet coming up
# If you are doing a custom version, firewall commands go here.
;;
down-client:)
# connection to my client subnet going down
# If you are doing a custom version, firewall commands go here.
;;
up-client:ipfwadm)
# connection to client subnet, with (left/right)firewall=yes,
coming up
# This is used only by the default updown script, not by your
custom
# ones, so do not mess with it; see CAUTION comment up at top.
ipfwadm -F -i accept -b -S
$PLUTO_MY_CLIENT_NET/$PLUTO_MY_CLIENT_MASK \
-D $PLUTO_PEER_CLIENT_NET/$PLUTO_PEER_CLIENT_MASK
;;
down-client:ipfwadm)
# connection to client subnet, with (left/right)firewall=yes,
going down
# This is used only by the default updown script, not by your
custom
# ones, so do not mess with it; see CAUTION comment up at top.
ipfwadm -F -d accept -b -S
$PLUTO_MY_CLIENT_NET/$PLUTO_MY_CLIENT_MASK \
-D $PLUTO_PEER_CLIENT_NET/$PLUTO_PEER_CLIENT_MASK
;;
*) echo "$0: unknown verb \`$PLUTO_VERB' or parameter \`$1'" >&2
exit 1
;;
esac
+ _________________________ proc/net/dev
+ cat /proc/net/dev
Inter-| Receive |
Transmit
face |bytes packets errs drop fifo frame compressed multicast|bytes
packets errs drop fifo colls carrier compressed
lo: 160843 1355 0 0 0 0 0 0
160843 1355 0 0 0 0 0 0
eth0:24599868 182017 0 0 0 0 0 81004
64826455 125056 0 0 0 131 0 0
eth1:46454977 94291 0 0 0 0 0 273
14460296 88227 0 0 0 58 0 0
ipsec0: 0 0 0 0 0 0 0 0
0 0 0 0 0 0 0 0
ipsec1: 0 0 0 0 0 0 0 0
0 0 0 0 0 0 0 0
ipsec2: 0 0 0 0 0 0 0 0
0 0 0 0 0 0 0 0
ipsec3: 0 0 0 0 0 0 0 0
0 0 0 0 0 0 0 0
+ _________________________ proc/net/route
+ cat /proc/net/route
Iface Destination Gateway Flags RefCnt Use Metric
Mask MTU Window IRTT
ipsec0 0001A8C0 01D28ACA 0003 0 0 0
00FFFFFF 40 0 0
eth0 0000A8C0 00000000 0001 0 0 0
00FFFFFF 40 0 0
eth1 00D28ACA 00000000 0001 0 0 0
00FFFFFF 40 0 0
ipsec0 00D28ACA 00000000 0001 0 0 0
00FFFFFF 40 0 0
lo 0000007F 00000000 0001 0 0 0
000000FF 40 0 0
eth1 00000000 01D28ACA 0003 0 0 0
00000000 40 0 0
+ _________________________ proc/sys/net/ipv4/ip_forward
+ cat /proc/sys/net/ipv4/ip_forward
1
+ _________________________ proc/sys/net/ipv4/conf/star-rp_filter
+ cd /proc/sys/net/ipv4/conf
+ egrep '^' all/rp_filter default/rp_filter eth0/rp_filter
eth1/rp_filter ipsec0/rp_filter lo/rp_filter
all/rp_filter:1
default/rp_filter:0
eth0/rp_filter:0
eth1/rp_filter:0
ipsec0/rp_filter:0
lo/rp_filter:0
+ _________________________ uname-a
+ uname -a
Linux proxy.dolphindsl.com.au 2.4.3-20mdk #1 Sun Apr 15 23:03:10 CEST
2001 i586 unknown
+ _________________________ redhat-release
+ test -r /etc/redhat-release
+ cat /etc/redhat-release
Linux Mandrake release 8.0 (Traktopel) for i586
+ _________________________ proc/net/ipsec_version
+ cat /proc/net/ipsec_version
FreeS/WAN version: 1.9
+ _________________________ iptables/list
+ iptables -L -v -n
Chain INPUT (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
274 32384 ACCEPT all -- lo * 0.0.0.0/0
0.0.0.0/0
10501 1219K ACCEPT all -- eth0 * 192.168.0.0/24
0.0.0.0/0
0 0 drop-and-log-it all -- eth1 * 192.168.0.0/24
0.0.0.0/0
28 1951 ACCEPT icmp -- eth1 * 0.0.0.0/0
202.138.210.2
0 0 ACCEPT tcp -- eth1 * 0.0.0.0/0
0.0.0.0/0 tcp dpt:22
0 0 ACCEPT all -- eth1 * 152.91.5.37
0.0.0.0/0
17 4196 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp spt:500 dpt:500
0 0 ACCEPT esp -- * * 0.0.0.0/0
0.0.0.0/0
7590 5212K ACCEPT all -- eth1 * 0.0.0.0/0
202.138.210.2 state RELATED,ESTABLISHED
340 47676 drop-and-log-it all -- * * 0.0.0.0/0
0.0.0.0/0
Chain FORWARD (policy DROP 0 packets, 0 bytes)
pkts bytes target prot opt in out source
destination
6891 1364K ACCEPT all -- eth1 eth0 0.0.0.0/0
0.0.0.0/0 state RELATED,ESTABLISHED
0 0 ACCEPT all -- eth1 eth0 0.0.0.0/0
202.138.210.3
8140 3841K ACCEPT all -- eth0 eth1 0.0.0.0/0
0.0.0.0/0
0 0 drop-and-log-it all -- * * 0.0.0.0/0
0.0.0.0/0
Chain OUTPUT (policy DROP 4 packets, 580 bytes)
pkts bytes target prot opt in out source
destination
26 7060 ACCEPT udp -- * * 0.0.0.0/0
0.0.0.0/0 udp spt:500 dpt:500
0 0 ACCEPT esp -- * * 0.0.0.0/0
0.0.0.0/0
274 32384 ACCEPT all -- * lo 0.0.0.0/0
0.0.0.0/0
1523 287K ACCEPT all -- * eth0 202.138.210.2
192.168.0.0/24
10107 6142K ACCEPT all -- * eth0 192.168.0.0/24
192.168.0.0/24
0 0 REJECT icmp -- * * 0.0.0.0/0
0.0.0.0/0 state INVALID reject-with icmp-port-unreachable
0 0 drop-and-log-it all -- * eth1 0.0.0.0/0
192.168.0.0/24
7808 844K ACCEPT all -- * eth1 202.138.210.2
0.0.0.0/0
0 0 drop-and-log-it all -- * * 0.0.0.0/0
0.0.0.0/0
Chain drop-and-log-it (5 references)
pkts bytes target prot opt in out source
destination
340 47676 LOG all -- * * 0.0.0.0/0
0.0.0.0/0 LOG flags 0 level 5
340 47676 DROP all -- * * 0.0.0.0/0
0.0.0.0/0
+ _________________________ ipchains/list
+ ipchains -L -v -n
/usr/lib/ipsec/barf: ipchains: command not found
