0s autopkgtest [00:51:53]: starting date and time: 2025-05-02 00:51:53+0000 0s autopkgtest [00:51:53]: git checkout: 9986aa8c Merge branch 'skia/fix_network_interface' into 'ubuntu/production' 0s autopkgtest [00:51:53]: host juju-7f2275-prod-proposed-migration-environment-9; command line: /home/ubuntu/autopkgtest/runner/autopkgtest --output-dir /tmp/autopkgtest-work.uuk9mcvz/out --timeout-copy=6000 --setup-commands 'ln -s /dev/null /etc/systemd/system/bluetooth.service; printf "http_proxy=http://squid.internal:3128\nhttps_proxy=http://squid.internal:3128\nno_proxy=127.0.0.1,127.0.1.1,localhost,localdomain,internal,login.ubuntu.com,archive.ubuntu.com,ports.ubuntu.com,security.ubuntu.com,ddebs.ubuntu.com,changelogs.ubuntu.com,keyserver.ubuntu.com,launchpadlibrarian.net,launchpadcontent.net,launchpad.net,keystone.ps5.canonical.com,objectstorage.prodstack5.canonical.com,radosgw.ps5.canonical.com\n" >> /etc/environment' --apt-pocket=proposed=src:socat --apt-upgrade knot-resolver --timeout-short=300 --timeout-copy=20000 --timeout-build=20000 --env=ADT_TEST_TRIGGERS=socat/1.8.0.3-1 -- lxd -r lxd-armhf-10.145.243.227 lxd-armhf-10.145.243.227:autopkgtest/ubuntu/questing/armhf 22s autopkgtest [00:52:15]: testbed dpkg architecture: armhf 24s autopkgtest [00:52:17]: testbed apt version: 3.0.0 28s autopkgtest [00:52:21]: @@@@@@@@@@@@@@@@@@@@ test bed setup 30s autopkgtest [00:52:23]: testbed release detected to be: None 37s autopkgtest [00:52:30]: updating testbed package index (apt update) 39s Get:1 http://ftpmaster.internal/ubuntu questing-proposed InRelease [110 kB] 40s Get:2 http://ftpmaster.internal/ubuntu questing InRelease [110 kB] 40s Get:3 http://ftpmaster.internal/ubuntu questing-updates InRelease [110 kB] 40s Get:4 http://ftpmaster.internal/ubuntu questing-security InRelease [110 kB] 40s Get:5 http://ftpmaster.internal/ubuntu questing-proposed/main Sources [179 kB] 40s Get:6 http://ftpmaster.internal/ubuntu questing-proposed/multiverse Sources [57.4 kB] 40s Get:7 http://ftpmaster.internal/ubuntu questing-proposed/universe Sources [2255 kB] 40s Get:8 http://ftpmaster.internal/ubuntu questing-proposed/main armhf Packages [188 kB] 40s Get:9 http://ftpmaster.internal/ubuntu questing-proposed/universe armhf Packages [513 kB] 40s Get:10 http://ftpmaster.internal/ubuntu questing-proposed/multiverse armhf Packages [1488 B] 40s Get:11 http://ftpmaster.internal/ubuntu questing/universe Sources [21.1 MB] 41s Get:12 http://ftpmaster.internal/ubuntu questing/main Sources [1387 kB] 41s Get:13 http://ftpmaster.internal/ubuntu questing/main armhf Packages [1358 kB] 41s Get:14 http://ftpmaster.internal/ubuntu questing/universe armhf Packages [15.2 MB] 45s Fetched 42.7 MB in 5s (7789 kB/s) 46s Reading package lists... 52s autopkgtest [00:52:45]: upgrading testbed (apt dist-upgrade and autopurge) 54s Reading package lists... 54s Building dependency tree... 54s Reading state information... 54s Calculating upgrade...Starting pkgProblemResolver with broken count: 0 55s Starting 2 pkgProblemResolver with broken count: 0 55s Done 55s Entering ResolveByKeep 56s 56s Calculating upgrade... 56s The following packages will be upgraded: 56s base-files distro-info-data dpkg dpkg-dev libdpkg-perl motd-news-config 56s ubuntu-pro-client ubuntu-pro-client-l10n 57s 8 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 57s Need to get 2989 kB of archives. 57s After this operation, 1024 B of additional disk space will be used. 57s Get:1 http://ftpmaster.internal/ubuntu questing/main armhf motd-news-config all 13.7ubuntu1 [5260 B] 57s Get:2 http://ftpmaster.internal/ubuntu questing/main armhf base-files armhf 13.7ubuntu1 [75.4 kB] 57s Get:3 http://ftpmaster.internal/ubuntu questing/main armhf dpkg armhf 1.22.18ubuntu3 [1254 kB] 57s Get:4 http://ftpmaster.internal/ubuntu questing/main armhf distro-info-data all 0.64 [6664 B] 57s Get:5 http://ftpmaster.internal/ubuntu questing/main armhf ubuntu-pro-client-l10n armhf 35.1ubuntu0 [19.7 kB] 57s Get:6 http://ftpmaster.internal/ubuntu questing/main armhf ubuntu-pro-client armhf 35.1ubuntu0 [258 kB] 57s Get:7 http://ftpmaster.internal/ubuntu questing/main armhf dpkg-dev all 1.22.18ubuntu3 [1089 kB] 57s Get:8 http://ftpmaster.internal/ubuntu questing/main armhf libdpkg-perl all 1.22.18ubuntu3 [281 kB] 58s Fetched 2989 kB in 1s (4306 kB/s) 58s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 63953 files and directories currently installed.) 58s Preparing to unpack .../motd-news-config_13.7ubuntu1_all.deb ... 58s Unpacking motd-news-config (13.7ubuntu1) over (13.6ubuntu2) ... 58s Preparing to unpack .../base-files_13.7ubuntu1_armhf.deb ... 58s Unpacking base-files (13.7ubuntu1) over (13.6ubuntu2) ... 58s Setting up base-files (13.7ubuntu1) ... 58s Installing new version of config file /etc/issue ... 58s Installing new version of config file /etc/issue.net ... 58s Installing new version of config file /etc/lsb-release ... 59s motd-news.service is a disabled or a static unit not running, not starting it. 59s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 63953 files and directories currently installed.) 59s Preparing to unpack .../dpkg_1.22.18ubuntu3_armhf.deb ... 59s Unpacking dpkg (1.22.18ubuntu3) over (1.22.18ubuntu2) ... 59s Setting up dpkg (1.22.18ubuntu3) ... 60s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 63953 files and directories currently installed.) 60s Preparing to unpack .../distro-info-data_0.64_all.deb ... 60s Unpacking distro-info-data (0.64) over (0.63) ... 60s Preparing to unpack .../ubuntu-pro-client-l10n_35.1ubuntu0_armhf.deb ... 60s Unpacking ubuntu-pro-client-l10n (35.1ubuntu0) over (35) ... 60s Preparing to unpack .../ubuntu-pro-client_35.1ubuntu0_armhf.deb ... 60s Unpacking ubuntu-pro-client (35.1ubuntu0) over (35) ... 60s Preparing to unpack .../dpkg-dev_1.22.18ubuntu3_all.deb ... 60s Unpacking dpkg-dev (1.22.18ubuntu3) over (1.22.18ubuntu2) ... 60s Preparing to unpack .../libdpkg-perl_1.22.18ubuntu3_all.deb ... 60s Unpacking libdpkg-perl (1.22.18ubuntu3) over (1.22.18ubuntu2) ... 60s Setting up motd-news-config (13.7ubuntu1) ... 60s Setting up distro-info-data (0.64) ... 60s Setting up libdpkg-perl (1.22.18ubuntu3) ... 60s Setting up ubuntu-pro-client (35.1ubuntu0) ... 61s apparmor_parser: Unable to replace "ubuntu_pro_apt_news". apparmor_parser: Access denied. You need policy admin privileges to manage profiles. 61s 61s apparmor_parser: Unable to replace "apt_methods". apparmor_parser: Access denied. You need policy admin privileges to manage profiles. 61s 61s apparmor_parser: Unable to replace "ubuntu_pro_esm_cache". apparmor_parser: Access denied. You need policy admin privileges to manage profiles. 61s 63s Setting up ubuntu-pro-client-l10n (35.1ubuntu0) ... 63s Setting up dpkg-dev (1.22.18ubuntu3) ... 63s Processing triggers for install-info (7.1.1-1) ... 63s Processing triggers for man-db (2.13.0-1) ... 65s Processing triggers for plymouth-theme-ubuntu-text (24.004.60-2ubuntu7) ... 65s Processing triggers for initramfs-tools (0.147ubuntu1) ... 67s Reading package lists... 67s Building dependency tree... 67s Reading state information... 68s Starting pkgProblemResolver with broken count: 0 68s Starting 2 pkgProblemResolver with broken count: 0 68s Done 68s Solving dependencies... 69s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 71s autopkgtest [00:53:04]: rebooting testbed after setup commands that affected boot 111s autopkgtest [00:53:44]: testbed running kernel: Linux 6.8.0-58-generic #60~22.04.1-Ubuntu SMP PREEMPT_DYNAMIC Fri Mar 28 14:48:37 UTC 2 135s autopkgtest [00:54:08]: @@@@@@@@@@@@@@@@@@@@ apt-source knot-resolver 153s Get:1 http://ftpmaster.internal/ubuntu questing/universe knot-resolver 5.7.4-2build1 (dsc) [3202 B] 153s Get:2 http://ftpmaster.internal/ubuntu questing/universe knot-resolver 5.7.4-2build1 (tar) [1931 kB] 153s Get:3 http://ftpmaster.internal/ubuntu questing/universe knot-resolver 5.7.4-2build1 (asc) [833 B] 153s Get:4 http://ftpmaster.internal/ubuntu questing/universe knot-resolver 5.7.4-2build1 (diff) [402 kB] 154s gpgv: Signature made Tue Nov 12 20:24:39 2024 UTC 154s gpgv: using RSA key B8340990283D8D9BC1949AC74799A35146D12B35 154s gpgv: Can't check signature: No public key 154s dpkg-source: warning: cannot verify inline signature for ./knot-resolver_5.7.4-2build1.dsc: no acceptable signature found 154s autopkgtest [00:54:27]: testing package knot-resolver version 5.7.4-2build1 157s autopkgtest [00:54:30]: build not needed 160s autopkgtest [00:54:33]: test roundtrip: preparing testbed 162s Reading package lists... 162s Building dependency tree... 162s Reading state information... 163s Starting pkgProblemResolver with broken count: 0 163s Starting 2 pkgProblemResolver with broken count: 0 163s Done 164s The following NEW packages will be installed: 164s dns-root-data gnutls-bin knot-dnsutils knot-resolver libdnssec9t64 164s libevent-2.1-7t64 libfstrm0 libgnutls-dane0t64 libknot15 libluajit-5.1-2 164s libluajit-5.1-common libngtcp2-16 libngtcp2-crypto-gnutls8 libunbound8 164s libxdp1 libzscanner4t64 lua-sec lua-socket socat 164s 0 upgraded, 19 newly installed, 0 to remove and 0 not upgraded. 164s Need to get 2600 kB of archives. 164s After this operation, 9463 kB of additional disk space will be used. 164s Get:1 http://ftpmaster.internal/ubuntu questing/main armhf dns-root-data all 2024071801 [5802 B] 164s Get:2 http://ftpmaster.internal/ubuntu questing/main armhf libevent-2.1-7t64 armhf 2.1.12-stable-10 [127 kB] 164s Get:3 http://ftpmaster.internal/ubuntu questing/main armhf libunbound8 armhf 1.22.0-1ubuntu1 [423 kB] 164s Get:4 http://ftpmaster.internal/ubuntu questing/main armhf libgnutls-dane0t64 armhf 3.8.9-2ubuntu3 [35.0 kB] 164s Get:5 http://ftpmaster.internal/ubuntu questing/universe armhf gnutls-bin armhf 3.8.9-2ubuntu3 [278 kB] 164s Get:6 http://ftpmaster.internal/ubuntu questing/universe armhf libdnssec9t64 armhf 3.4.4-1 [50.5 kB] 164s Get:7 http://ftpmaster.internal/ubuntu questing/universe armhf libngtcp2-16 armhf 1.11.0-1 [125 kB] 164s Get:8 http://ftpmaster.internal/ubuntu questing/universe armhf libngtcp2-crypto-gnutls8 armhf 1.11.0-1 [15.1 kB] 164s Get:9 http://ftpmaster.internal/ubuntu questing/main armhf libxdp1 armhf 1.5.1-1ubuntu2 [55.6 kB] 164s Get:10 http://ftpmaster.internal/ubuntu questing/universe armhf libknot15 armhf 3.4.4-1 [110 kB] 164s Get:11 http://ftpmaster.internal/ubuntu questing/universe armhf libzscanner4t64 armhf 3.4.4-1 [147 kB] 164s Get:12 http://ftpmaster.internal/ubuntu questing/universe armhf libfstrm0 armhf 0.6.1-1build4 [17.5 kB] 164s Get:13 http://ftpmaster.internal/ubuntu questing/universe armhf knot-dnsutils armhf 3.4.4-1 [121 kB] 164s Get:14 http://ftpmaster.internal/ubuntu questing/universe armhf lua-socket armhf 3.1.0-1 [80.3 kB] 164s Get:15 http://ftpmaster.internal/ubuntu questing/universe armhf lua-sec armhf 1.3.2-2 [36.2 kB] 164s Get:16 http://ftpmaster.internal/ubuntu questing/universe armhf libluajit-5.1-common all 2.1.0+openresty20250117-2 [54.4 kB] 164s Get:17 http://ftpmaster.internal/ubuntu questing/universe armhf libluajit-5.1-2 armhf 2.1.0+openresty20250117-2 [232 kB] 165s Get:18 http://ftpmaster.internal/ubuntu questing/universe armhf knot-resolver armhf 5.7.4-2build1 [310 kB] 165s Get:19 http://ftpmaster.internal/ubuntu questing-proposed/main armhf socat armhf 1.8.0.3-1 [375 kB] 165s Preconfiguring packages ... 