0s autopkgtest [06:38:18]: starting date and time: 2026-02-05 06:38:18+0000 0s autopkgtest [06:38:18]: git checkout: 4b346b80 nova: make wait_reboot return success even when a no-op 0s autopkgtest [06:38:18]: host juju-7f2275-prod-proposed-migration-environment-20; command line: /home/ubuntu/autopkgtest/runner/autopkgtest --output-dir /tmp/autopkgtest-work.f31oibrz/out --timeout-copy=6000 --needs-internet=try --setup-commands /home/ubuntu/autopkgtest-cloud/worker-config-production/setup-canonical.sh --apt-pocket=proposed=src:glibc --apt-upgrade libreswan --timeout-short=300 --timeout-copy=20000 --timeout-build=20000 --env=ADT_TEST_TRIGGERS=glibc/2.42-2ubuntu5 -- ssh -s /home/ubuntu/autopkgtest/ssh-setup/nova -- --flavor autopkgtest-cpu2-ram4-disk20-ppc64el --security-groups autopkgtest-juju-7f2275-prod-proposed-migration-environment-20@sto01-ppc64el-17.secgroup --name adt-resolute-ppc64el-libreswan-20260205-063818-juju-7f2275-prod-proposed-migration-environment-20-94cde7f0-e021-4452-8a3f-2c41a8d30c17 --image adt/ubuntu-resolute-ppc64el-server --keyname testbed-juju-7f2275-prod-proposed-migration-environment-20 --net-id=net_prod-autopkgtest-workers-ppc64el -e TERM=linux --mirror=http://ftpmaster.internal/ubuntu/ 3s Creating nova instance adt-resolute-ppc64el-libreswan-20260205-063818-juju-7f2275-prod-proposed-migration-environment-20-94cde7f0-e021-4452-8a3f-2c41a8d30c17 from image adt/ubuntu-resolute-ppc64el-server-20260205.img (UUID f866c950-0b62-4023-bac6-0f13279e15ed)... 58s autopkgtest [06:39:16]: testbed dpkg architecture: ppc64el 58s autopkgtest [06:39:16]: testbed apt version: 3.1.14 58s autopkgtest [06:39:16]: @@@@@@@@@@@@@@@@@@@@ test bed setup 58s autopkgtest [06:39:16]: testbed release detected to be: None 59s autopkgtest [06:39:17]: updating testbed package index (apt update) 60s Get:1 http://ftpmaster.internal/ubuntu resolute-proposed InRelease [124 kB] 60s Hit:2 http://ftpmaster.internal/ubuntu resolute InRelease 60s Hit:3 http://ftpmaster.internal/ubuntu resolute-updates InRelease 60s Hit:4 http://ftpmaster.internal/ubuntu resolute-security InRelease 60s Get:5 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse Sources [35.4 kB] 60s Get:6 http://ftpmaster.internal/ubuntu resolute-proposed/universe Sources [1719 kB] 61s Get:7 http://ftpmaster.internal/ubuntu resolute-proposed/main Sources [228 kB] 61s Get:8 http://ftpmaster.internal/ubuntu resolute-proposed/restricted Sources [5260 B] 61s Get:9 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el Packages [261 kB] 61s Get:10 http://ftpmaster.internal/ubuntu resolute-proposed/universe ppc64el Packages [1514 kB] 61s Get:11 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse ppc64el Packages [21.9 kB] 61s Fetched 3910 kB in 2s (2479 kB/s) 62s Reading package lists... 63s Hit:1 http://ftpmaster.internal/ubuntu resolute-proposed InRelease 63s Hit:2 http://ftpmaster.internal/ubuntu resolute InRelease 63s Hit:3 http://ftpmaster.internal/ubuntu resolute-updates InRelease 63s Hit:4 http://ftpmaster.internal/ubuntu resolute-security InRelease 64s Reading package lists... 64s Reading package lists... 64s Building dependency tree... 64s Reading state information... 64s Calculating upgrade... 64s The following packages will be upgraded: 64s libc-bin libc-gconv-modules-extra libc6 locales pollinate 64s python3-referencing sed 64s 7 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 64s Need to get 8612 kB of archives. 