+ _________________________ ipfwadm/forward
+ ipfwadm -F -l -n -e
/usr/lib/ipsec/barf: ipfwadm: command not found
+ _________________________ ipfwadm/input
+ ipfwadm -I -l -n -e
/usr/lib/ipsec/barf: ipfwadm: command not found
+ _________________________ ipfwadm/output
+ ipfwadm -O -l -n -e
/usr/lib/ipsec/barf: ipfwadm: command not found
+ _________________________ iptables/nat
+ iptables -t nat -L -v -n
Chain PREROUTING (policy ACCEPT 23909 packets, 3404K bytes)
pkts bytes target prot opt in out source
destination
Chain POSTROUTING (policy ACCEPT 318 packets, 24925 bytes)
pkts bytes target prot opt in out source
destination
1152 69179 SNAT all -- * eth1 0.0.0.0/0
0.0.0.0/0 to:202.138.210.2
Chain OUTPUT (policy ACCEPT 5568 packets, 360K bytes)
pkts bytes target prot opt in out source
destination
+ _________________________ ipchains/masq
+ ipchains -M -L -v -n
/usr/lib/ipsec/barf: ipchains: command not found
+ _________________________ ipfwadm/masq
+ ipfwadm -M -l -n -e
/usr/lib/ipsec/barf: ipfwadm: command not found
+ _________________________ iptables/mangle
+ iptables -t mangle -L -v -n
Chain PREROUTING (policy ACCEPT 2135 packets, 494K bytes)
pkts bytes target prot opt in out source
destination
Chain OUTPUT (policy ACCEPT 2615 packets, 721K bytes)
pkts bytes target prot opt in out source
destination
+ _________________________ proc/modules
+ cat /proc/modules
iptable_mangle 1680 0 (autoclean) (unused)
ipt_REJECT 1888 1 (autoclean)
ip_conntrack_irc 2336 0 (unused)
af_packet 11280 1 (autoclean)
ipt_state 576 3 (autoclean)
ipt_LOG 3120 1 (autoclean)
iptable_filter 1696 0 (autoclean) (unused)
ip_nat_ftp 3312 0 (unused)
iptable_nat 11616 1 [ip_nat_ftp]
ip_conntrack_ftp 1856 0 (unused)
ip_conntrack 12096 4 [ip_conntrack_irc ipt_state ip_nat_ftp
iptable_nat ip_conntrack_ftp]
ip_tables 10528 8 [iptable_mangle ipt_REJECT ipt_state
ipt_LOG iptable_filter iptable_nat]
ipsec 134016 2
ne2k-pci 4512 2 (autoclean)
8390 6112 0 (autoclean) [ne2k-pci]
supermount 32496 4 (autoclean)
+ _________________________ proc/meminfo
+ cat /proc/meminfo
total: used: free: shared: buffers: cached:
Mem: 80482304 77910016 2572288 0 4554752 20606976
Swap: 0 0 0
MemTotal: 78596 kB
MemFree: 2512 kB
MemShared: 0 kB
Buffers: 4448 kB
Cached: 20124 kB
Active: 11100 kB
Inact_dirty: 11932 kB
Inact_clean: 1540 kB
Inact_target: 8 kB
HighTotal: 0 kB
HighFree: 0 kB
LowTotal: 78596 kB
LowFree: 2512 kB
SwapTotal: 0 kB
SwapFree: 0 kB
+ _________________________ dev/ipsec-ls
+ ls -l '/dev/ipsec*'
ls: /dev/ipsec*: No such file or directory
+ _________________________ proc/net/ipsec-ls
+ ls -l /proc/net/ipsec_eroute /proc/net/ipsec_spi
/proc/net/ipsec_spigrp /proc/net/ipsec_tncfg /proc/net/ipsec_version
-r--r--r-- 1 root root 0 May 17 19:32
/proc/net/ipsec_eroute
-r--r--r-- 1 root root 0 May 17 19:32
/proc/net/ipsec_spi
-r--r--r-- 1 root root 0 May 17 19:32
/proc/net/ipsec_spigrp
-r--r--r-- 1 root root 0 May 17 19:32
/proc/net/ipsec_tncfg
-r--r--r-- 1 root root 0 May 17 19:32
/proc/net/ipsec_version
+ _________________________ usr/src/linux/.config
+ test -f /usr/src/linux/.config
+ _________________________ etc/syslog.conf
+ cat /etc/syslog.conf
# Various entry
auth,authpriv.*
/var/log/auth.log
*.*;auth,authpriv.none
-/var/log/syslog
user.*
-/var/log/user.log
# Log anything (except mail) of level info or higher.
# Don't log private authentication messages!
*.info;mail.none;news.none;authpriv.none
-/var/log/messages
# The authpriv file has restricted access.
authpriv.*
/var/log/secure
# Mail logging
mail.=debug;mail.=info;mail.=notice
-/var/log/mail/info
mail.=warn
-/var/log/mail/warnings
mail.err
-/var/log/mail/errors
# Cron logging
cron.=debug;cron.=info;cron.=notice
-/var/log/cron/info
cron.=warn
-/var/log/cron/warnings
cron.err
-/var/log/cron/errors
# Kernel logging
kern.=debug;kern.=info;kern.=notice
-/var/log/kernel/info
kern.=warn
-/var/log/kernel/warnings
kern.err
/var/log/kernel/errors
# Lpr logging
lpr.=debug;lpr.=info;lpr.=notice
-/var/log/lpr/info
lpr.=warn
-/var/log/lpr/warnings
lpr.err
-/var/log/lpr/errors
# News logging
news.=debug;news.=info;news.=notice
-/var/log/news/info
news.=warn
-/var/log/news/warnings
news.err
-/var/log/news/errors
# Daemons logging
daemon.=debug;daemon.=info;daemon.=notice
-/var/log/daemons/info
daemon.=warn
-/var/log/daemons/warnings
daemon.err
-/var/log/daemons/errors
# Everybody gets emergency messages
*.emerg *
# Save mail and news errors of level err and higher in a
# special file.
uucp,news.crit
-/var/log/spooler
# Save boot messages also to boot.log
local7.*
-/var/log/boot.log
#
# INN
#
news.=crit
/var/log/news/news.crit
news.=err /var/log/news/news.err
news.notice
/var/log/news/news.notice
# Mandrake-Security : if you remove this comment, remove the next line
too.