165s Fetched 2600 kB in 1s (3331 kB/s) 165s Selecting previously unselected package dns-root-data. 165s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 63953 files and directories currently installed.) 165s Preparing to unpack .../00-dns-root-data_2024071801_all.deb ... 165s Unpacking dns-root-data (2024071801) ... 165s Selecting previously unselected package libevent-2.1-7t64:armhf. 166s Preparing to unpack .../01-libevent-2.1-7t64_2.1.12-stable-10_armhf.deb ... 166s Unpacking libevent-2.1-7t64:armhf (2.1.12-stable-10) ... 166s Selecting previously unselected package libunbound8:armhf. 166s Preparing to unpack .../02-libunbound8_1.22.0-1ubuntu1_armhf.deb ... 166s Unpacking libunbound8:armhf (1.22.0-1ubuntu1) ... 166s Selecting previously unselected package libgnutls-dane0t64:armhf. 166s Preparing to unpack .../03-libgnutls-dane0t64_3.8.9-2ubuntu3_armhf.deb ... 166s Unpacking libgnutls-dane0t64:armhf (3.8.9-2ubuntu3) ... 166s Selecting previously unselected package gnutls-bin. 166s Preparing to unpack .../04-gnutls-bin_3.8.9-2ubuntu3_armhf.deb ... 166s Unpacking gnutls-bin (3.8.9-2ubuntu3) ... 166s Selecting previously unselected package libdnssec9t64. 166s Preparing to unpack .../05-libdnssec9t64_3.4.4-1_armhf.deb ... 166s Unpacking libdnssec9t64 (3.4.4-1) ... 166s Selecting previously unselected package libngtcp2-16:armhf. 166s Preparing to unpack .../06-libngtcp2-16_1.11.0-1_armhf.deb ... 166s Unpacking libngtcp2-16:armhf (1.11.0-1) ... 166s Selecting previously unselected package libngtcp2-crypto-gnutls8:armhf. 166s Preparing to unpack .../07-libngtcp2-crypto-gnutls8_1.11.0-1_armhf.deb ... 166s Unpacking libngtcp2-crypto-gnutls8:armhf (1.11.0-1) ... 166s Selecting previously unselected package libxdp1:armhf. 166s Preparing to unpack .../08-libxdp1_1.5.1-1ubuntu2_armhf.deb ... 166s Unpacking libxdp1:armhf (1.5.1-1ubuntu2) ... 166s Selecting previously unselected package libknot15. 166s Preparing to unpack .../09-libknot15_3.4.4-1_armhf.deb ... 166s Unpacking libknot15 (3.4.4-1) ... 166s Selecting previously unselected package libzscanner4t64. 166s Preparing to unpack .../10-libzscanner4t64_3.4.4-1_armhf.deb ... 166s Unpacking libzscanner4t64 (3.4.4-1) ... 166s Selecting previously unselected package libfstrm0:armhf. 166s Preparing to unpack .../11-libfstrm0_0.6.1-1build4_armhf.deb ... 166s Unpacking libfstrm0:armhf (0.6.1-1build4) ... 166s Selecting previously unselected package knot-dnsutils. 166s Preparing to unpack .../12-knot-dnsutils_3.4.4-1_armhf.deb ... 166s Unpacking knot-dnsutils (3.4.4-1) ... 166s Selecting previously unselected package lua-socket:armhf. 167s Preparing to unpack .../13-lua-socket_3.1.0-1_armhf.deb ... 167s Unpacking lua-socket:armhf (3.1.0-1) ... 167s Selecting previously unselected package lua-sec:armhf. 167s Preparing to unpack .../14-lua-sec_1.3.2-2_armhf.deb ... 167s Unpacking lua-sec:armhf (1.3.2-2) ... 167s Selecting previously unselected package libluajit-5.1-common. 167s Preparing to unpack .../15-libluajit-5.1-common_2.1.0+openresty20250117-2_all.deb ... 167s Unpacking libluajit-5.1-common (2.1.0+openresty20250117-2) ... 167s Selecting previously unselected package libluajit-5.1-2:armhf. 167s Preparing to unpack .../16-libluajit-5.1-2_2.1.0+openresty20250117-2_armhf.deb ... 167s Unpacking libluajit-5.1-2:armhf (2.1.0+openresty20250117-2) ... 167s Selecting previously unselected package knot-resolver. 167s Preparing to unpack .../17-knot-resolver_5.7.4-2build1_armhf.deb ... 167s Unpacking knot-resolver (5.7.4-2build1) ... 167s Selecting previously unselected package socat. 167s Preparing to unpack .../18-socat_1.8.0.3-1_armhf.deb ... 167s Unpacking socat (1.8.0.3-1) ... 167s Setting up libzscanner4t64 (3.4.4-1) ... 167s Setting up libfstrm0:armhf (0.6.1-1build4) ... 167s Setting up libevent-2.1-7t64:armhf (2.1.12-stable-10) ... 167s Setting up lua-socket:armhf (3.1.0-1) ... 167s Setting up dns-root-data (2024071801) ... 167s Setting up libxdp1:armhf (1.5.1-1ubuntu2) ... 167s Setting up libunbound8:armhf (1.22.0-1ubuntu1) ... 167s Setting up libgnutls-dane0t64:armhf (3.8.9-2ubuntu3) ... 167s Setting up socat (1.8.0.3-1) ... 167s Setting up libdnssec9t64 (3.4.4-1) ... 167s Setting up libluajit-5.1-common (2.1.0+openresty20250117-2) ... 167s Setting up libngtcp2-16:armhf (1.11.0-1) ... 167s Setting up libngtcp2-crypto-gnutls8:armhf (1.11.0-1) ... 167s Setting up gnutls-bin (3.8.9-2ubuntu3) ... 167s Setting up lua-sec:armhf (1.3.2-2) ... 167s Setting up libknot15 (3.4.4-1) ... 167s Setting up libluajit-5.1-2:armhf (2.1.0+openresty20250117-2) ... 167s Setting up knot-resolver (5.7.4-2build1) ... 168s Created symlink '/etc/systemd/system/kresd.target.wants/kres-cache-gc.service' → '/usr/lib/systemd/system/kres-cache-gc.service'. 168s Created symlink '/etc/systemd/system/multi-user.target.wants/kresd.target' → '/usr/lib/systemd/system/kresd.target'. 170s Setting up knot-dnsutils (3.4.4-1) ... 170s Processing triggers for man-db (2.13.0-1) ... 170s Processing triggers for libc-bin (2.41-6ubuntu1) ... 177s autopkgtest [00:54:50]: test roundtrip: [----------------------- 179s /usr/sbin/kresd + /usr/bin/kdig roundtrip tests 179s ------------ 179s workdir: /tmp/autopkgtest.G5ewbF/roundtrip-artifacts 179s IP addr: 127.57.187.27 179s kresd args: --addr=127.57.187.27@8053 --tls=127.57.187.27@8853 --noninteractive --config=/tmp/autopkgtest.G5ewbF/roundtrip-artifacts/kresd.conf --verbose --verbose --verbose 179s 179s make Certificate Authority key and certificate 179s ---------------------------------------------- 180s Generating a 3072 bit RSA private key... 180s Generating a self signed certificate... 180s X.509 Certificate Information: 180s Version: 3 180s Serial Number (hex): 0ca0657074320c1a3b965892541ca19403b07f6e 180s Validity: 180s Not Before: Fri May 02 00:54:53 UTC 2025 180s Not After: Wed May 14 00:54:53 UTC 2025 180s Subject: CN=testing certificate authority (NOT FOR PRODUCTION) 180s Subject Public Key Algorithm: RSA 180s Algorithm Security Level: High (3072 bits) 180s Modulus (bits 3072): 180s 00:cf:5c:43:32:bf:f8:0e:95:a6:e7:d5:70:b4:77:ed 180s 61:a6:af:70:cf:86:d8:92:c5:f4:19:c3:75:e4:6f:0d 180s c4:16:a2:6f:f4:d7:83:7f:4b:5b:f0:24:73:f8:35:03 180s f6:62:05:fb:bd:3e:7e:d3:b2:30:57:c0:ea:39:69:45 180s 84:86:88:cd:57:6d:74:66:9c:22:c9:31:a0:91:05:94 180s ea:0e:b8:8c:c5:fa:a7:4c:e0:e1:f7:9d:dc:b7:87:a4 180s 73:9e:55:9f:dd:1c:ad:a3:6d:e6:e9:3f:4d:c5:ae:64 180s 76:95:c9:f2:e0:b3:47:b1:73:a2:c9:be:1e:dc:40:b2 180s bc:29:f7:a4:6e:53:0b:8d:f3:7b:c2:c1:c8:e2:87:13 180s 8c:ed:9f:96:34:2e:1f:ea:98:5c:08:c9:38:ac:b0:a3 180s fb:7f:1c:df:73:31:9b:f3:b8:2a:2d:92:05:de:5d:7b 180s d7:db:d5:67:4d:95:68:60:87:ea:ae:2e:cd:b4:7f:e2 180s c5:ce:e2:56:1a:1a:11:1f:8a:21:53:0f:47:c8:5c:0e 180s 3d:bc:55:71:b2:ce:55:0d:91:5c:f0:a8:b2:83:9b:f9 180s 24:21:95:0b:81:a1:33:e6:48:b8:8c:18:0e:11:d5:71 180s 78:de:15:89:4f:2c:a5:02:52:2b:c1:ab:98:5c:e0:a8 180s b9:15:23:a7:48:00:f1:d6:6b:a6:c3:16:e4:d9:f1:cc 180s 6f:75:59:a1:0c:ae:48:6a:04:9c:79:5d:c9:23:76:c0 180s 1d:63:7d:bf:af:55:51:16:6d:9f:26:53:bc:21:75:71 180s cf:da:f4:42:9c:0a:21:b7:c9:78:7f:b2:aa:ee:e2:10 180s fd:cc:e4:b0:c8:5e:9f:38:d2:7f:c3:fc:47:ed:bb:36 180s e7:8e:4c:a6:36:64:85:92:b9:2b:57:4a:09:1d:aa:a3 180s 70:0e:e6:02:1c:d4:d7:cc:ba:3f:24:2f:c5:76:9c:b5 180s 32:56:89:e0:db:f0:e4:69:91:91:04:80:46:ac:4e:83 180s f9 180s Exponent (bits 24): 180s 01:00:01 180s Extensions: 180s Basic Constraints (critical): 180s Certificate Authority (CA): TRUE 180s Path Length Constraint: 1 180s Name Constraints (critical): 180s Permitted: 180s DNSname: example 180s Key Usage (critical): 180s Certificate signing. 180s Subject Key Identifier (not critical): 180s 3e6f2bc8e43dca31d397a6289d1831791fdbb8d0 180s Other Information: 180s Public Key ID: 180s sha1:3e6f2bc8e43dca31d397a6289d1831791fdbb8d0 180s sha256:1756332c09695ef864e2602a528eaff88e0e4e23e3c864151ebde207c930cf26 180s Public Key PIN: 180s pin-sha256:F1YzLAlpXvhk4mAqUo6v+I4OTiPjyGQVHr3iB8kwzyY= 180s 180s 180s 180s Signing certificate... 180s 180s make Bogus Certificate Authority key and certificate 180s ---------------------------------------------------- 181s Generating a 3072 bit RSA private key... 181s Generating a self signed certificate... 181s X.509 Certificate Information: 181s Version: 3 181s Serial Number (hex): 67c280fae4d97bfbccd6be5eaf88a7eae4f969ba 181s Validity: 181s Not Before: Fri May 02 00:54:54 UTC 2025 181s Not After: Wed May 14 00:54:54 UTC 2025 181s Subject: CN=testing certificate authority (NOT FOR PRODUCTION) 181s Subject Public Key Algorithm: RSA 181s Algorithm Security Level: High (3072 bits) 181s Modulus (bits 3072): 181s 00:ca:ef:56:4a:fa:e7:48:17:eb:62:7d:47:4b:9f:27 181s df:48:12:40:18:3a:57:31:f7:19:84:2a:57:87:ec:ad 181s d2:7f:89:d4:87:d7:c8:26:a0:f0:a0:ab:78:56:c7:5b 181s dc:cb:bf:b7:8f:08:0d:b8:99:b6:93:14:4b:ca:43:fd 181s 9b:12:6a:39:30:d3:c0:1f:e1:11:46:bf:61:15:72:44 181s eb:fe:bc:ff:ef:bf:cd:9b:fb:7e:96:c0:a8:a2:15:be 181s 61:94:ca:6e:3e:9c:27:a3:50:5f:f4:da:cf:f8:a0:dc 181s fb:99:79:1d:d4:b0:d3:00:b9:1f:24:85:d0:9b:a3:aa 181s 47:c9:21:f2:ef:30:45:70:38:5c:a4:54:7a:2d:b2:6f 181s f3:10:85:92:db:32:2c:d4:59:82:99:43:ba:69:67:3e 181s af:59:06:bb:12:59:d6:37:c8:83:26:24:ce:2e:98:70 181s fa:66:07:29:32:42:27:36:c3:d9:b7:c5:d2:48:78:87 181s e2:df:f7:53:74:a8:03:e0:38:13:b6:aa:7d:0a:9c:0c 181s 43:d0:22:08:1c:86:ab:e0:a3:f6:0d:64:4c:2c:ea:0c 181s 33:4b:1e:9b:fb:29:b4:be:51:34:7b:7c:af:e9:38:28 181s 43:ae:7b:ab:b7:f4:65:3d:b4:03:fe:a4:10:6d:9d:d1 181s 77:0b:ce:a8:fc:63:2b:e2:41:c9:6a:11:1d:f6:16:1e 181s e2:10:f0:28:d9:5c:bd:78:df:98:da:30:1b:ea:1d:5c 181s 83:97:d8:ce:da:7f:55:ad:e7:de:39:b9:0b:d7:8a:e3 181s af:ec:d3:47:46:a9:6a:43:e8:5a:53:42:ca:d6:f3:59 181s 3a:d1:13:98:44:64:15:ae:0c:72:87:cc:b9:02:99:23 181s f2:72:6d:f7:28:c2:ec:28:b3:46:05:1b:84:08:93:25 181s 20:dc:b9:27:cc:f1:4d:62:79:64:f4:c0:e3:04:51:c5 181s 79:ff:be:ca:ab:99:82:c9:82:83:0a:ce:49:a6:31:81 181s 83 181s Exponent (bits 24): 181s 01:00:01 181s Extensions: 181s Basic Constraints (critical): 181s Certificate Authority (CA): TRUE 181s Path Length Constraint: 1 181s Name Constraints (critical): 181s Permitted: 181s DNSname: example 181s Key Usage (critical): 181s Certificate signing. 181s Subject Key Identifier (not critical): 181s 9b8e62f8e7b6d3a2c79b330e49ffea29211bcfdd 181s Other Information: 181s Public Key ID: 181s sha1:9b8e62f8e7b6d3a2c79b330e49ffea29211bcfdd 181s sha256:027410e5f2f85a9d3b20dea0f0703561d5f89369737d92ae928dea8b16b91733 181s Public Key PIN: 181s pin-sha256:AnQQ5fL4Wp07IN6g8HA1YdX4k2lzfZKuko3qixa5FzM= 181s 181s 181s 181s Signing certificate... 181s 181s make End Entity key and certificate 181s ----------------------------------- 181s Generating a 3072 bit RSA private key... 181s Generating a signed certificate... 