64s After this operation, 0 B of additional disk space will be used. 64s Get:1 http://ftpmaster.internal/ubuntu resolute/main ppc64el sed ppc64el 4.9-2build3 [211 kB] 64s Get:2 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc-gconv-modules-extra ppc64el 2.42-2ubuntu5 [1448 kB] 65s Get:3 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc6 ppc64el 2.42-2ubuntu5 [1913 kB] 65s Get:4 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc-bin ppc64el 2.42-2ubuntu5 [748 kB] 65s Get:5 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el locales all 2.42-2ubuntu5 [4255 kB] 65s Get:6 http://ftpmaster.internal/ubuntu resolute/main ppc64el pollinate all 4.33-4ubuntu5 [14.0 kB] 65s Get:7 http://ftpmaster.internal/ubuntu resolute/main ppc64el python3-referencing all 0.36.2-1ubuntu2 [22.2 kB] 65s dpkg-preconfigure: unable to re-open stdin: No such file or directory 65s Fetched 8612 kB in 1s (15.3 MB/s) 66s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 66s Preparing to unpack .../sed_4.9-2build3_ppc64el.deb ... 66s Unpacking sed (4.9-2build3) over (4.9-2build2) ... 66s Setting up sed (4.9-2build3) ... 66s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 66s Preparing to unpack .../libc-gconv-modules-extra_2.42-2ubuntu5_ppc64el.deb ... 66s Unpacking libc-gconv-modules-extra:ppc64el (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 68s Setting up libc-gconv-modules-extra:ppc64el (2.42-2ubuntu5) ... 68s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 68s Preparing to unpack .../libc6_2.42-2ubuntu5_ppc64el.deb ... 68s Unpacking libc6:ppc64el (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 68s Setting up libc6:ppc64el (2.42-2ubuntu5) ... 69s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 69s Preparing to unpack .../libc-bin_2.42-2ubuntu5_ppc64el.deb ... 69s Unpacking libc-bin (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 69s Setting up libc-bin (2.42-2ubuntu5) ... 69s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 69s Preparing to unpack .../locales_2.42-2ubuntu5_all.deb ... 70s Unpacking locales (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 70s Preparing to unpack .../pollinate_4.33-4ubuntu5_all.deb ... 70s Unpacking pollinate (4.33-4ubuntu5) over (4.33-4ubuntu4) ... 70s Preparing to unpack .../python3-referencing_0.36.2-1ubuntu2_all.deb ... 70s Unpacking python3-referencing (0.36.2-1ubuntu2) over (0.36.2-1ubuntu1) ... 70s Setting up locales (2.42-2ubuntu5) ... 71s Generating locales (this might take a while)... 72s en_US.UTF-8... done 72s Generation complete. 72s Setting up pollinate (4.33-4ubuntu5) ... 83s Setting up python3-referencing (0.36.2-1ubuntu2) ... 84s Processing triggers for man-db (2.13.1-1) ... 88s Processing triggers for install-info (7.2-5) ... 88s Processing triggers for systemd (259-1ubuntu3) ... 89s autopkgtest [06:39:47]: upgrading testbed (apt dist-upgrade and autopurge) 89s Reading package lists... 89s Building dependency tree... 89s Reading state information... 89s Calculating upgrade... 89s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 90s Reading package lists... 90s Building dependency tree... 90s Reading state information... 90s Solving dependencies... 90s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 90s autopkgtest [06:39:48]: rebooting testbed after setup commands that affected boot 162s autopkgtest [06:41:00]: testbed running kernel: Linux 6.18.0-9-generic #9-Ubuntu SMP PREEMPT_DYNAMIC Mon Jan 12 16:45:54 UTC 2026 166s autopkgtest [06:41:04]: @@@@@@@@@@@@@@@@@@@@ apt-source libreswan 168s Get:1 http://ftpmaster.internal/ubuntu resolute/universe libreswan 5.2-2.2ubuntu1 (dsc) [2735 B] 168s Get:2 http://ftpmaster.internal/ubuntu resolute/universe libreswan 5.2-2.2ubuntu1 (tar) [4132 kB] 168s Get:3 http://ftpmaster.internal/ubuntu