*.* /dev/tty12
+ _________________________ lib/modules-ls
+ ls -ltr /lib/modules
total 4
drwxr-xr-x 5 root root 4096 Jul 29 2001 2.4.3-20mdk
+ _________________________ proc/ksyms-netif_rx
+ egrep netif_rx /proc/ksyms
c01b3bb4 netif_rx_R57b26ed0
+ _________________________ lib/modules-netif_rx
+ modulegoo kernel/net/ipv4/ipip.o netif_rx
+ set +x
2.4.3-20mdk:
+ _________________________ kern.debug
+ test -f /var/log/kern.debug
+ _________________________ klog
+ sed -n '11920,$p' /var/log/messages
+ egrep -i 'ipsec|klips|pluto'
+ cat
May 16 17:32:18 proxy ipsec_setup: Starting FreeS/WAN IPsec 1.97...
May 16 17:33:33 proxy kernel: IPsec: KLIPS startup, FreeS/WAN version:
1.9
May 16 17:33:33 proxy kernel: IPsec: initialising PF_KEY domain sockets.
May 16 17:33:33 proxy kernel: IPsec: initialisation of device: ipsec0
May 16 17:33:33 proxy kernel: IPsec: initialisation of device: ipsec1
May 16 17:33:33 proxy kernel: IPsec: initialisation of device: ipsec2
May 16 17:33:33 proxy kernel: IPsec: initialisation of device: ipsec3
May 16 17:33:34 proxy ipsec_setup: KLIPS ipsec0 on eth1
202.138.210.2/255.255.255.0 broadcast 202.138.210.255
May 16 17:33:34 proxy ipsec_setup: ...FreeS/WAN IPsec started
May 16 17:33:34 proxy rc: Starting ipsec: succeeded
May 16 17:46:57 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=0
May 16 17:46:57 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=0
May 16 17:46:58 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=256
May 16 17:46:59 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=512
May 16 17:47:00 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=768
May 16 17:47:01 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=1024
May 16 17:47:02 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=1280
May 16 17:47:03 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=1536
May 16 17:47:04 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=60932 SEQ=1792
May 16 17:47:11 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1003_at_202.138.210.2
May 16 17:47:11 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1004_at_202.138.210.2
May 16 17:49:51 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8453 SEQ=0
May 16 17:49:51 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8453 SEQ=0
May 16 17:49:52 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8453 SEQ=256
May 16 17:49:53 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8453 SEQ=512
May 16 17:49:54 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8453 SEQ=768
May 16 17:49:58 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.3 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8709 SEQ=0
May 16 17:49:58 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.3 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8709 SEQ=0
May 16 17:49:59 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.3 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8709 SEQ=256
May 16 17:50:00 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.3 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8709 SEQ=512
May 16 17:50:01 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.3 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=8709 SEQ=768
May 16 17:55:34 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=78 TOS=0x00 PREC=0x00 TTL=127 ID=61651 PROTO=UDP
SPT=137 DPT=137 LEN=58
May 16 17:55:36 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=78 TOS=0x00 PREC=0x00 TTL=127 ID=61652 PROTO=UDP
SPT=137 DPT=137 LEN=58
May 16 17:55:37 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=78 TOS=0x00 PREC=0x00 TTL=127 ID=61653 PROTO=UDP
SPT=137 DPT=137 LEN=58
May 16 17:55:44 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=1 ID=61661 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=7936
May 16 17:55:48 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=1 ID=61672 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=8192
May 16 17:55:52 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=1 ID=61698 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=8448
May 16 17:55:56 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=2 ID=61781 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=8704
May 16 17:56:00 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=2 ID=61782 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=8960
May 16 17:56:04 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=2 ID=61783 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=9216
May 16 17:56:08 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=3 ID=61784 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=9472
May 16 17:56:12 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=3 ID=61793 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=9728
May 16 17:56:16 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=3 ID=61794 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=9984
May 16 17:56:20 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=4 ID=61797 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=10240
May 16 17:56:24 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=4 ID=61811 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=10496
May 16 18:00:21 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=19973 SEQ=0
May 16 18:00:21 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=19973 SEQ=0
May 16 18:00:22 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=19973 SEQ=256
May 16 18:00:23 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=19973 SEQ=512
May 16 18:00:24 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=19973 SEQ=768
May 16 18:13:28 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1007_at_202.138.210.2
May 16 18:13:30 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1009_at_202.138.210.2
May 16 18:17:42 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=60 TOS=0x00 PREC=0x00 TTL=127 ID=65401 PROTO=ICM
P TYPE=8 CODE=0 ID=512 SEQ=19968
May 16 18:17:47 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=60 TOS=0x00 PREC=0x00 TTL=127 ID=65402 PROTO=ICM
P TYPE=8 CODE=0 ID=512 SEQ=20224
May 16 18:17:52 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=60 TOS=0x00 PREC=0x00 TTL=127 ID=65411 PROTO=ICM
P TYPE=8 CODE=0 ID=512 SEQ=20480
May 16 18:17:57 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=60 TOS=0x00 PREC=0x00 TTL=127 ID=65412 PROTO=ICM
P TYPE=8 CODE=0 ID=512 SEQ=20736
May 16 18:18:13 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=78 TOS=0x00 PREC=0x00 TTL=127 ID=65419 PROTO=UDP
SPT=137 DPT=137 LEN=58
May 16 18:18:14 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=78 TOS=0x00 PREC=0x00 TTL=127 ID=65420 PROTO=UDP
SPT=137 DPT=137 LEN=58
May 16 18:18:16 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=78 TOS=0x00 PREC=0x00 TTL=127 ID=65429 PROTO=UDP
SPT=137 DPT=137 LEN=58
May 16 18:18:23 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=1 ID=65439 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=21760
May 16 18:18:27 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=1 ID=65440 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=22016
May 16 18:18:31 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=1 ID=65444 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=22272
May 16 18:18:35 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=2 ID=65503 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=22528
May 16 18:18:39 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=2 ID=65504 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=22784
May 16 18:18:43 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=2 ID=65513 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=23040
May 16 18:18:47 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=3 ID=65514 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=23296
May 16 18:18:51 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=3 ID=65515 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=23552
May 16 18:18:55 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=3 ID=65532 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=23808