181s X.509 Certificate Information: 181s Version: 3 181s Serial Number (hex): 565933f11fba524733e33ab7e527b17f06463a30 181s Validity: 181s Not Before: Fri May 02 00:54:54 UTC 2025 181s Not After: Mon May 12 00:54:54 UTC 2025 181s Subject: CN=test.example 181s Subject Public Key Algorithm: RSA 181s Algorithm Security Level: High (3072 bits) 181s Modulus (bits 3072): 181s 00:d9:a2:a2:fc:0a:a9:57:91:38:cf:71:f0:ca:62:ae 181s 9a:82:de:49:54:bf:bd:ad:54:c5:70:48:91:1a:3c:0b 181s 64:0e:2f:8c:5d:dc:82:9c:15:96:ea:c7:aa:d3:b4:83 181s 52:80:d7:26:3a:26:f9:e1:0e:eb:7c:1b:e2:05:1b:6e 181s 08:20:56:d2:56:24:48:57:e7:46:50:34:99:3d:46:54 181s 6a:89:60:05:0a:8b:b3:68:be:43:33:1b:1d:a3:e2:50 181s 0e:5c:9a:63:a7:66:09:c7:15:03:b2:ae:aa:86:74:04 181s 80:11:24:95:b0:27:fc:74:6a:c3:9d:06:c7:55:5b:3d 181s 74:13:91:39:97:65:d9:3d:61:6c:81:74:d0:bb:54:7c 181s 39:b3:fc:b7:cf:ca:66:94:0d:60:4b:52:93:2f:99:f5 181s 51:8a:74:c5:c1:16:3e:6f:55:52:9b:36:68:60:54:c1 181s 7e:df:4a:00:05:30:d3:84:ff:48:eb:66:bd:53:c9:98 181s 7a:b3:0a:81:ad:18:ac:bf:11:3d:c1:e3:a8:91:43:5f 181s 2a:00:15:5b:a7:88:77:36:36:55:f1:ab:1a:f3:fa:f6 181s d7:96:89:20:84:a8:06:df:0f:5c:b8:6e:10:5d:e5:ff 181s bd:15:4e:7b:22:24:c4:15:57:2c:42:32:48:32:aa:97 181s fa:81:90:85:f2:a7:51:c4:df:57:56:48:06:4d:f8:ab 181s fc:fb:84:bb:17:c3:12:0d:90:02:6e:4a:5f:e2:26:4b 181s 24:95:b2:15:b7:2e:9a:84:e3:ce:d5:2e:9f:4f:36:a8 181s 09:36:0b:8b:58:41:fe:cd:34:09:6b:e0:1f:2b:68:39 181s a6:09:07:c4:0b:0a:eb:b2:4b:22:72:30:9d:72:44:ef 181s e2:50:8b:64:00:2e:ff:92:75:f6:33:95:cf:6f:50:6d 181s 57:08:dc:1a:1f:1f:a9:0c:e6:cb:20:7c:61:9a:a5:d1 181s 7d:1f:32:73:7b:fc:a9:0b:84:00:ae:44:99:ed:88:b2 181s 71 181s Exponent (bits 24): 181s 01:00:01 181s Extensions: 181s Basic Constraints (critical): 181s Certificate Authority (CA): FALSE 181s Subject Alternative Name (not critical): 181s DNSname: test.example 181s Key Purpose (not critical): 181s TLS WWW Server. 181s Key Usage (critical): 181s Digital signature. 181s Subject Key Identifier (not critical): 181s 01a640bc3d614d8c1dbe64da082690d196d76331 181s Authority Key Identifier (not critical): 181s 3e6f2bc8e43dca31d397a6289d1831791fdbb8d0 181s Other Information: 181s Public Key ID: 181s sha1:01a640bc3d614d8c1dbe64da082690d196d76331 181s sha256:c9543005a6ab71c12c2fee34699f833970f3e0766d67066950a43d7e8d8141fd 181s Public Key PIN: 181s pin-sha256:yVQwBaarccEsL+40aZ+DOXDz4HZtZwZpUKQ9fo2BQf0= 181s 181s 181s 181s Signing certificate... 181s 181s set up kresd daemon on 127.57.187.27 on ports 8053 (UDP, TCP) and 8853 (TLS) 181s ---------------------------------------------------------------------------- 183s 183s test UDP with kdig 183s ------------------ 183s successful UDP request to 127.57.187.27 on port 8053 183s 183s test TCP with kdig 183s ------------------ 183s successful TCP request to 127.57.187.27 on port 8053 183s 183s test opportunistic DNS-over-TLS with kdig 183s ----------------------------------------- 183s successful opportunistic DNS-over-TLS request to 127.57.187.27 on port 8853 183s 183s test strict DNS-over-TLS with kdig 183s ---------------------------------- 183s successful strict DNS-over-TLS request to 127.57.187.27 on port 8853 183s 183s test invalid name with strict DNS-over-TLS with kdig 183s ---------------------------------------------------- 183s successful strict DNS-over-TLS request failure when name mismatch to 127.57.187.27 on port 8853 183s 183s test bad authority with strict DNS-over-TLS with kdig 183s ----------------------------------------------------- 183s successful strict DNS-over-TLS request failure to 127.57.187.27 on port 8853 183s 183s cleaning up 183s ----------- 183s 78321 0 drwxrwxrwt 1 root root 318 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts 183s 78329 4 -rw-r--r-- 1 root root 136 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/ca.template 183s 78330 8 -rw------- 1 root root 8170 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/ca-key.pem 183s 78331 4 -rw-r--r-- 1 root root 1590 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/ca-cert.pem 183s 78332 8 -rw------- 1 root root 8177 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/bogus-key.pem 183s 78333 4 -rw-r--r-- 1 root root 1590 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/bogus-cert.pem 183s 78334 4 -rw-r--r-- 1 root root 92 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/ee.template 183s 78335 8 -rw------- 1 root root 8180 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/ee-key.pem 183s 78336 4 -rw-r--r-- 1 root root 2218 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/ee-pubkey.pem 183s 78337 4 -rw-r--r-- 1 root root 1602 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/ee-cert.pem 183s 78338 4 -rw-r--r-- 1 root root 387 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/kresd.conf 183s 78339 68 -rw-r--r-- 1 root root 68890 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/kresd.err 183s 78340 4 -rw-r----- 1 root root 8192 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/lock.mdb 183s 78341 102400 -rw-r----- 1 root root 104857600 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/data.mdb 183s 78342 4 -rw-r--r-- 1 root root 119 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/badname.err 183s 78343 4 -rw-r--r-- 1 root root 119 May 2 00:54 /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/badca.err 183s ==> /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/badca.err <== 183s ;; WARNING: TLS, handshake failed (Error in the certificate.) 183s ;; ERROR: failed to query server 127.57.187.27@8853(TCP) 183s 183s ==> /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/badname.err <== 183s ;; WARNING: TLS, handshake failed (Error in the certificate.) 183s ;; ERROR: failed to query server 127.57.187.27@8853(TCP) 183s 183s ==> /tmp/autopkgtest.G5ewbF/roundtrip-artifacts/kresd.err <== 183s [system] increasing file-descriptor limit: 1024 -> 1048576 183s [tls ] session ticket: epoch 426305, scheduling rotation check in 2081005 ms 183s [wtchdg] disabled in systemd (WatchdogSec= not specified) 183s [ta ] installed trust anchors for domain . are: 183s . 3600 DNSKEY 257 3 8 AwEAAaz/tAm8yTn4Mfeh5eyI96WSVexTBAvkMgJzkKTOiW1vkIbzxeF3+/4RgWOq7HrxRixHlFlExOLAJr5emLvN7SWXgnLh4+B5xQlNVz8Og8kvArMtNROxVQuCaSnIDdD5LKyWbRd2n9WGe2R8PzgCmr3EgVLrjyBxWezF0jLHwVN8efS3rCj/EWgvIWgb9tarpVUDK/b58Da+sqqls3eNbuv7pr+eoZG+SrDK6nWeL3c6H5Apxz7LjVc1uTIdsIXxuOLYA4/ilBmSVIzuDWfdRUfhHdY6+cn8HFRm+2hM8AnXGXws9555KrUB5qihylGa8subX2Nn6UwNR1AkUTV74bU= ; Valid: ; KeyTag:20326 183s . 3600 DNSKEY 257 3 8 AwEAAa96jeuknZlaeSrvyAJj6ZHv28hhOKkx3rLGXVaC6rXTsDc449/cidltpkyGwCJNnOAlFNKF2jBosZBU5eeHspaQWOmOElZsjICMQMC3aeHbGiShvZsx4wMYSjH8e7Vrhbu6irwCzVBApESjbUdpWWmEnhathWu1jo+siFUiRAAxm9qyJNg/wOZqqzL/dL/q8PkcRU5oUKEpUge71M3ej2/7CPqpdVwuMoTvoB+ZOT4YeGyxMvHmbrxlFzGOHOijtzN+u1TQNatX2XBuzZNQ1K+s2CXkPIZo7s6JgZyvaBevYtxPvYLw4z9mR7K2vaF18UYH9Z9GNUUeayffKC73PYc= ; Valid: ; KeyTag:38696 183s 183s [system] loading config '/tmp/autopkgtest.G5ewbF/roundtrip-artifacts/kresd.conf' (workdir '/tmp/autopkgtest.G5ewbF/roundtrip-artifacts') 183s [system] deprecation WARNING: use log_level() instead of verbose() 183s [gnutls] (3) ASSERT: ../../../lib/x509/x509_ext.c[gnutls_subject_alt_names_get]:107 183s [gnutls] (3) ASSERT: ../../../lib/x509/x509.c[get_alt_name]:2012 183s [gnutls] (3) ASSERT: ../../../lib/nettle/mpi.c[wrap_nettle_mpi_print]:59 183s [gnutls] (3) ASSERT: ../../../lib/nettle/mpi.c[wrap_nettle_mpi_print]:59 183s [gnutls] (3) ASSERT: ../../../lib/nettle/mpi.c[wrap_nettle_mpi_print]:59 183s [tls ] RFC 7858 OOB key-pin (0): pin-sha256="" 183s [gnutls] (3) ASSERT: ../../lib/cert-cred-x509.c[gnutls_certificate_get_x509_crt]:872 183s [system] loading config '/usr/lib/arm-linux-gnueabihf/knot-resolver/postconfig.lua' (workdir '/tmp/autopkgtest.G5ewbF/roundtrip-artifacts') 183s [plan ][00000.00] plan '.' type 'NS' uid [65536.00] 183s [iterat][65536.00] '.' type 'NS' new uid was assigned .01, parent uid .00 183s [resolv][65536.01] => using root hints 183s [iterat][65536.01] '.' type 'NS' new uid was assigned .02, parent uid .00 183s [resolv][65536.02] >< TA: '.' 183s [plan ][65536.02] plan '.' type 'DNSKEY' uid [65536.03] 183s [iterat][65536.03] '.' type 'DNSKEY' new uid was assigned .04, parent uid .02 183s [select][65536.04] => id: '11215' choosing from addresses: 13 v4 + 13 v6; names to resolve: 0 v4 + 0 v6; force_resolve: 0; NO6: IPv6 is OK 183s [select][65536.04] => id: '11215' choosing: 'H.ROOT-SERVERS.NET.'@'198.97.190.53#00053' with timeout 400 ms zone cut: '.' 183s [resolv][65536.04] => id: '11215' querying: 'H.ROOT-SERVERS.NET.'@'198.97.190.53#00053' zone cut: '.' qname: '.' qtype: 'DNSKEY' proto: 'udp' 183s [plan ][00000.00] plan '.' type 'NS' uid [65537.00] 183s [iterat][65537.00] '.' type 'NS' new uid was assigned .01, parent uid .00 183s [resolv][65537.01] => using root hints 183s [iterat][65537.01] '.' type 'NS' new uid was assigned .02, parent uid .00 183s [select][65537.02] => id: '04638' choosing from addresses: 13 v4 + 13 v6; names to resolve: 0 v4 + 0 v6; force_resolve: 0; NO6: IPv6 is OK 183s [select][65537.02] => id: '04638' choosing: 'G.ROOT-SERVERS.NET.'@'2001:500:12::d0d#00053' with timeout 400 ms zone cut: '.' 183s [resolv][65537.02] => id: '04638' querying: 'G.ROOT-SERVERS.NET.'@'2001:500:12::d0d#00053' zone cut: '.' qname: '.' qtype: 'NS' proto: 'udp' 183s [taupd ] refreshing TA for . 183s [plan ][00000.00] plan '.' type 'DNSKEY' uid [65538.00] 183s [iterat][65538.00] '.' type 'DNSKEY' new uid was assigned .01, parent uid .00 183s [resolv][65538.01] => using root hints 183s [iterat][65538.01] '.' type 'DNSKEY' new uid was assigned .02, parent uid .00 183s [resolv][65538.02] >< TA: '.' 183s [select][65538.02] => id: '15401' choosing from addresses: 13 v4 + 13 v6; names to resolve: 0 v4 + 0 v6; force_resolve: 0; NO6: IPv6 is OK 183s [select][65538.02] => id: '15401' choosing: 'H.ROOT-SERVERS.NET.'@'198.97.190.53#00053' with timeout 400 ms zone cut: '.' 183s [select][65536.04] => id: '11215' noting selection error: 'H.ROOT-SERVERS.NET.'@'198.97.190.53#00053' zone cut: '.' error: 1 QUERY_TIMEOUT 183s [iterat][65538.02] '.' type 'DNSKEY' new uid was assigned .03, parent uid .00 183s [select][65538.03] => id: '05849' choosing from addresses: 13 v4 + 13 v6; names to resolve: 0 v4 + 0 v6; force_resolve: 0; NO6: IPv6 is OK 183s [select][65538.03] => id: '05849' choosing: 'H.ROOT-SERVERS.NET.'@'2001:500:1::53#00053' with timeout 400 ms zone cut: '.' 183s [resolv][65538.03] => id: '05849' querying: 'H.ROOT-SERVERS.NET.'@'2001:500:1::53#00053' zone cut: '.' qname: '.' qtype: 'DNSKEY' proto: 'udp' 183s [iterat][65536.04] '.' type 'DNSKEY' new uid was assigned .05, parent uid .02 183s [select][65536.05] => id: '43632' choosing from addresses: 13 v4 + 13 v6; names to resolve: 0 v4 + 0 v6; force_resolve: 0; NO6: IPv6 is OK 183s [select][65536.05] => id: '43632' choosing: 'I.ROOT-SERVERS.NET.'@'192.36.148.17#00053' with timeout 800 ms zone cut: '.' 183s [select][65537.02] NO6: timed out, appended, timeouts 1/6 183s [select][65537.02] => id: '04638' noting selection error: 'G.ROOT-SERVERS.NET.'@'2001:500:12::d0d#00053' zone cut: '.' error: 1 QUERY_TIMEOUT 183s [iterat][65537.02] '.' type 'NS' new uid was assigned .03, parent uid .00 183s [select][65537.03] => id: '40380' choosing from addresses: 13 v4 + 13 v6; names to resolve: 0 v4 + 0 v6; force_resolve: 0; NO6: IPv6 is OK 183s [select][65537.03] => id: '40380' choosing: 'H.ROOT-SERVERS.NET.'@'2001:500:1::53#00053' with timeout 800 ms zone cut: '.' 183s [resolv][65537.03] => id: '40380' querying: 'H.ROOT-SERVERS.NET.'@'2001:500:1::53#00053' zone cut: '.' qname: '.' qtype: 'NS' proto: 'udp' 183s [select][65538.03] NO6: timed out, appended, timeouts 2/6 183s [select][65538.03] => id: '05849' noting selection error: 'H.ROOT-SERVERS.NET.'@'2001:500:1::53#00053' zone cut: '.' error: 1 QUERY_TIMEOUT 183s [iterat][65536.05] '.' type 'DNSKEY' new uid was assigned .06, parent uid .02 183s [select][65536.06] => id: '27995' choosing from addresses: 13 v4 + 13 v6; names to resolve: 0 v4 + 0 v6; force_resolve: 0; NO6: IPv6 is OK 183s [select][65536.06] => id: '27995' choosing: 'A.ROOT-SERVERS.NET.'