resolute/universe libreswan 5.2-2.2ubuntu1 (asc) [862 B] 168s Get:4 http://ftpmaster.internal/ubuntu resolute/universe libreswan 5.2-2.2ubuntu1 (diff) [16.7 kB] 169s gpgv: Signature made Thu Jul 31 14:30:12 2025 UTC 169s gpgv: using RSA key 25E3FF2D7F469DBE7D0D4E50AFCFEC8E669CE1C2 169s gpgv: Can't check signature: No public key 169s dpkg-source: warning: cannot verify inline signature for ./libreswan_5.2-2.2ubuntu1.dsc: no acceptable signature found 170s autopkgtest [06:41:08]: testing package libreswan version 5.2-2.2ubuntu1 171s autopkgtest [06:41:09]: build not needed 188s autopkgtest [06:41:26]: test opportunistic: preparing testbed 189s Reading package lists... 189s Building dependency tree... 189s Reading state information... 189s Solving dependencies... 189s The following NEW packages will be installed: 189s dns-root-data libevent-2.1-7t64 libevent-pthreads-2.1-7t64 libldns3t64 189s libnss3-tools libreswan libunbound8 189s 0 upgraded, 7 newly installed, 0 to remove and 0 not upgraded. 189s Need to get 3283 kB of archives. 189s After this operation, 15.4 MB of additional disk space will be used. 189s Get:1 http://ftpmaster.internal/ubuntu resolute/main ppc64el dns-root-data all 2025080400build1 [6022 B] 189s Get:2 http://ftpmaster.internal/ubuntu resolute/main ppc64el libnss3-tools ppc64el 2:3.120-1 [744 kB] 189s Get:3 http://ftpmaster.internal/ubuntu resolute/main ppc64el libevent-pthreads-2.1-7t64 ppc64el 2.1.12-stable-10build1 [8140 B] 189s Get:4 http://ftpmaster.internal/ubuntu resolute/universe ppc64el libldns3t64 ppc64el 1.8.4-2build1 [200 kB] 189s Get:5 http://ftpmaster.internal/ubuntu resolute/main ppc64el libevent-2.1-7t64 ppc64el 2.1.12-stable-10build1 [172 kB] 189s Get:6 http://ftpmaster.internal/ubuntu resolute/main ppc64el libunbound8 ppc64el 1.24.2-1ubuntu1 [576 kB] 189s Get:7 http://ftpmaster.internal/ubuntu resolute/universe ppc64el libreswan ppc64el 5.2-2.2ubuntu1 [1577 kB] 190s Fetched 3283 kB in 1s (5794 kB/s) 190s Selecting previously unselected package dns-root-data. 190s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 190s Preparing to unpack .../0-dns-root-data_2025080400build1_all.deb ... 190s Unpacking dns-root-data (2025080400build1) ... 190s Selecting previously unselected package libnss3-tools. 190s Preparing to unpack .../1-libnss3-tools_2%3a3.120-1_ppc64el.deb ... 190s Unpacking libnss3-tools (2:3.120-1) ... 190s Selecting previously unselected package libevent-pthreads-2.1-7t64:ppc64el. 190s Preparing to unpack .../2-libevent-pthreads-2.1-7t64_2.1.12-stable-10build1_ppc64el.deb ... 190s Unpacking libevent-pthreads-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 190s Selecting previously unselected package libldns3t64:ppc64el. 190s Preparing to unpack .../3-libldns3t64_1.8.4-2build1_ppc64el.deb ... 190s Unpacking libldns3t64:ppc64el (1.8.4-2build1) ... 190s Selecting previously unselected package libevent-2.1-7t64:ppc64el. 190s Preparing to unpack .../4-libevent-2.1-7t64_2.1.12-stable-10build1_ppc64el.deb ... 190s Unpacking libevent-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 190s Selecting previously unselected package libunbound8:ppc64el. 190s Preparing to unpack .../5-libunbound8_1.24.2-1ubuntu1_ppc64el.deb ... 190s Unpacking libunbound8:ppc64el (1.24.2-1ubuntu1) ... 190s Selecting previously unselected package libreswan. 190s Preparing to unpack .../6-libreswan_5.2-2.2ubuntu1_ppc64el.deb ... 190s Unpacking libreswan (5.2-2.2ubuntu1) ... 190s Setting up libldns3t64:ppc64el (1.8.4-2build1) ... 190s Setting up libevent-pthreads-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 190s Setting up libevent-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 190s Setting up dns-root-data (2025080400build1) ... 