May 16 18:18:59 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=4 ID=1 PROTO=ICMP TYPE
=8 CODE=0 ID=512 SEQ=24064
May 16 18:19:03 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=4 ID=20 PROTO=ICMP TYP
E=8 CODE=0 ID=512 SEQ=24320
May 16 18:19:07 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=4 ID=356 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=24576
May 16 18:19:11 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=5 ID=680 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=24832
May 16 18:19:15 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=5 ID=681 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=25088
May 16 18:19:19 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=5 ID=682 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=25344
May 16 18:19:23 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=6 ID=683 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=25600
May 16 18:19:27 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=6 ID=684 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=25856
May 16 18:19:31 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=6 ID=693 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=26112
May 16 18:19:35 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=7 ID=696 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=26368
May 16 18:19:39 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=7 ID=722 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=26624
May 16 18:19:43 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=7 ID=798 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=26880
May 16 18:19:47 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=8 ID=897 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=27136
May 16 18:19:51 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=8 ID=898 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=27392
May 16 18:19:55 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=8 ID=907 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=27648
May 16 18:19:59 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=9 ID=908 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=27904
May 16 18:20:03 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=9 ID=909 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=28160
May 16 18:20:07 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=9 ID=912 PROTO=ICMP TY
PE=8 CODE=0 ID=512 SEQ=28416
May 16 18:20:11 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=10 ID=914 PROTO=ICMP T
YPE=8 CODE=0 ID=512 SEQ=28672
May 16 18:20:15 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=10 ID=1017 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=28928
May 16 18:20:19 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=10 ID=1048 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=29184
May 16 18:20:23 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=11 ID=1057 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=29440
May 16 18:20:27 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=11 ID=1058 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=29696
May 16 18:20:31 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=11 ID=1092 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=29952
May 16 18:20:35 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=12 ID=1116 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=30208
May 16 18:20:39 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=12 ID=1124 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=30464
May 16 18:20:43 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=12 ID=1161 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=30720
May 16 18:20:47 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=13 ID=1213 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=30976
May 16 18:20:51 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=13 ID=1214 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=31232
May 16 18:20:55 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=13 ID=1215 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=31488
May 16 18:20:59 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=14 ID=1227 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=31744
May 16 18:21:03 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=14 ID=1228 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=32000
May 16 18:21:07 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=14 ID=1234 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=32256
May 16 18:21:11 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=15 ID=1245 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=32512
May 16 18:21:15 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=15 ID=1246 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=32768
May 16 18:21:19 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=15 ID=1248 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=33024
May 16 18:21:23 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=16 ID=1249 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=33280
May 16 18:21:27 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=16 ID=1250 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=33536
May 16 18:21:31 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=16 ID=1251 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=33792
May 16 18:21:36 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=17 ID=1260 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=34048
May 16 18:21:40 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=17 ID=1266 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=34304
May 16 18:21:44 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=17 ID=1267 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=34560
May 16 18:21:48 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=18 ID=1268 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=34816
May 16 18:21:52 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=18 ID=1269 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=35072
May 16 18:21:56 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=18 ID=1270 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=35328
May 16 18:22:00 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=19 ID=1276 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=35584
May 16 18:22:04 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=19 ID=1286 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=35840
May 16 18:22:08 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=19 ID=1313 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=36096
May 16 18:22:12 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=20 ID=1361 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=36352
May 16 18:22:16 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=20 ID=1387 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=36608
May 16 18:22:20 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=20 ID=1388 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=36864
May 16 18:22:24 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=21 ID=1389 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=37120
May 16 18:22:28 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=21 ID=1401 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=37376
May 16 18:22:32 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=21 ID=1406 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=37632
May 16 18:22:36 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=22 ID=1407 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=37888
May 16 18:22:40 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=22 ID=1410 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=38144
May 16 18:22:44 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=22 ID=1411 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=38400