@'198.41.0.4#00053' with timeout 800 ms zone cut: '.' 183s [resolv][65536.06] => id: '27995' querying: 'A.ROOT-SERVERS.NET.'@'198.41.0.4#00053' zone cut: '.' qname: '.' qtype: 'DNSKEY' proto: 'udp' 183s [iterat][65538.03] '.' type 'DNSKEY' new uid was assigned .04, parent uid .00 183s [select][65538.04] => id: '27724' choosing from addresses: 13 v4 + 13 v6; names to resolve: 0 v4 + 0 v6; force_resolve: 0; NO6: IPv6 is OK 183s [select][65538.04] => id: '27724' choosing: 'L.ROOT-SERVERS.NET.'@'199.7.83.42#00053' with timeout 800 ms zone cut: '.' 183s [plan ][00000.00] plan 'monkeys.example.' type 'A' uid [42914.00] 183s [iterat][42914.00] 'monkeys.example.' type 'A' new uid was assigned .01, parent uid .00 183s [hint ][42914.01] <= answered from hints 183s [iterat][42914.01] <= rcode: NOERROR 183s [resolv][42914.01] AD: request NOT classified as SECURE 183s [resolv][42914.01] finished in state: 4, queries: 1, mempool: 16392 B 183s [plan ][00000.00] plan 'monkeys.example.' type 'A' uid [10302.00] 183s [iterat][10302.00] 'monkeys.example.' type 'A' new uid was assigned .01, parent uid .00 183s [hint ][10302.01] <= answered from hints 183s [iterat][10302.01] <= rcode: NOERROR 183s [resolv][10302.01] AD: request NOT classified as SECURE 183s [resolv][10302.01] finished in state: 4, queries: 1, mempool: 81936 B 183s [io ] => connection to '127.0.0.1#57463' closed by peer (end of file) 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #0 183s [gnutls] (2) added 3 protocols, 29 ciphersuites, 19 sig algos and 10 groups into priority list 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #1 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.1 Handshake packet received. Epoch 0, length: 310 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Handshake(22) with length: 310 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[0] Handshake(22) with length: 310 183s [gnutls] (4) HSK[0xf4950000]: CLIENT HELLO (1) was received. Length 306[306], frag offset 0, frag length: 306, sequence: 0 183s [gnutls] (4) HSK[0xf4950000]: Client's version: 3.3 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported Versions/43' (3 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Found version: 3.4 183s [gnutls] (4) EXT[0xf4950000]: Negotiated version: 3.4 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'ALPN/16' (6 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Record Size Limit/28' (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: record_size_limit 16385 negotiated 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Encrypt-then-MAC/22' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Safe Renegotiation/65281' (1 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Extended Master Secret/23' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Signature Algorithms/13' (34 bytes) 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (4.1) RSA-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.9) RSA-PSS-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.4) RSA-PSS-RSAE-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (4.3) ECDSA-SECP256R1-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.7) EdDSA-Ed25519 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (5.1) RSA-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.10) RSA-PSS-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.5) RSA-PSS-RSAE-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (5.3) ECDSA-SECP384R1-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.8) EdDSA-Ed448 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (6.1) RSA-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.11) RSA-PSS-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.6) RSA-PSS-RSAE-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (6.3) ECDSA-SECP521R1-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (2.1) RSA-SHA1 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (2.3) ECDSA-SHA1 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported Groups/10' (10 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Received group X25519 (0x1d) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP256R1 (0x17) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP384R1 (0x18) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP521R1 (0x19) 183s [gnutls] (4) EXT[0xf4950000]: Selected group X25519 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Session Ticket/35' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'PSK Key Exchange Modes/45' (3 bytes) 183s [gnutls] (4) EXT[0xf4950000]: PSK KE mode 01 received 183s [gnutls] (4) EXT[0xf4950000]: PSK KE mode 00 received 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported EC Point Formats/11' (2 bytes) 183s [gnutls] (2) checking 13.02 (GNUTLS_AES_256_GCM_SHA384) for compatibility 183s [gnutls] (3) ASSERT: ../../../lib/ext/server_name.c[gnutls_server_name_get]:234 183s [gnutls] (4) HSK[0xf4950000]: Requested server name: '' 183s [gnutls] (4) HSK[0xf4950000]: checking compat of GNUTLS_AES_256_GCM_SHA384 with certificate[0] (RSA/X.509) 183s [gnutls] (4) checking cert compat with RSA-SHA256 183s [gnutls] (3) ASSERT: ../../../lib/ext/signature.c[_gnutls_session_sign_algo_enabled]:428 183s [gnutls] (4) Signature algorithm RSA-SHA256 is not enabled 183s [gnutls] (4) checking cert compat with RSA-PSS-SHA256 183s [gnutls] (4) checking cert compat with RSA-PSS-RSAE-SHA256 183s [gnutls] (4) Selected signature algorithm: RSA-PSS-RSAE-SHA256 183s [gnutls] (2) Selected (RSA) cert based on ciphersuite 13.2: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: Selected cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: Selected version TLS1.3 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Key Share/51' (107 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Received key share for X25519 183s [gnutls] (4) HSK[0xf4950000]: Selected group X25519 (6) 183s [gnutls] (2) EXT[0xf4950000]: server generated X25519 shared key 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'OCSP Status Request/5' (5 bytes) 183s [gnutls] (4) EXT[0xf4950000]: OCSP status was requested 183s [gnutls] (4) HSK[0xf4950000]: Safe renegotiation succeeded 183s [gnutls] (4) HSK[0xf4950000]: SessionID: 40c6dffa76d77b033f7c3c5d242a2e1e876ae49121ac3ce72917d2d7b082a8df 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (OCSP Status Request/5) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Client Certificate Type/19) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Server Certificate Type/20) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported Groups/10) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported EC Point Formats/11) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Signature Algorithms/13) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (SRTP/14) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ALPN/16) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Encrypt-then-MAC/22) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Extended Master Secret/23) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Session Ticket/35) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Key Share/51) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: sending key share for X25519 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Key Share/51 (36 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Supported Versions/43) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Supported Versions/43 (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Post Handshake Auth/49) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Safe Renegotiation/65281) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Server Name Indication/0) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Cookie/44) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Early Data/42) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (PSK Key Exchange Modes/45) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Record Size Limit/28) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Maximum Record Size/1) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Compress Certificate/27) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ClientHello Padding/21) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Pre Shared Key/41) for 'TLS 1.3 server hello' 183s [gnutls] (4) HSK[0xf4950000]: SERVER HELLO was queued [122 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 122 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 0 and length: 127 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet ChangeCipherSpec(20) with length: 1 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] ChangeCipherSpec(20) in epoch 0 and length: 6 183s [gnutls] (4) REC[0xf4950000]: Sent ChangeCipherSpec 183s [gnutls] (5) REC[0xf4950000]: Initializing epoch #1 183s [gnutls] (5) REC[0xf4950000]: Epoch #1 ready 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 re-key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (OCSP Status Request/5) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Client Certificate Type/19) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Server Certificate Type/20) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Supported Groups/10) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported EC Point Formats/11) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Signature Algorithms/13) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (SRTP/14) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (ALPN/16) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension ALPN/16 (6 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Encrypt-then-MAC/22) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Extended Master Secret/23) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Session Ticket/35) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Key Share/51) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported Versions/43) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Post Handshake Auth/49) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Safe Renegotiation/65281) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Server Name Indication/0) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Cookie/44) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Early Data/42) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (PSK Key Exchange Modes/45) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Record Size Limit/28) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Record Size Limit/28 (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Maximum Record Size/1) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Compress Certificate/27) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ClientHello Padding/21) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Pre Shared Key/41) for 'encrypted extensions' 183s [gnutls] (4) HSK[0xf4950000]: ENCRYPTED EXTENSIONS was queued [22 bytes] 183s [gnutls] (4) HSK[0xf4950000]: CERTIFICATE was queued [1155 bytes] 183s [gnutls] (4) checking cert compat with RSA-SHA256 183s [gnutls] (3) ASSERT: ../../../lib/ext/signature.c[_gnutls_session_sign_algo_enabled]:428 183s [gnutls] (4) Signature algorithm RSA-SHA256 is not enabled 183s [gnutls] (4) checking cert compat with RSA-PSS-SHA256 183s [gnutls] (4) checking cert compat with