190s Setting up libunbound8:ppc64el (1.24.2-1ubuntu1) ... 190s Setting up libnss3-tools (2:3.120-1) ... 190s Setting up libreswan (5.2-2.2ubuntu1) ... 191s ipsec.service is a disabled or a static unit, not starting it. 191s Processing triggers for man-db (2.13.1-1) ... 192s Processing triggers for libc-bin (2.42-2ubuntu5) ... 194s autopkgtest [06:41:32]: test opportunistic: [----------------------- 194s ping: oe.libreswan.org: No address associated with hostname 194s autopkgtest [06:41:32]: test opportunistic: -----------------------] 195s opportunistic SKIP exit status 77 and marked as skippable 195s autopkgtest [06:41:33]: test opportunistic: - - - - - - - - - - results - - - - - - - - - - 195s autopkgtest [06:41:33]: test cryptocheck: preparing testbed 232s Creating nova instance adt-resolute-ppc64el-libreswan-20260205-063818-juju-7f2275-prod-proposed-migration-environment-20-94cde7f0-e021-4452-8a3f-2c41a8d30c17 from image adt/ubuntu-resolute-ppc64el-server-20260205.img (UUID f866c950-0b62-4023-bac6-0f13279e15ed)... 304s autopkgtest [06:43:22]: testbed dpkg architecture: ppc64el 304s autopkgtest [06:43:22]: testbed apt version: 3.1.14 305s autopkgtest [06:43:23]: @@@@@@@@@@@@@@@@@@@@ test bed setup 305s autopkgtest [06:43:23]: testbed release detected to be: resolute 305s autopkgtest [06:43:23]: updating testbed package index (apt update) 306s Get:1 http://ftpmaster.internal/ubuntu resolute-proposed InRelease [124 kB] 306s Hit:2 http://ftpmaster.internal/ubuntu resolute InRelease 306s Hit:3 http://ftpmaster.internal/ubuntu resolute-updates InRelease 306s Hit:4 http://ftpmaster.internal/ubuntu resolute-security InRelease 306s Get:5 http://ftpmaster.internal/ubuntu resolute-proposed/main Sources [228 kB] 306s Get:6 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse Sources [35.4 kB] 306s Get:7 http://ftpmaster.internal/ubuntu resolute-proposed/universe Sources [1719 kB] 306s Get:8 http://ftpmaster.internal/ubuntu resolute-proposed/restricted Sources [5260 B] 306s Get:9 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el Packages [261 kB] 306s Get:10 http://ftpmaster.internal/ubuntu resolute-proposed/universe ppc64el Packages [1514 kB] 306s Get:11 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse ppc64el Packages [21.9 kB] 307s Fetched 3910 kB in 1s (4008 kB/s) 307s Reading package lists... 308s Hit:1 http://ftpmaster.internal/ubuntu resolute-proposed InRelease 308s Hit:2 http://ftpmaster.internal/ubuntu resolute InRelease 308s Hit:3 http://ftpmaster.internal/ubuntu resolute-updates InRelease 308s Hit:4 http://ftpmaster.internal/ubuntu resolute-security InRelease 309s Reading package lists... 309s Reading package lists... 309s Building dependency tree... 309s Reading state information... 309s Calculating upgrade... 309s The following packages will be upgraded: 309s libc-bin libc-gconv-modules-extra libc6 locales pollinate 309s python3-referencing sed 309s 7 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 309s Need to get 8612 kB of archives. 