May 16 18:22:48 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=23 ID=1427 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=38656
May 16 18:22:52 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=23 ID=1436 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=38912
May 16 18:22:56 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=23 ID=1451 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=39168
May 16 18:23:00 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=24 ID=1459 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=39424
May 16 18:23:04 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=24 ID=1486 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=39680
May 16 18:23:08 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=24 ID=1498 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=39936
May 16 18:23:12 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=25 ID=1529 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=40192
May 16 18:23:16 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=25 ID=1540 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=40448
May 16 18:23:20 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=25 ID=1543 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=40704
May 16 18:23:24 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=26 ID=1544 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=40960
May 16 18:23:28 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=26 ID=1551 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=41216
May 16 18:23:32 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=26 ID=1562 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=41472
May 16 18:23:36 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=27 ID=1571 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=41728
May 16 18:23:40 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=27 ID=1590 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=41984
May 16 18:23:44 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=27 ID=1599 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=42240
May 16 18:23:48 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=28 ID=1616 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=42496
May 16 18:23:52 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=28 ID=1653 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=42752
May 16 18:23:56 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=28 ID=1674 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=43008
May 16 18:24:00 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=29 ID=1689 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=43264
May 16 18:24:04 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=29 ID=1690 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=43520
May 16 18:24:08 proxy kernel: IN=eth0 OUT=ipsec0 SRC=192.168.0.89
DST=192.168.1.5 LEN=92 TOS=0x00 PREC=0x00 TTL=29 ID=1702 PROTO=ICMP
TYPE=8 CODE=0 ID=512 SEQ=43776
May 16 18:36:40 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=11270 SEQ=0
May 16 18:36:40 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=11270 SEQ=0
May 16 18:36:41 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=11270 SEQ=256
May 16 18:36:42 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=11270 SEQ=512
May 16 18:36:43 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=11270 SEQ=768
May 16 18:36:44 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=11270 SEQ=1024
May 16 18:36:45 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=11270 SEQ=1280
May 16 18:40:42 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=20742 SEQ=0
May 16 18:40:42 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=20742 SEQ=0
May 16 18:40:43 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=20742 SEQ=256
May 16 18:40:44 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=20742 SEQ=512
May 16 18:40:45 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=20742 SEQ=768
May 16 18:40:46 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=20742 SEQ=1024
May 16 18:40:47 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=20742 SEQ=1280
May 16 18:49:19 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=0
May 16 18:49:19 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=0
May 16 18:49:20 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=256
May 16 18:49:21 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=512
May 16 18:49:22 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=768
May 16 18:49:23 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=1024
May 16 18:49:24 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=1280
May 16 18:49:25 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=1536
May 16 18:49:26 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=1792
May 16 18:49:27 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=28934 SEQ=2048
May 16 22:26:50 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=2055 SEQ=0
May 16 22:26:50 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=2055 SEQ=0
May 16 22:26:51 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=2055 SEQ=256
May 16 22:26:52 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=2055 SEQ=512
May 16 22:26:53 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=2055 SEQ=768
May 17 01:45:50 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x100b_at_202.138.210.2
May 17 01:47:38 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=52743 SEQ=0
May 17 01:47:38 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=52743 SEQ=0
May 17 01:47:39 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=52743 SEQ=256
May 17 01:47:40 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=52743 SEQ=512
May 17 01:47:41 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=52743 SEQ=768
May 17 01:47:42 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=52743 SEQ=1024
May 17 04:10:38 proxy : - Opened ports : udp 0 0
proxy.dolphindsl:isakmp *:* 857/pluto
May 17 12:10:50 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x100d_at_202.138.210.2
May 17 12:11:23 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=0
May 17 12:11:23 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=0
May 17 12:11:24 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=256
May 17 12:11:25 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=512
May 17 12:11:26 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=768
May 17 12:11:27 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=1024
May 17 12:11:28 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=1280
May 17 12:11:29 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=1536
May 17 12:11:30 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=1792
May 17 12:11:31 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=2048
May 17 12:11:32 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=2304
May 17 12:11:33 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=32011 SEQ=2560
May 17 13:09:24 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x100f_at_202.138.210.2
May 17 13:09:46 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1011_at_202.138.210.2
May 17 13:09:46 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1012_at_202.138.210.2
May 17 13:09:47 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1013_at_202.138.210.2
May 17 13:10:56 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1017_at_202.138.210.2
May 17 13:11:12 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=6412 SEQ=0
May 17 13:11:12 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=6412 SEQ=0
May 17 13:11:13 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=6412 SEQ=256
May 17 13:11:14 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=6412 SEQ=512
May 17 13:11:15 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=6412 SEQ=768
May 17 14:25:22 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1019_at_202.138.210.2
May 17 14:25:34 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=26636 SEQ=0