RSA-PSS-RSAE-SHA256 183s [gnutls] (4) HSK[0xf4950000]: signing TLS 1.3 handshake data: using RSA-PSS-RSAE-SHA256 and PRF: SHA384 183s [gnutls] (3) ASSERT: ../../../lib/nettle/mpi.c[wrap_nettle_mpi_print]:59 183s [gnutls] (4) HSK[0xf4950000]: CERTIFICATE VERIFY was queued [392 bytes] 183s [gnutls] (4) HSK[0xf4950000]: sending finished 183s [gnutls] (4) HSK[0xf4950000]: FINISHED was queued [52 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 22 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 1 and length: 44 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 1155 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] Handshake(22) in epoch 1 and length: 1177 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 392 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[3] Handshake(22) in epoch 1 and length: 414 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 52 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[4] Handshake(22) in epoch 1 and length: 74 183s [gnutls] (3) ASSERT: ../../lib/constate.c[_gnutls_epoch_get]:965 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #2 183s [gnutls] (4) HSK[0xf4950000]: unauthenticated session eligible for early start 183s [gnutls] (5) REC[0xf4950000]: Initializing epoch #2 183s [gnutls] (5) REC[0xf4950000]: Epoch #2 ready 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 set write key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: switching early to application traffic keys 183s [gnutls] (4) HSK[0xf4950000]: NEW SESSION TICKET was queued [251 bytes] 183s [gnutls] (4) HSK[0xf4950000]: NEW SESSION TICKET was queued [251 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 251 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 2 and length: 273 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 251 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] Handshake(22) in epoch 2 and length: 273 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/tls13/finished.c[_gnutls13_recv_finished]:91 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 ChangeCipherSpec packet received. Epoch 1, length: 1 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet ChangeCipherSpec(20) with length: 1 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/tls13/finished.c[_gnutls13_recv_finished]:91 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 Application Data packet received. Epoch 1, length: 69 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Application Data(23) with length: 69 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[0] Handshake(22) with length: 52 183s [gnutls] (4) HSK[0xf4950000]: FINISHED (20) was received. Length 48[48], frag offset 0, frag length: 48, sequence: 0 183s [gnutls] (4) HSK[0xf4950000]: parsing finished 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 set read key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (5) REC[0xf4950000]: Start of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: Epoch #0 freed 183s [gnutls] (5) REC[0xf4950000]: Epoch #1 freed 183s [gnutls] (5) REC[0xf4950000]: End of epoch cleanup 183s [tls ] TLS handshake with 127.0.0.1#53279 has completed 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/record.c[_gnutls_recv_int]:1759 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 Application Data packet received. Epoch 2, length: 147 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Application Data(23) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Application Data(23) with length: 147 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[0] Application Data(23) with length: 130 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/record.c[_gnutls_recv_int]:1759 183s [plan ][00000.00] plan 'monkeys.example.' type 'A' uid [53343.00] 183s [iterat][53343.00] 'monkeys.example.' type 'A' new uid was assigned .01, parent uid .00 183s [hint ][53343.01] <= answered from hints 183s [iterat][53343.01] <= rcode: NOERROR 183s [resolv][53343.01] AD: request NOT classified as SECURE 183s [resolv][53343.01] finished in state: 4, queries: 1, mempool: 81936 B 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Application Data(23) with length: 470 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[3] Application Data(23) in epoch 2 and length: 492 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 Application Data packet received. Epoch 2, length: 19 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Application Data(23) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Application Data(23) with length: 19 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[1] Alert(21) with length: 2 183s [gnutls] (5) REC[0xf4950000]: Alert[1|0] - Close notify - was received 183s [gnutls] (3) ASSERT: ../../lib/record.c[_gnutls_recv_in_buffers]:1565 183s [io ] => connection to '127.0.0.1#53279' closed by peer (end of file) 183s [gnutls] (5) REC[0xf4950000]: Start of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: End of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: Epoch #2 freed 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #0 183s [gnutls] (2) added 3 protocols, 29 ciphersuites, 19 sig algos and 10 groups into priority list 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #1 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.1 Handshake packet received. Epoch 0, length: 331 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Handshake(22) with length: 331 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[0] Handshake(22) with length: 331 183s [gnutls] (4) HSK[0xf4950000]: CLIENT HELLO (1) was received. Length 327[327], frag offset 0, frag length: 327, sequence: 0 183s [gnutls] (4) HSK[0xf4950000]: Client's version: 3.3 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported Versions/43' (3 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Found version: 3.4 183s [gnutls] (4) EXT[0xf4950000]: Negotiated version: 3.4 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Encrypt-then-MAC/22' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Record Size Limit/28' (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: record_size_limit 16385 negotiated 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Extended Master Secret/23' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'ALPN/16' (6 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Server Name Indication/0' (17 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Safe Renegotiation/65281' (1 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Signature Algorithms/13' (34 bytes) 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (4.1) RSA-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.9) RSA-PSS-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.4) RSA-PSS-RSAE-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (4.3) ECDSA-SECP256R1-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.7) EdDSA-Ed25519 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (5.1) RSA-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.10) RSA-PSS-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.5) RSA-PSS-RSAE-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (5.3) ECDSA-SECP384R1-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.8) EdDSA-Ed448 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (6.1) RSA-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.11) RSA-PSS-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.6) RSA-PSS-RSAE-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (6.3) ECDSA-SECP521R1-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (2.1) RSA-SHA1 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (2.3) ECDSA-SHA1 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'PSK Key Exchange Modes/45' (3 bytes) 183s [gnutls] (4) EXT[0xf4950000]: PSK KE mode 01 received 183s [gnutls] (4) EXT[0xf4950000]: PSK KE mode 00 received 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Session Ticket/35' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported Groups/10' (10 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Received group X25519 (0x1d) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP256R1 (0x17) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP384R1 (0x18) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP521R1 (0x19) 183s [gnutls] (4) EXT[0xf4950000]: Selected group X25519 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported EC Point Formats/11' (2 bytes) 183s [gnutls] (2) checking 13.02 (GNUTLS_AES_256_GCM_SHA384) for compatibility 183s [gnutls] (4) HSK[0xf4950000]: Requested server name: 'test.example' 183s [gnutls] (4) checking cert compat with RSA-SHA256 183s [gnutls] (3) ASSERT: ../../../lib/ext/signature.c[_gnutls_session_sign_algo_enabled]:428 183s [gnutls] (4) Signature algorithm RSA-SHA256 is not enabled 183s [gnutls] (4) checking cert compat with RSA-PSS-SHA256 183s [gnutls] (4) checking cert compat with RSA-PSS-RSAE-SHA256 183s [gnutls] (4) Selected signature algorithm: RSA-PSS-RSAE-SHA256 183s [gnutls] (2) Selected (RSA) cert based on ciphersuite 13.2: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: Selected cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: Selected version TLS1.3 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Key Share/51' (107 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Received key share for X25519 183s [gnutls] (4) HSK[0xf4950000]: Selected group X25519 (6) 183s [gnutls] (2) EXT[0xf4950000]: server generated X25519 shared key 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'OCSP Status Request/5' (5 bytes) 183s [gnutls] (4) EXT[0xf4950000]: OCSP status was requested 183s [gnutls] (4) HSK[0xf4950000]: Safe renegotiation succeeded 183s [gnutls] (4) HSK[0xf4950000]: SessionID: 8230c0fb23ef0062cf9ca8f3c961d97632d26a620953af51cf2d22065f29cd4e 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (OCSP Status Request/5) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Client Certificate Type/19) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Server Certificate Type/20) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported Groups/10) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported EC Point Formats/11) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Signature Algorithms/13) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (SRTP/14) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ALPN/16) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Encrypt-then-MAC/22) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Extended Master Secret/23) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Session Ticket/35) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Key Share/51) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: sending key share for X25519 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Key Share/51 (36 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Supported Versions/43) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Supported Versions/43 (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Post Handshake Auth/49) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Safe Renegotiation/65281) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Server Name Indication/0) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Cookie/44) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Early Data/42) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (PSK