309s After this operation, 0 B of additional disk space will be used. 309s Get:1 http://ftpmaster.internal/ubuntu resolute/main ppc64el sed ppc64el 4.9-2build3 [211 kB] 310s Get:2 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc-gconv-modules-extra ppc64el 2.42-2ubuntu5 [1448 kB] 310s Get:3 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc6 ppc64el 2.42-2ubuntu5 [1913 kB] 310s Get:4 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc-bin ppc64el 2.42-2ubuntu5 [748 kB] 310s Get:5 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el locales all 2.42-2ubuntu5 [4255 kB] 311s Get:6 http://ftpmaster.internal/ubuntu resolute/main ppc64el pollinate all 4.33-4ubuntu5 [14.0 kB] 311s Get:7 http://ftpmaster.internal/ubuntu resolute/main ppc64el python3-referencing all 0.36.2-1ubuntu2 [22.2 kB] 311s dpkg-preconfigure: unable to re-open stdin: No such file or directory 311s Fetched 8612 kB in 1s (7819 kB/s) 311s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 311s Preparing to unpack .../sed_4.9-2build3_ppc64el.deb ... 311s Unpacking sed (4.9-2build3) over (4.9-2build2) ... 312s Setting up sed (4.9-2build3) ... 312s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 312s Preparing to unpack .../libc-gconv-modules-extra_2.42-2ubuntu5_ppc64el.deb ... 312s Unpacking libc-gconv-modules-extra:ppc64el (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 312s Setting up libc-gconv-modules-extra:ppc64el (2.42-2ubuntu5) ... 312s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 312s Preparing to unpack .../libc6_2.42-2ubuntu5_ppc64el.deb ... 312s Unpacking libc6:ppc64el (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 313s Setting up libc6:ppc64el (2.42-2ubuntu5) ... 313s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 313s Preparing to unpack .../libc-bin_2.42-2ubuntu5_ppc64el.deb ... 313s Unpacking libc-bin (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 313s Setting up libc-bin (2.42-2ubuntu5) ... 313s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 313s Preparing to unpack .../locales_2.42-2ubuntu5_all.deb ... 313s Unpacking locales (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 314s Preparing to unpack .../pollinate_4.33-4ubuntu5_all.deb ... 314s Unpacking pollinate (4.33-4ubuntu5) over (4.33-4ubuntu4) ... 314s Preparing to unpack .../python3-referencing_0.36.2-1ubuntu2_all.deb ... 314s Unpacking python3-referencing (0.36.2-1ubuntu2) over (0.36.2-1ubuntu1) ... 314s Setting up locales (2.42-2ubuntu5) ... 315s Generating locales (this might take a while)... 316s en_US.UTF-8... done 316s Generation complete. 316s Setting up pollinate (4.33-4ubuntu5) ... 327s Setting up python3-referencing (0.36.2-1ubuntu2) ... 327s Processing triggers for man-db (2.13.1-1) ... 329s Processing triggers for install-info (7.2-5) ... 329s Processing triggers for systemd (259-1ubuntu3) ... 330s autopkgtest [06:43:48]: upgrading testbed (apt dist-upgrade and autopurge) 330s Reading package lists... 330s Building dependency tree... 330s Reading state information... 330s Calculating upgrade... 330s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 331s Reading package lists... 331s Building dependency tree... 331s Reading state information... 331s Solving dependencies... 331s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 331s autopkgtest [06:43:49]: rebooting testbed after setup commands that affected boot 373s Reading package lists... 373s Building dependency tree... 373s Reading state information... 373s Solving dependencies... 373s The following NEW packages will be installed: 373s dns-root-data libevent-2.1-7t64 libevent-pthreads-2.1-7t64 libldns3t64 373s libnss3-tools libreswan libunbound8 373s 0 upgraded, 7 newly installed, 0 to remove and 0 not upgraded. 373s Need to get 3283 kB of archives. 