May 17 14:25:34 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=26636 SEQ=0
May 17 14:25:35 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=26636 SEQ=256
May 17 14:25:36 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=26636 SEQ=512
May 17 14:25:37 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=26636 SEQ=768
May 17 14:25:38 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.1 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=26636 SEQ=1024
May 17 14:50:19 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x101b_at_202.138.210.2
May 17 14:50:27 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=58380 SEQ=0
May 17 14:50:27 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=58380 SEQ=0
May 17 14:50:28 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=58380 SEQ=256
May 17 14:50:29 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=58380 SEQ=512
May 17 14:50:30 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=58380 SEQ=768
May 17 15:02:38 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x101d_at_202.138.210.2
May 17 15:04:06 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x101f_at_202.138.210.2
May 17 15:04:14 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=13325 SEQ=0
May 17 15:04:14 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=13325 SEQ=0
May 17 15:04:15 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=13325 SEQ=256
May 17 15:04:16 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=13325 SEQ=512
May 17 15:04:17 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=13325 SEQ=768
May 17 16:40:27 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1021_at_202.138.210.2
May 17 16:52:37 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1023_at_202.138.210.2
May 17 16:53:01 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=42253 SEQ=0
May 17 16:53:01 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=42253 SEQ=0
May 17 16:53:02 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=42253 SEQ=256
May 17 16:53:03 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=42253 SEQ=512
May 17 16:53:04 proxy kernel: IN= OUT=ipsec0 SRC=202.138.210.2
DST=192.168.1.5 LEN=84 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=ICMP TYP
E=8 CODE=0 ID=42253 SEQ=768
May 17 16:55:56 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1025_at_202.138.210.2
May 17 17:08:51 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1027_at_202.138.210.2
May 17 18:04:35 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x1029_at_202.138.210.2
May 17 18:04:38 proxy kernel: klips_debug:ipsec_makeroute: rj_addroute
not able to insert eroute for SA:tun0x102b_at_202.138.210.2
+ _________________________ plog
+ sed -n '598,$p' /var/log/secure
+ egrep -i pluto
+ cat
May 16 17:33:34 proxy ipsec__plutorun: Starting Pluto subsystem...
May 16 17:33:34 proxy Pluto[857]: Starting Pluto (FreeS/WAN Version
1.97)
May 16 17:33:34 proxy Pluto[857]: including X.509 patch (Version
0.9.10)
May 16 17:33:35 proxy Pluto[857]: Could not change to directory
'/etc/freeswan/ipsec.d/cacerts'
May 16 17:33:35 proxy Pluto[857]: Could not change to directory
'/etc/freeswan/ipsec.d/crls'
May 16 17:33:35 proxy Pluto[857]: could not open my default X.509 cert
file '/etc/freeswan/x509cert.der'
May 16 17:33:35 proxy Pluto[857]: OpenPGP certificate file
'/etc/freeswan/pgpcert.pgp' not found
May 16 17:33:39 proxy Pluto[857]: added connection description
"fair-frank"
May 16 17:33:39 proxy Pluto[857]: listening for IKE messages
May 16 17:33:39 proxy Pluto[857]: adding interface ipsec0/eth1
202.138.210.2
May 16 17:33:39 proxy Pluto[857]: loading secrets from
"/etc/freeswan/ipsec.secrets"
May 16 17:46:36 proxy Pluto[857]: "fair-frank" #1: initiating Main Mode
May 16 17:46:38 proxy Pluto[857]: "fair-frank" #1: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 16 17:46:38 proxy Pluto[857]: "fair-frank" #1: ISAKMP SA established
May 16 17:46:38 proxy Pluto[857]: "fair-frank" #2: initiating Quick Mode
RSASIG+ENCRYPT+TUNNEL+PFS
May 16 17:46:39 proxy Pluto[857]: "fair-frank" #2: sent QI2, IPsec SA
established
May 16 17:47:08 proxy Pluto[857]: "fair-frank" #3: responding to Main
Mode
May 16 17:47:08 proxy Pluto[857]: "fair-frank" #3: regenerating DH
private secret to avoid Pluto 1.0 bug handling public value with le
ading zero
May 16 17:47:09 proxy Pluto[857]: "fair-frank" #3: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 16 17:47:10 proxy Pluto[857]: "fair-frank" #3: sent MR3, ISAKMP SA
established
May 16 17:47:10 proxy Pluto[857]: "fair-frank" #4: responding to Quick
Mode
May 16 17:47:11 proxy Pluto[857]: "fair-frank" #4: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1003_at_202.138.210.2 included errn
o 250: Unknown error 250
May 16 17:47:11 proxy Pluto[857]: "fair-frank" #5: responding to Quick
Mode
May 16 17:47:11 proxy Pluto[857]: "fair-frank" #5: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1004_at_202.138.210.2 included errn
o 250: Unknown error 250
May 16 17:47:11 proxy Pluto[857]: "fair-frank" #4: IPsec SA established
May 16 17:47:11 proxy Pluto[857]: "fair-frank" #5: IPsec SA established
May 16 17:50:57 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 16 17:50:57 proxy Pluto[857]: "fair-frank" #2: deleting state
(STATE_QUICK_I2)
May 16 17:50:57 proxy Pluto[857]: "fair-frank" #5: deleting state
(STATE_QUICK_R2)
May 16 17:50:57 proxy Pluto[857]: "fair-frank" #5: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid arg
ument
May 16 17:50:57 proxy Pluto[857]: "fair-frank" #4: deleting state
(STATE_QUICK_R2)
May 16 17:50:57 proxy Pluto[857]: "fair-frank" #1: deleting state
(STATE_MAIN_I4)
May 16 17:50:57 proxy Pluto[857]: "fair-frank" #3: deleting state
(STATE_MAIN_R3)
May 16 18:09:25 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 16 18:11:31 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 16 18:13:17 proxy Pluto[857]: "fair-frank" #6: initiating Main Mode
May 16 18:13:25 proxy Pluto[857]: "fair-frank" #7: responding to Main
Mode
May 16 18:13:27 proxy Pluto[857]: "fair-frank" #7: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 16 18:13:27 proxy Pluto[857]: "fair-frank" #7: sent MR3, ISAKMP SA
established
May 16 18:13:28 proxy Pluto[857]: "fair-frank" #8: responding to Quick
Mode
May 16 18:13:28 proxy Pluto[857]: "fair-frank" #8: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1007_at_202.138.210.2 included errn
o 250: Unknown error 250
May 16 18:13:28 proxy Pluto[857]: "fair-frank" #6: discarding duplicate
packet; already STATE_MAIN_I3
May 16 18:13:28 proxy Pluto[857]: "fair-frank" #8: IPsec SA established
May 16 18:13:29 proxy Pluto[857]: "fair-frank" #6: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 16 18:13:29 proxy Pluto[857]: "fair-frank" #6: ISAKMP SA established
May 16 18:13:29 proxy Pluto[857]: "fair-frank" #9: initiating Quick Mode
RSASIG+ENCRYPT+TUNNEL+PFS
May 16 18:13:30 proxy Pluto[857]: "fair-frank" #9: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1009_at_202.138.210.2 included errn
o 250: Unknown error 250
May 16 18:13:30 proxy Pluto[857]: "fair-frank" #9: sent QI2, IPsec SA
established
May 16 18:55:37 proxy Pluto[857]: "fair-frank" #10: initiating Main Mode
to replace #6
May 16 18:55:39 proxy Pluto[857]: "fair-frank" #10: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 16 18:55:39 proxy Pluto[857]: "fair-frank" #10: ISAKMP SA
established
May 16 18:56:20 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 16 18:56:20 proxy Pluto[857]: "fair-frank" #8: deleting state
(STATE_QUICK_R2)
May 16 18:56:20 proxy Pluto[857]: "fair-frank" #9: deleting state
(STATE_QUICK_I2)
May 16 18:56:20 proxy Pluto[857]: "fair-frank" #9: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid arg
ument
May 16 18:56:20 proxy Pluto[857]: "fair-frank" #7: deleting state
(STATE_MAIN_R3)
May 16 18:56:20 proxy Pluto[857]: "fair-frank" #6: deleting state
(STATE_MAIN_I4)
May 16 18:56:20 proxy Pluto[857]: "fair-frank" #10: deleting state
(STATE_MAIN_I4)