Key Exchange Modes/45) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Record Size Limit/28) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Maximum Record Size/1) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Compress Certificate/27) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ClientHello Padding/21) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Pre Shared Key/41) for 'TLS 1.3 server hello' 183s [gnutls] (4) HSK[0xf4950000]: SERVER HELLO was queued [122 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 122 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 0 and length: 127 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet ChangeCipherSpec(20) with length: 1 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] ChangeCipherSpec(20) in epoch 0 and length: 6 183s [gnutls] (4) REC[0xf4950000]: Sent ChangeCipherSpec 183s [gnutls] (5) REC[0xf4950000]: Initializing epoch #1 183s [gnutls] (5) REC[0xf4950000]: Epoch #1 ready 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 re-key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (OCSP Status Request/5) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Client Certificate Type/19) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Server Certificate Type/20) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Supported Groups/10) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported EC Point Formats/11) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Signature Algorithms/13) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (SRTP/14) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (ALPN/16) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension ALPN/16 (6 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Encrypt-then-MAC/22) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Extended Master Secret/23) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Session Ticket/35) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Key Share/51) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported Versions/43) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Post Handshake Auth/49) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Safe Renegotiation/65281) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Server Name Indication/0) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Cookie/44) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Early Data/42) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (PSK Key Exchange Modes/45) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Record Size Limit/28) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Record Size Limit/28 (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Maximum Record Size/1) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Compress Certificate/27) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ClientHello Padding/21) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Pre Shared Key/41) for 'encrypted extensions' 183s [gnutls] (4) HSK[0xf4950000]: ENCRYPTED EXTENSIONS was queued [22 bytes] 183s [gnutls] (4) HSK[0xf4950000]: CERTIFICATE was queued [1155 bytes] 183s [gnutls] (4) checking cert compat with RSA-SHA256 183s [gnutls] (3) ASSERT: ../../../lib/ext/signature.c[_gnutls_session_sign_algo_enabled]:428 183s [gnutls] (4) Signature algorithm RSA-SHA256 is not enabled 183s [gnutls] (4) checking cert compat with RSA-PSS-SHA256 183s [gnutls] (4) checking cert compat with RSA-PSS-RSAE-SHA256 183s [gnutls] (4) HSK[0xf4950000]: signing TLS 1.3 handshake data: using RSA-PSS-RSAE-SHA256 and PRF: SHA384 183s [gnutls] (3) ASSERT: ../../../lib/nettle/mpi.c[wrap_nettle_mpi_print]:59 183s [gnutls] (4) HSK[0xf4950000]: CERTIFICATE VERIFY was queued [392 bytes] 183s [gnutls] (4) HSK[0xf4950000]: sending finished 183s [gnutls] (4) HSK[0xf4950000]: FINISHED was queued [52 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 22 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 1 and length: 44 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 1155 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] Handshake(22) in epoch 1 and length: 1177 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 392 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[3] Handshake(22) in epoch 1 and length: 414 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 52 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[4] Handshake(22) in epoch 1 and length: 74 183s [gnutls] (3) ASSERT: ../../lib/constate.c[_gnutls_epoch_get]:965 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #2 183s [gnutls] (4) HSK[0xf4950000]: unauthenticated session eligible for early start 183s [gnutls] (5) REC[0xf4950000]: Initializing epoch #2 183s [gnutls] (5) REC[0xf4950000]: Epoch #2 ready 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 set write key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: switching early to application traffic keys 183s [gnutls] (4) HSK[0xf4950000]: NEW SESSION TICKET was queued [251 bytes] 183s [gnutls] (4) HSK[0xf4950000]: NEW SESSION TICKET was queued [251 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 251 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 2 and length: 273 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 251 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] Handshake(22) in epoch 2 and length: 273 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/tls13/finished.c[_gnutls13_recv_finished]:91 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 ChangeCipherSpec packet received. Epoch 1, length: 1 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet ChangeCipherSpec(20) with length: 1 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/tls13/finished.c[_gnutls13_recv_finished]:91 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 Application Data packet received. Epoch 1, length: 69 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Application Data(23) with length: 69 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[0] Handshake(22) with length: 52 183s [gnutls] (4) HSK[0xf4950000]: FINISHED (20) was received. Length 48[48], frag offset 0, frag length: 48, sequence: 0 183s [gnutls] (4) HSK[0xf4950000]: parsing finished 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 set read key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (5) REC[0xf4950000]: Start of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: Epoch #0 freed 183s [gnutls] (5) REC[0xf4950000]: Epoch #1 freed 183s [gnutls] (5) REC[0xf4950000]: End of epoch cleanup 183s [tls ] TLS handshake with 127.0.0.1#39513 has completed 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/record.c[_gnutls_recv_int]:1759 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 Application Data packet received. Epoch 2, length: 147 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Application Data(23) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Application Data(23) with length: 147 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[0] Application Data(23) with length: 130 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/record.c[_gnutls_recv_int]:1759 183s [plan ][00000.00] plan 'monkeys.example.' type 'A' uid [59280.00] 183s [iterat][59280.00] 'monkeys.example.' type 'A' new uid was assigned .01, parent uid .00 183s [hint ][59280.01] <= answered from hints 183s [iterat][59280.01] <= rcode: NOERROR 183s [resolv][59280.01] AD: request NOT classified as SECURE 183s [resolv][59280.01] finished in state: 4, queries: 1, mempool: 81936 B 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Application Data(23) with length: 470 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[3] Application Data(23) in epoch 2 and length: 492 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 Application Data packet received. Epoch 2, length: 19 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Application Data(23) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Application Data(23) with length: 19 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[1] Alert(21) with length: 2 183s [gnutls] (5) REC[0xf4950000]: Alert[1|0] - Close notify - was received 183s [gnutls] (3) ASSERT: ../../lib/record.c[_gnutls_recv_in_buffers]:1565 183s [io ] => connection to '127.0.0.1#39513' closed by peer (end of file) 183s [gnutls] (5) REC[0xf4950000]: Start of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: End of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: Epoch #2 freed 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #0 183s [gnutls] (2) added 3 protocols, 29 ciphersuites, 19 sig algos and 10 groups into priority list 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #1 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.1 Handshake packet received. Epoch 0, length: 335 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Handshake(22) with length: 335 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[0] Handshake(22) with length: 335 183s [gnutls] (4) HSK[0xf4950000]: CLIENT HELLO (1) was received. Length 331[331], frag offset 0, frag length: 331, sequence: 0 183s [gnutls] (4) HSK[0xf4950000]: Client's version: 3.3 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported Versions/43' (3 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Found version: 3.4 183s [gnutls] (4) EXT[0xf4950000]: Negotiated version: 3.4 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Record Size Limit/28' (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: record_size_limit 16385 negotiated 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Safe Renegotiation/65281' (1 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Extended Master Secret/23' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Server Name Indication/0' (21 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Encrypt-then-MAC/22' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'ALPN/16' (6 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Session Ticket/35' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported Groups/10' (10 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Received group X25519 (0x1d) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP256R1 (0x17) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP384R1 (0x18) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP521R1 (0x19) 183s [gnutls] (4) EXT[0xf4950000]: Selected group X25519 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Signature Algorithms/13' (34 bytes) 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (4.1) RSA-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.9) RSA-PSS-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.4) RSA-PSS-RSAE-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (4.3) ECDSA-SECP256R1-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.7) EdDSA-Ed25519 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (5.1) RSA-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.10) RSA-PSS-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.5) RSA-PSS-RSAE-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (5.3) ECDSA-SECP384R1-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.8) EdDSA-Ed448 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (6.1) RSA-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.11) RSA-PSS-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.6) RSA-PSS-RSAE-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (6.3) ECDSA-SECP521R1-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (2.1) RSA-SHA1 