373s After this operation, 15.4 MB of additional disk space will be used. 373s Get:1 http://ftpmaster.internal/ubuntu resolute/main ppc64el dns-root-data all 2025080400build1 [6022 B] 373s Get:2 http://ftpmaster.internal/ubuntu resolute/main ppc64el libnss3-tools ppc64el 2:3.120-1 [744 kB] 374s Get:3 http://ftpmaster.internal/ubuntu resolute/main ppc64el libevent-pthreads-2.1-7t64 ppc64el 2.1.12-stable-10build1 [8140 B] 374s Get:4 http://ftpmaster.internal/ubuntu resolute/universe ppc64el libldns3t64 ppc64el 1.8.4-2build1 [200 kB] 374s Get:5 http://ftpmaster.internal/ubuntu resolute/main ppc64el libevent-2.1-7t64 ppc64el 2.1.12-stable-10build1 [172 kB] 374s Get:6 http://ftpmaster.internal/ubuntu resolute/main ppc64el libunbound8 ppc64el 1.24.2-1ubuntu1 [576 kB] 374s Get:7 http://ftpmaster.internal/ubuntu resolute/universe ppc64el libreswan ppc64el 5.2-2.2ubuntu1 [1577 kB] 374s Fetched 3283 kB in 1s (6543 kB/s) 374s Selecting previously unselected package dns-root-data. 374s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 374s Preparing to unpack .../0-dns-root-data_2025080400build1_all.deb ... 374s Unpacking dns-root-data (2025080400build1) ... 374s Selecting previously unselected package libnss3-tools. 374s Preparing to unpack .../1-libnss3-tools_2%3a3.120-1_ppc64el.deb ... 374s Unpacking libnss3-tools (2:3.120-1) ... 374s Selecting previously unselected package libevent-pthreads-2.1-7t64:ppc64el. 374s Preparing to unpack .../2-libevent-pthreads-2.1-7t64_2.1.12-stable-10build1_ppc64el.deb ... 374s Unpacking libevent-pthreads-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 374s Selecting previously unselected package libldns3t64:ppc64el. 374s Preparing to unpack .../3-libldns3t64_1.8.4-2build1_ppc64el.deb ... 374s Unpacking libldns3t64:ppc64el (1.8.4-2build1) ... 374s Selecting previously unselected package libevent-2.1-7t64:ppc64el. 374s Preparing to unpack .../4-libevent-2.1-7t64_2.1.12-stable-10build1_ppc64el.deb ... 374s Unpacking libevent-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 375s Selecting previously unselected package libunbound8:ppc64el. 375s Preparing to unpack .../5-libunbound8_1.24.2-1ubuntu1_ppc64el.deb ... 375s Unpacking libunbound8:ppc64el (1.24.2-1ubuntu1) ... 375s Selecting previously unselected package libreswan. 375s Preparing to unpack .../6-libreswan_5.2-2.2ubuntu1_ppc64el.deb ... 375s Unpacking libreswan (5.2-2.2ubuntu1) ... 375s Setting up libldns3t64:ppc64el (1.8.4-2build1) ... 375s Setting up libevent-pthreads-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 375s Setting up libevent-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 375s Setting up dns-root-data (2025080400build1) ... 375s Setting up libunbound8:ppc64el (1.24.2-1ubuntu1) ... 375s Setting up libnss3-tools (2:3.120-1) ... 375s Setting up libreswan (5.2-2.2ubuntu1) ... 375s ipsec.service is a disabled or a static unit, not starting it. 375s Processing triggers for man-db (2.13.1-1) ... 377s Processing triggers for libc-bin (2.42-2ubuntu5) ... 427s autopkgtest [06:45:25]: test cryptocheck: [----------------------- 427s Testing installed binary: /usr/libexec/ipsec/algparse 427s Testing installed binary: /usr/libexec/ipsec/pluto 427s testing -tp 427s ipsec algparse: Encryption algorithms: 427s ipsec algparse: AES_CCM_16 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm, aes_ccm_c 427s ipsec algparse: AES_CCM_12 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm_b 427s ipsec algparse: AES_CCM_8 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm_a 427s ipsec algparse: 3DES_CBC [*192] IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CBC) 3des 427s ipsec algparse: CAMELLIA_CTR {256,192,*128} IKEv1: ESP IKEv2: ESP 427s ipsec algparse: CAMELLIA_CBC {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP NSS(CBC) camellia 427s ipsec algparse: AES_GCM_16 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm, aes_gcm_c 427s ipsec algparse: AES_GCM_12 