May 16 18:56:25 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 16 18:56:36 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 16 18:56:36 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 16 22:26:59 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 16 22:27:01 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 01:45:47 proxy Pluto[857]: "fair-frank" #11: initiating Main Mode
May 17 01:45:49 proxy Pluto[857]: "fair-frank" #11: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 01:45:49 proxy Pluto[857]: "fair-frank" #11: ISAKMP SA
established
May 17 01:45:49 proxy Pluto[857]: "fair-frank" #12: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 01:45:50 proxy Pluto[857]: "fair-frank" #12: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.100b_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 01:45:50 proxy Pluto[857]: "fair-frank" #12: sent QI2, IPsec SA
established
May 17 01:56:14 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 01:56:14 proxy Pluto[857]: "fair-frank" #12: deleting state
(STATE_QUICK_I2)
May 17 01:56:14 proxy Pluto[857]: "fair-frank" #12: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 01:56:14 proxy Pluto[857]: "fair-frank" #11: deleting state
(STATE_MAIN_I4)
May 17 12:10:47 proxy Pluto[857]: "fair-frank" #13: initiating Main Mode
May 17 12:10:49 proxy Pluto[857]: "fair-frank" #13: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 12:10:49 proxy Pluto[857]: "fair-frank" #13: ISAKMP SA
established
May 17 12:10:49 proxy Pluto[857]: "fair-frank" #14: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 12:10:50 proxy Pluto[857]: "fair-frank" #14: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.100d_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 12:10:50 proxy Pluto[857]: "fair-frank" #14: sent QI2, IPsec SA
established
May 17 12:11:56 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 12:11:56 proxy Pluto[857]: "fair-frank" #14: deleting state
(STATE_QUICK_I2)
May 17 12:11:56 proxy Pluto[857]: "fair-frank" #14: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 12:11:56 proxy Pluto[857]: "fair-frank" #13: deleting state
(STATE_MAIN_I4)
May 17 12:13:01 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 17 13:09:21 proxy Pluto[857]: "fair-frank" #15: initiating Main Mode
May 17 13:09:23 proxy Pluto[857]: "fair-frank" #15: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 13:09:23 proxy Pluto[857]: "fair-frank" #15: ISAKMP SA
established
May 17 13:09:23 proxy Pluto[857]: "fair-frank" #16: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 13:09:24 proxy Pluto[857]: "fair-frank" #16: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.100f_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 13:09:24 proxy Pluto[857]: "fair-frank" #16: sent QI2, IPsec SA
established
May 17 13:09:43 proxy Pluto[857]: "fair-frank" #17: responding to Main
Mode
May 17 13:09:45 proxy Pluto[857]: "fair-frank" #17: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 13:09:45 proxy Pluto[857]: "fair-frank" #17: sent MR3, ISAKMP SA
established
May 17 13:09:46 proxy Pluto[857]: "fair-frank" #18: responding to Quick
Mode
May 17 13:09:46 proxy Pluto[857]: "fair-frank" #18: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1011_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 13:09:46 proxy Pluto[857]: "fair-frank" #19: responding to Quick
Mode
May 17 13:09:46 proxy Pluto[857]: "fair-frank" #19: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1012_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 13:09:46 proxy Pluto[857]: "fair-frank" #20: responding to Quick
Mode
May 17 13:09:47 proxy Pluto[857]: "fair-frank" #20: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1013_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 13:09:47 proxy Pluto[857]: "fair-frank" #18: IPsec SA established
May 17 13:09:47 proxy Pluto[857]: "fair-frank" #19: IPsec SA established
May 17 13:09:47 proxy Pluto[857]: "fair-frank" #20: IPsec SA established
May 17 13:10:30 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 13:10:30 proxy Pluto[857]: "fair-frank" #16: deleting state
(STATE_QUICK_I2)
May 17 13:10:30 proxy Pluto[857]: "fair-frank" #20: deleting state
(STATE_QUICK_R2)
May 17 13:10:30 proxy Pluto[857]: "fair-frank" #20: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 13:10:30 proxy Pluto[857]: "fair-frank" #19: deleting state
(STATE_QUICK_R2)
May 17 13:10:30 proxy Pluto[857]: "fair-frank" #18: deleting state
(STATE_QUICK_R2)
May 17 13:10:30 proxy Pluto[857]: "fair-frank" #15: deleting state
(STATE_MAIN_I4)
May 17 13:10:30 proxy Pluto[857]: "fair-frank" #17: deleting state
(STATE_MAIN_R3)
May 17 13:10:37 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 17 13:10:43 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 13:10:53 proxy Pluto[857]: "fair-frank" #21: initiating Main Mode
May 17 13:10:55 proxy Pluto[857]: "fair-frank" #21: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 13:10:55 proxy Pluto[857]: "fair-frank" #21: ISAKMP SA
established
May 17 13:10:55 proxy Pluto[857]: "fair-frank" #22: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 13:10:56 proxy Pluto[857]: "fair-frank" #22: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1017_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 13:10:56 proxy Pluto[857]: "fair-frank" #22: sent QI2, IPsec SA
established
May 17 13:21:39 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 13:21:39 proxy Pluto[857]: "fair-frank" #22: deleting state
(STATE_QUICK_I2)
May 17 13:21:40 proxy Pluto[857]: "fair-frank" #22: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
May 17 13:21:40 proxy Pluto[857]: "fair-frank" #21: deleting state
(STATE_MAIN_I4)
May 17 14:25:19 proxy Pluto[857]: "fair-frank" #23: initiating Main Mode
May 17 14:25:21 proxy Pluto[857]: "fair-frank" #23: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 14:25:21 proxy Pluto[857]: "fair-frank" #23: ISAKMP SA
established
May 17 14:25:21 proxy Pluto[857]: "fair-frank" #24: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 14:25:22 proxy Pluto[857]: "fair-frank" #24: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1019_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 14:25:22 proxy Pluto[857]: "fair-frank" #24: sent QI2, IPsec SA
established
May 17 14:29:17 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 14:29:17 proxy Pluto[857]: "fair-frank" #24: deleting state
(STATE_QUICK_I2)
May 17 14:29:18 proxy Pluto[857]: "fair-frank" #24: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 14:29:18 proxy Pluto[857]: "fair-frank" #23: deleting state
(STATE_MAIN_I4)
May 17 14:29:28 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 17 14:50:16 proxy Pluto[857]: "fair-frank" #25: initiating Main Mode
May 17 14:50:18 proxy Pluto[857]: "fair-frank" #25: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 14:50:18 proxy Pluto[857]: "fair-frank" #25: ISAKMP SA
established
May 17 14:50:18 proxy Pluto[857]: "fair-frank" #26: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 14:50:19 proxy Pluto[857]: "fair-frank" #26: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.101b_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 14:50:19 proxy Pluto[857]: "fair-frank" #26: sent QI2, IPsec SA
established
May 17 15:02:37 proxy Pluto[857]: "fair-frank" #27: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 15:02:38 proxy Pluto[857]: "fair-frank" #27: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.101d_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 15:02:38 proxy Pluto[857]: "fair-frank" #27: sent QI2, IPsec SA
established
May 17 15:02:47 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 15:02:47 proxy Pluto[857]: "fair-frank" #27: deleting state
(STATE_QUICK_I2)
May 17 15:02:47 proxy Pluto[857]: "fair-frank" #27: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 15:02:47 proxy Pluto[857]: "fair-frank" #26: deleting state
(STATE_QUICK_I2)
May 17 15:02:47 proxy Pluto[857]: "fair-frank" #25: deleting state
(STATE_MAIN_I4)