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (2.3) ECDSA-SHA1 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'PSK Key Exchange Modes/45' (3 bytes) 183s [gnutls] (4) EXT[0xf4950000]: PSK KE mode 01 received 183s [gnutls] (4) EXT[0xf4950000]: PSK KE mode 00 received 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported EC Point Formats/11' (2 bytes) 183s [gnutls] (2) checking 13.02 (GNUTLS_AES_256_GCM_SHA384) for compatibility 183s [gnutls] (4) HSK[0xf4950000]: Requested server name: 'notright.example' 183s [gnutls] (4) HSK[0xf4950000]: checking compat of GNUTLS_AES_256_GCM_SHA384 with certificate[0] (RSA/X.509) 183s [gnutls] (4) checking cert compat with RSA-SHA256 183s [gnutls] (3) ASSERT: ../../../lib/ext/signature.c[_gnutls_session_sign_algo_enabled]:428 183s [gnutls] (4) Signature algorithm RSA-SHA256 is not enabled 183s [gnutls] (4) checking cert compat with RSA-PSS-SHA256 183s [gnutls] (4) checking cert compat with RSA-PSS-RSAE-SHA256 183s [gnutls] (4) Selected signature algorithm: RSA-PSS-RSAE-SHA256 183s [gnutls] (2) Selected (RSA) cert based on ciphersuite 13.2: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: Selected cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: Selected version TLS1.3 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Key Share/51' (107 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Received key share for X25519 183s [gnutls] (4) HSK[0xf4950000]: Selected group X25519 (6) 183s [gnutls] (2) EXT[0xf4950000]: server generated X25519 shared key 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'OCSP Status Request/5' (5 bytes) 183s [gnutls] (4) EXT[0xf4950000]: OCSP status was requested 183s [gnutls] (4) HSK[0xf4950000]: Safe renegotiation succeeded 183s [gnutls] (4) HSK[0xf4950000]: SessionID: 7f67428bcd8d2c5e393c25ab657ad881603f00756ef63f46b1f7176b3b363a4e 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (OCSP Status Request/5) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Client Certificate Type/19) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Server Certificate Type/20) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported Groups/10) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported EC Point Formats/11) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Signature Algorithms/13) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (SRTP/14) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ALPN/16) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Encrypt-then-MAC/22) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Extended Master Secret/23) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Session Ticket/35) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Key Share/51) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: sending key share for X25519 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Key Share/51 (36 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Supported Versions/43) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Supported Versions/43 (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Post Handshake Auth/49) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Safe Renegotiation/65281) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Server Name Indication/0) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Cookie/44) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Early Data/42) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (PSK Key Exchange Modes/45) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Record Size Limit/28) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Maximum Record Size/1) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Compress Certificate/27) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ClientHello Padding/21) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Pre Shared Key/41) for 'TLS 1.3 server hello' 183s [gnutls] (4) HSK[0xf4950000]: SERVER HELLO was queued [122 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 122 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 0 and length: 127 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet ChangeCipherSpec(20) with length: 1 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] ChangeCipherSpec(20) in epoch 0 and length: 6 183s [gnutls] (4) REC[0xf4950000]: Sent ChangeCipherSpec 183s [gnutls] (5) REC[0xf4950000]: Initializing epoch #1 183s [gnutls] (5) REC[0xf4950000]: Epoch #1 ready 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 re-key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (OCSP Status Request/5) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Client Certificate Type/19) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Server Certificate Type/20) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Supported Groups/10) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported EC Point Formats/11) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Signature Algorithms/13) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (SRTP/14) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (ALPN/16) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension ALPN/16 (6 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Encrypt-then-MAC/22) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Extended Master Secret/23) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Session Ticket/35) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Key Share/51) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported Versions/43) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Post Handshake Auth/49) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Safe Renegotiation/65281) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Server Name Indication/0) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Cookie/44) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Early Data/42) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (PSK Key Exchange Modes/45) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Record Size Limit/28) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Record Size Limit/28 (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Maximum Record Size/1) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Compress Certificate/27) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ClientHello Padding/21) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Pre Shared Key/41) for 'encrypted extensions' 183s [gnutls] (4) HSK[0xf4950000]: ENCRYPTED EXTENSIONS was queued [22 bytes] 183s [gnutls] (4) HSK[0xf4950000]: CERTIFICATE was queued [1155 bytes] 183s [gnutls] (4) checking cert compat with RSA-SHA256 183s [gnutls] (3) ASSERT: ../../../lib/ext/signature.c[_gnutls_session_sign_algo_enabled]:428 183s [gnutls] (4) Signature algorithm RSA-SHA256 is not enabled 183s [gnutls] (4) checking cert compat with RSA-PSS-SHA256 183s [gnutls] (4) checking cert compat with RSA-PSS-RSAE-SHA256 183s [gnutls] (4) HSK[0xf4950000]: signing TLS 1.3 handshake data: using RSA-PSS-RSAE-SHA256 and PRF: SHA384 183s [gnutls] (3) ASSERT: ../../../lib/nettle/mpi.c[wrap_nettle_mpi_print]:59 183s [gnutls] (4) HSK[0xf4950000]: CERTIFICATE VERIFY was queued [392 bytes] 183s [gnutls] (4) HSK[0xf4950000]: sending finished 183s [gnutls] (4) HSK[0xf4950000]: FINISHED was queued [52 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 22 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 1 and length: 44 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 1155 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] Handshake(22) in epoch 1 and length: 1177 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 392 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[3] Handshake(22) in epoch 1 and length: 414 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 52 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[4] Handshake(22) in epoch 1 and length: 74 183s [gnutls] (3) ASSERT: ../../lib/constate.c[_gnutls_epoch_get]:965 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #2 183s [gnutls] (4) HSK[0xf4950000]: unauthenticated session eligible for early start 183s [gnutls] (5) REC[0xf4950000]: Initializing epoch #2 183s [gnutls] (5) REC[0xf4950000]: Epoch #2 ready 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 set write key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: switching early to application traffic keys 183s [gnutls] (4) HSK[0xf4950000]: NEW SESSION TICKET was queued [251 bytes] 183s [gnutls] (4) HSK[0xf4950000]: NEW SESSION TICKET was queued [251 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 251 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 2 and length: 273 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 251 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] Handshake(22) in epoch 2 and length: 273 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/tls13/finished.c[_gnutls13_recv_finished]:91 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 ChangeCipherSpec packet received. Epoch 1, length: 1 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet ChangeCipherSpec(20) with length: 1 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/tls13/finished.c[_gnutls13_recv_finished]:91 183s [io ] => connection to '127.0.0.1#52089' closed by peer (connection reset by peer) 183s [gnutls] (5) REC[0xf4950000]: Start of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: Epoch #0 freed 183s [gnutls] (5) REC[0xf4950000]: End of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: Epoch #1 freed 183s [gnutls] (5) REC[0xf4950000]: Epoch #2 freed 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #0 183s [gnutls] (2) added 3 protocols, 29 ciphersuites, 19 sig algos and 10 groups into priority list 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #1 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.1 Handshake packet received. Epoch 0, length: 331 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet Handshake(22) with length: 331 183s [gnutls] (5) REC[0xf4950000]: Decrypted Packet[0] Handshake(22) with length: 331 183s [gnutls] (4) HSK[0xf4950000]: CLIENT HELLO (1) was received. Length 327[327], frag offset 0, frag length: 327, sequence: 0 183s [gnutls] (4) HSK[0xf4950000]: Client's version: 3.3 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported Versions/43' (3 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Found version: 3.4 183s [gnutls] (4) EXT[0xf4950000]: Negotiated version: 3.4 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Safe Renegotiation/65281' (1 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Extended Master Secret/23' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Server Name Indication/0' (17 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Record Size Limit/28' (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: record_size_limit 16385 negotiated 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'ALPN/16' (6 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Encrypt-then-MAC/22' (0 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'PSK Key Exchange Modes/45' (3 bytes) 183s [gnutls] (4) EXT[0xf4950000]: PSK KE mode 01 received 183s [gnutls] (4) EXT[0xf4950000]: PSK KE mode 00 received 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported EC Point