May 17 15:02:56 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 17 15:02:56 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 17 15:04:02 proxy Pluto[857]: "fair-frank" #28: initiating Main Mode
May 17 15:04:05 proxy Pluto[857]: "fair-frank" #28: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 15:04:05 proxy Pluto[857]: "fair-frank" #28: ISAKMP SA
established
May 17 15:04:05 proxy Pluto[857]: "fair-frank" #29: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 15:04:06 proxy Pluto[857]: "fair-frank" #29: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.101f_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 15:04:06 proxy Pluto[857]: "fair-frank" #29: sent QI2, IPsec SA
established
May 17 15:53:25 proxy Pluto[857]: "fair-frank" #30: initiating Main Mode
to replace #28
May 17 15:53:27 proxy Pluto[857]: "fair-frank" #30: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 15:53:27 proxy Pluto[857]: "fair-frank" #30: ISAKMP SA
established
May 17 16:40:01 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 16:40:01 proxy Pluto[857]: "fair-frank" #29: deleting state
(STATE_QUICK_I2)
May 17 16:40:01 proxy Pluto[857]: "fair-frank" #29: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 16:40:01 proxy Pluto[857]: "fair-frank" #30: deleting state
(STATE_MAIN_I4)
May 17 16:40:07 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 17 16:40:25 proxy Pluto[857]: "fair-frank" #31: responding to Main
Mode
May 17 16:40:26 proxy Pluto[857]: "fair-frank" #31: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 16:40:27 proxy Pluto[857]: "fair-frank" #31: sent MR3, ISAKMP SA
established
May 17 16:40:27 proxy Pluto[857]: "fair-frank" #32: responding to Quick
Mode
May 17 16:40:27 proxy Pluto[857]: "fair-frank" #32: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1021_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 16:40:28 proxy Pluto[857]: "fair-frank" #32: IPsec SA established
May 17 16:40:42 proxy Pluto[857]: "fair-frank" #31: ignoring Delete SA
payload
May 17 16:40:42 proxy Pluto[857]: "fair-frank" #31: received and ignored
informational message
May 17 16:40:49 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 16:40:49 proxy Pluto[857]: "fair-frank" #32: deleting state
(STATE_QUICK_R2)
May 17 16:40:49 proxy Pluto[857]: "fair-frank" #32: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 16:40:49 proxy Pluto[857]: "fair-frank" #31: deleting state
(STATE_MAIN_R3)
May 17 16:52:34 proxy Pluto[857]: "fair-frank" #33: initiating Main Mode
May 17 16:52:36 proxy Pluto[857]: "fair-frank" #33: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 16:52:36 proxy Pluto[857]: "fair-frank" #33: ISAKMP SA
established
May 17 16:52:36 proxy Pluto[857]: "fair-frank" #34: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 16:52:37 proxy Pluto[857]: "fair-frank" #34: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1023_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 16:52:37 proxy Pluto[857]: "fair-frank" #34: sent QI2, IPsec SA
established
May 17 16:53:40 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 16:53:40 proxy Pluto[857]: "fair-frank" #34: deleting state
(STATE_QUICK_I2)
May 17 16:53:40 proxy Pluto[857]: "fair-frank" #34: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 16:53:40 proxy Pluto[857]: "fair-frank" #33: deleting state
(STATE_MAIN_I4)
May 17 16:53:45 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 17 16:55:53 proxy Pluto[857]: "fair-frank" #35: initiating Main Mode
May 17 16:55:55 proxy Pluto[857]: "fair-frank" #35: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 16:55:55 proxy Pluto[857]: "fair-frank" #35: ISAKMP SA
established
May 17 16:55:55 proxy Pluto[857]: "fair-frank" #36: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 16:55:56 proxy Pluto[857]: "fair-frank" #36: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1025_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 16:55:56 proxy Pluto[857]: "fair-frank" #36: sent QI2, IPsec SA
established
May 17 16:59:39 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 16:59:39 proxy Pluto[857]: "fair-frank" #36: deleting state
(STATE_QUICK_I2)
May 17 16:59:39 proxy Pluto[857]: "fair-frank" #36: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 16:59:39 proxy Pluto[857]: "fair-frank" #35: deleting state
(STATE_MAIN_I4)
May 17 17:00:02 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
May 17 17:08:48 proxy Pluto[857]: "fair-frank" #37: responding to Main
Mode
May 17 17:08:49 proxy Pluto[857]: "fair-frank" #37: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 17:08:50 proxy Pluto[857]: "fair-frank" #37: sent MR3, ISAKMP SA
established
May 17 17:08:50 proxy Pluto[857]: "fair-frank" #38: responding to Quick
Mode
May 17 17:08:51 proxy Pluto[857]: "fair-frank" #38: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1027_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 17:08:51 proxy Pluto[857]: "fair-frank" #38: IPsec SA established
May 17 17:37:01 proxy Pluto[857]: "fair-frank" #37: ignoring Delete SA
payload
May 17 17:37:01 proxy Pluto[857]: "fair-frank" #37: received and ignored
informational message
May 17 18:01:47 proxy Pluto[857]: attempt to redefine connection
"fair-frank"
May 17 18:02:14 proxy Pluto[857]: "fair-frank" #39: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 18:03:24 proxy Pluto[857]: "fair-frank" #39: max number of
retransmissions (2) reached STATE_QUICK_I1
May 17 18:03:24 proxy Pluto[857]: "fair-frank" #39: starting keying
attempt 2 of an unlimited number, but releasing whack
May 17 18:03:24 proxy Pluto[857]: "fair-frank" #40: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS to replace #39
May 17 18:04:20 proxy Pluto[857]: "fair-frank" #41: initiating Main Mode
to replace #37
May 17 18:04:22 proxy Pluto[857]: "fair-frank" #41: Peer ID is
ID_IPV4_ADDR: '150.101.211.14'
May 17 18:04:22 proxy Pluto[857]: "fair-frank" #41: ISAKMP SA
established
May 17 18:04:34 proxy Pluto[857]: "fair-frank" #40: max number of
retransmissions (2) reached STATE_QUICK_I1
May 17 18:04:34 proxy Pluto[857]: "fair-frank" #40: starting keying
attempt 3 of an unlimited number
May 17 18:04:34 proxy Pluto[857]: "fair-frank" #42: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS to replace #40
May 17 18:04:35 proxy Pluto[857]: "fair-frank" #42: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.1029_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 18:04:35 proxy Pluto[857]: "fair-frank" #42: sent QI2, IPsec SA
established
May 17 18:04:37 proxy Pluto[857]: "fair-frank" #43: initiating Quick
Mode RSASIG+ENCRYPT+TUNNEL+PFS
May 17 18:04:38 proxy Pluto[857]: "fair-frank" #43: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow tun.102b_at_202.138.210.2 included err
no 250: Unknown error 250
May 17 18:04:38 proxy Pluto[857]: "fair-frank" #43: sent QI2, IPsec SA
established
May 17 18:06:18 proxy Pluto[857]: "fair-frank": terminating SAs using
this connection
May 17 18:06:18 proxy Pluto[857]: "fair-frank" #43: deleting state
(STATE_QUICK_I2)
May 17 18:06:18 proxy Pluto[857]: "fair-frank" #43: ERROR: PF_KEY
SADB_X_ADDFLOW response for flow %trap included errno 22: Invalid ar
gument
May 17 18:06:18 proxy Pluto[857]: "fair-frank" #42: deleting state
(STATE_QUICK_I2)
May 17 18:06:18 proxy Pluto[857]: "fair-frank" #38: deleting state
(STATE_QUICK_R2)
May 17 18:06:18 proxy Pluto[857]: "fair-frank" #41: deleting state
(STATE_MAIN_I4)
May 17 18:06:18 proxy Pluto[857]: "fair-frank" #37: deleting state
(STATE_MAIN_R3)
May 17 18:06:28 proxy Pluto[857]: packet from 150.101.211.14:500:
Informational Exchange is for an unknown (expired?) SA
+ _________________________ date
+ date
Fri May 17 19:32:33 EDT 2002"
Hope this is ok and gives some usefull information I have looked through
it to try and garner some info .....
I appreciate any assistance.
Regards
David Badger
/\_/\
{ , . } |\
+--oQQo->{ ^ }<--------+ \
|support_at_mifellowship.org }
+-------------o66o-----+ /
Ph. +61(03)94824199 |/
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users
This archive was generated by hypermail 2.1.3 : Mon Jul 29 2002 - 05:20:03 CEST