Formats/11' (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Signature Algorithms/13' (34 bytes) 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (4.1) RSA-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.9) RSA-PSS-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.4) RSA-PSS-RSAE-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (4.3) ECDSA-SECP256R1-SHA256 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.7) EdDSA-Ed25519 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (5.1) RSA-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.10) RSA-PSS-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.5) RSA-PSS-RSAE-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (5.3) ECDSA-SECP384R1-SHA384 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.8) EdDSA-Ed448 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (6.1) RSA-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.11) RSA-PSS-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (8.6) RSA-PSS-RSAE-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (6.3) ECDSA-SECP521R1-SHA512 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (2.1) RSA-SHA1 183s [gnutls] (4) EXT[0xf4950000]: rcvd signature algo (2.3) ECDSA-SHA1 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Supported Groups/10' (10 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Received group X25519 (0x1d) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP256R1 (0x17) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP384R1 (0x18) 183s [gnutls] (4) EXT[0xf4950000]: Received group SECP521R1 (0x19) 183s [gnutls] (4) EXT[0xf4950000]: Selected group X25519 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Session Ticket/35' (0 bytes) 183s [gnutls] (2) checking 13.02 (GNUTLS_AES_256_GCM_SHA384) for compatibility 183s [gnutls] (4) HSK[0xf4950000]: Requested server name: 'test.example' 183s [gnutls] (4) checking cert compat with RSA-SHA256 183s [gnutls] (3) ASSERT: ../../../lib/ext/signature.c[_gnutls_session_sign_algo_enabled]:428 183s [gnutls] (4) Signature algorithm RSA-SHA256 is not enabled 183s [gnutls] (4) checking cert compat with RSA-PSS-SHA256 183s [gnutls] (4) checking cert compat with RSA-PSS-RSAE-SHA256 183s [gnutls] (4) Selected signature algorithm: RSA-PSS-RSAE-SHA256 183s [gnutls] (2) Selected (RSA) cert based on ciphersuite 13.2: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: Selected cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: Selected version TLS1.3 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'OCSP Status Request/5' (5 bytes) 183s [gnutls] (4) EXT[0xf4950000]: OCSP status was requested 183s [gnutls] (4) EXT[0xf4950000]: Parsing extension 'Key Share/51' (107 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Received key share for X25519 183s [gnutls] (4) HSK[0xf4950000]: Selected group X25519 (6) 183s [gnutls] (2) EXT[0xf4950000]: server generated X25519 shared key 183s [gnutls] (4) HSK[0xf4950000]: Safe renegotiation succeeded 183s [gnutls] (4) HSK[0xf4950000]: SessionID: e444ef88ccc6c44ea9afa41c8b003b425bfa2730b48d2a2e0bcc4b984be61ba5 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (OCSP Status Request/5) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Client Certificate Type/19) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Server Certificate Type/20) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported Groups/10) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported EC Point Formats/11) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Signature Algorithms/13) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (SRTP/14) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ALPN/16) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Encrypt-then-MAC/22) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Extended Master Secret/23) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Session Ticket/35) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Key Share/51) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: sending key share for X25519 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Key Share/51 (36 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Supported Versions/43) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Supported Versions/43 (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Post Handshake Auth/49) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Safe Renegotiation/65281) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Server Name Indication/0) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Cookie/44) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Early Data/42) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (PSK Key Exchange Modes/45) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Record Size Limit/28) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Maximum Record Size/1) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Compress Certificate/27) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ClientHello Padding/21) for 'TLS 1.3 server hello' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Pre Shared Key/41) for 'TLS 1.3 server hello' 183s [gnutls] (4) HSK[0xf4950000]: SERVER HELLO was queued [122 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 122 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 0 and length: 127 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet ChangeCipherSpec(20) with length: 1 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] ChangeCipherSpec(20) in epoch 0 and length: 6 183s [gnutls] (4) REC[0xf4950000]: Sent ChangeCipherSpec 183s [gnutls] (5) REC[0xf4950000]: Initializing epoch #1 183s [gnutls] (5) REC[0xf4950000]: Epoch #1 ready 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 re-key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (OCSP Status Request/5) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Client Certificate Type/19) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Server Certificate Type/20) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Supported Groups/10) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported EC Point Formats/11) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Signature Algorithms/13) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (SRTP/14) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (ALPN/16) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension ALPN/16 (6 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Encrypt-then-MAC/22) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Extended Master Secret/23) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Session Ticket/35) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Key Share/51) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Supported Versions/43) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Post Handshake Auth/49) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Safe Renegotiation/65281) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Server Name Indication/0) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Cookie/44) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Early Data/42) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (PSK Key Exchange Modes/45) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Record Size Limit/28) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Sending extension Record Size Limit/28 (2 bytes) 183s [gnutls] (4) EXT[0xf4950000]: Preparing extension (Maximum Record Size/1) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Compress Certificate/27) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (ClientHello Padding/21) for 'encrypted extensions' 183s [gnutls] (4) EXT[0xf4950000]: Not sending extension (Pre Shared Key/41) for 'encrypted extensions' 183s [gnutls] (4) HSK[0xf4950000]: ENCRYPTED EXTENSIONS was queued [22 bytes] 183s [gnutls] (4) HSK[0xf4950000]: CERTIFICATE was queued [1155 bytes] 183s [gnutls] (4) checking cert compat with RSA-SHA256 183s [gnutls] (3) ASSERT: ../../../lib/ext/signature.c[_gnutls_session_sign_algo_enabled]:428 183s [gnutls] (4) Signature algorithm RSA-SHA256 is not enabled 183s [gnutls] (4) checking cert compat with RSA-PSS-SHA256 183s [gnutls] (4) checking cert compat with RSA-PSS-RSAE-SHA256 183s [gnutls] (4) HSK[0xf4950000]: signing TLS 1.3 handshake data: using RSA-PSS-RSAE-SHA256 and PRF: SHA384 183s [gnutls] (3) ASSERT: ../../../lib/nettle/mpi.c[wrap_nettle_mpi_print]:59 183s [gnutls] (4) HSK[0xf4950000]: CERTIFICATE VERIFY was queued [392 bytes] 183s [gnutls] (4) HSK[0xf4950000]: sending finished 183s [gnutls] (4) HSK[0xf4950000]: FINISHED was queued [52 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 22 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 1 and length: 44 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 1155 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] Handshake(22) in epoch 1 and length: 1177 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 392 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[3] Handshake(22) in epoch 1 and length: 414 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 52 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[4] Handshake(22) in epoch 1 and length: 74 183s [gnutls] (3) ASSERT: ../../lib/constate.c[_gnutls_epoch_get]:965 183s [gnutls] (5) REC[0xf4950000]: Allocating epoch #2 183s [gnutls] (4) HSK[0xf4950000]: unauthenticated session eligible for early start 183s [gnutls] (5) REC[0xf4950000]: Initializing epoch #2 183s [gnutls] (5) REC[0xf4950000]: Epoch #2 ready 183s [gnutls] (4) HSK[0xf4950000]: TLS 1.3 set write key with cipher suite: GNUTLS_AES_256_GCM_SHA384 183s [gnutls] (4) HSK[0xf4950000]: switching early to application traffic keys 183s [gnutls] (4) HSK[0xf4950000]: NEW SESSION TICKET was queued [251 bytes] 183s [gnutls] (4) HSK[0xf4950000]: NEW SESSION TICKET was queued [251 bytes] 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 251 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[1] Handshake(22) in epoch 2 and length: 273 183s [gnutls] (5) REC[0xf4950000]: Preparing Packet Handshake(22) with length: 251 and min pad: 0 183s [gnutls] (5) REC[0xf4950000]: Sent Packet[2] Handshake(22) in epoch 2 and length: 273 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/tls13/finished.c[_gnutls13_recv_finished]:91 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[get_last_packet]:1138 183s [gnutls] (5) REC[0xf4950000]: SSL 3.3 ChangeCipherSpec packet received. Epoch 1, length: 1 183s [gnutls] (5) REC[0xf4950000]: Expected Packet Handshake(22) 183s [gnutls] (5) REC[0xf4950000]: Received Packet ChangeCipherSpec(20) with length: 1 183s [gnutls] (3) ASSERT: ../../lib/buffers.c[_gnutls_io_read_buffered]:568 183s [gnutls] (3) ASSERT: ../../lib/tls13/finished.c[_gnutls13_recv_finished]:91 183s [io ] => connection to '127.0.0.1#54437' closed by peer (connection reset by peer) 183s [gnutls] (5) REC[0xf4950000]: Start of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: Epoch #0 freed 183s [gnutls] (5) REC[0xf4950000]: End of epoch cleanup 183s [gnutls] (5) REC[0xf4950000]: Epoch #1 freed 183s [gnutls] (5) REC[0xf4950000]: Epoch #2 freed 183s > 183s > autopkgtest [00:54:56]: test roundtrip: -----------------------] 187s autopkgtest [00:55:00]: test roundtrip: - - - - - - - - - - results - - - - - - - - - - 187s roundtrip PASS 196s autopkgtest [00:55:09]: @@@@@@@@@@@@@@@@@@@@ summary 196s roundtrip PASS