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm_b 427s ipsec algparse: AES_GCM_8 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm_a 427s ipsec algparse: AES_CTR {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CTR) aesctr 427s ipsec algparse: AES_CBC {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CBC) aes 427s ipsec algparse: NULL_AUTH_AES_GMAC {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_gmac 427s ipsec algparse: NULL [] IKEv1: ESP IKEv2: ESP NULL 427s ipsec algparse: CHACHA20_POLY1305 [*256] IKEv1: IKEv2: IKE ESP NSS(AEAD) chacha20poly1305 427s ipsec algparse: Hash algorithms: 427s ipsec algparse: MD5 IKEv1: IKE IKEv2: NSS 427s ipsec algparse: SHA1 IKEv1: IKE IKEv2: IKE FIPS NSS sha 427s ipsec algparse: SHA2_256 IKEv1: IKE IKEv2: IKE FIPS NSS sha2, sha256 427s ipsec algparse: SHA2_384 IKEv1: IKE IKEv2: IKE FIPS NSS sha384 427s ipsec algparse: SHA2_512 IKEv1: IKE IKEv2: IKE FIPS NSS sha512 427s ipsec algparse: IDENTITY IKEv1: IKEv2: FIPS 427s ipsec algparse: PRF algorithms: 427s ipsec algparse: HMAC_MD5 IKEv1: IKE IKEv2: IKE NSS md5 427s ipsec algparse: HMAC_SHA1 IKEv1: IKE IKEv2: IKE FIPS NSS sha, sha1 427s ipsec algparse: HMAC_SHA2_256 IKEv1: IKE IKEv2: IKE FIPS NSS sha2, sha256, sha2_256 427s ipsec algparse: HMAC_SHA2_384 IKEv1: IKE IKEv2: IKE FIPS NSS sha384, sha2_384 427s ipsec algparse: HMAC_SHA2_512 IKEv1: IKE IKEv2: IKE FIPS NSS sha512, sha2_512 427s ipsec algparse: AES_XCBC IKEv1: IKEv2: IKE native(XCBC) aes128_xcbc 427s ipsec algparse: Integrity algorithms: 427s ipsec algparse: HMAC_MD5_96 IKEv1: IKE ESP AH IKEv2: IKE ESP AH NSS md5, hmac_md5 427s ipsec algparse: HMAC_SHA1_96 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha, sha1, sha1_96, hmac_sha1 427s ipsec algparse: HMAC_SHA2_512_256 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha512, sha2_512, sha2_512_256, hmac_sha2_512 427s ipsec algparse: HMAC_SHA2_384_192 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha384, sha2_384, sha2_384_192, hmac_sha2_384 427s ipsec algparse: HMAC_SHA2_256_128 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha2, sha256, sha2_256, sha2_256_128, hmac_sha2_256 427s ipsec algparse: HMAC_SHA2_256_TRUNCBUG IKEv1: ESP AH IKEv2: AH 427s ipsec algparse: AES_XCBC_96 IKEv1: ESP AH IKEv2: IKE ESP AH native(XCBC) aes_xcbc, aes128_xcbc, aes128_xcbc_96 427s ipsec algparse: AES_CMAC_96 IKEv1: ESP AH IKEv2: ESP AH FIPS aes_cmac 427s ipsec algparse: NONE IKEv1: ESP IKEv2: IKE ESP FIPS null 427s ipsec algparse: DH algorithms: 427s ipsec algparse: NONE IKEv1: IKEv2: IKE ESP AH FIPS NSS(MODP) null, dh0 427s ipsec algparse: MODP1536 IKEv1: IKE ESP AH IKEv2: IKE ESP AH NSS(MODP) dh5 427s ipsec algparse: MODP2048 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh14 427s ipsec algparse: MODP3072 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh15 427s ipsec algparse: MODP4096 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh16 427s ipsec algparse: MODP6144 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh17 427s ipsec algparse: MODP8192 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh18 427s ipsec algparse: DH19 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_256, ecp256 427s ipsec algparse: DH20 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_384, ecp384 427s ipsec algparse: DH21 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_521, ecp521 427s ipsec algparse: DH31 IKEv1: IKE IKEv2: IKE ESP AH NSS(ECP) curve25519 427s ipsec algparse: IPCOMP algorithms: 427s ipsec algparse: DEFLATE IKEv1: ESP AH IKEv2: ESP AH FIPS 427s ipsec algparse: LZS IKEv1: IKEv2: ESP AH FIPS 427s ipsec algparse: LZJH IKEv1: IKEv2: ESP AH FIPS 427s | parsing 'AES_GCM_16_256,AES_GCM_16_128,CHACHA20_POLY1305,AES_CBC_256,AES_CBC_128' for ESP 427s | proposal: 'AES_GCM_16_256' 427s | token: '' '' "AES_GCM_16_256" '' 427s | token: '' "AES_GCM_16_256" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'AES_GCM_16_256' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_256] 427s | appending ESP integrity algorithm NONE[_0] 427s | proposal: 'AES_GCM_16_128' 427s | token: '' '' "AES_GCM_16_128" '' 427s | token: '' "AES_GCM_16_128" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'AES_GCM_16_128' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_128] 427s | appending ESP integrity algorithm NONE[_0] 427s | proposal: 'CHACHA20_POLY1305' 427s | token: '' '' "CHACHA20_POLY1305" '' 427s | token: '' "CHACHA20_POLY1305" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm CHACHA20_POLY1305[_0] 427s | appending ESP integrity algorithm NONE[_0] 427s | proposal: 'AES_CBC_256' 427s | token: '' '' "AES_CBC_256" '' 427s | token: '' "AES_CBC_256" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'AES_CBC_256' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | proposal: 'AES_CBC_128' 427s algparse -v2 'esp' (expect SUCCESS) 427s | token: '' '' "AES_CBC_128" '' 427s | token: '' "AES_CBC_128" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'AES_CBC_128' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing '' for ESP 427s | parsing 'aes' for ESP 427s | proposal: 'aes' 427s | token: '' '' "aes" '' 427s | token: '' "aes" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes;modp2048' for ESP 427s | proposal: 'aes;modp2048' 427s | token: '' '' "aes" ';' 427s | token: '' "aes" ';' "modp2048" '' 427s | token: ';' "modp2048" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing dh: 427s | appending ESP DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s AES_GCM_16_256-NONE 427s AES_GCM_16_128-NONE 427s CHACHA20_POLY1305-NONE 427s AES_CBC_256-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s AES_CBC_128-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=' (expect ERROR) 427s ERROR: ESP proposal is empty 427s algparse -v2 'esp=aes' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes;modp2048' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes-sha1' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes-sha1' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes-sha1-modp2048' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes-128-sha1' (expect SUCCESS) 427s AES_CBC_128-HMAC_SHA1_96 427s algparse -v2 'esp=aes-128-sha1' (expect SUCCESS) 427s AES_CBC_128-HMAC_SHA1_96 427s algparse -v2 'esp=aes-128-sha1-modp2048' (expect SUCCESS) 427s AES_CBC_128-HMAC_SHA1_96 427s algparse -v2 'esp=aes-128' (expect SUCCESS) 427s AES_CBC_128-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes_gcm_a-128-null' (expect SUCCESS) 427s AES_GCM_8_128-NONE 427s algparse -v2 'esp=3des-sha1;modp1024' (expect ERROR) 427s ERROR: ESP DH algorithm 'modp1024' is not supported 427s algparse -v2 'esp=3des-sha1;modp1536' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=3des-sha1;modp2048' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=3des-sha1;dh21' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=3des-sha1;ecp_521' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=3des-sha1;dh23' (expect ERROR) 427s ERROR: ESP DH algorithm 'dh23' is not supported 427s algparse -v2 'esp=3des-sha1;dh24' (expect ERROR) 427s ERROR: ESP DH algorithm 'dh24' is not supported 427s algparse -v2 'esp=3des-sha1' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=null-sha1' (expect SUCCESS) 427s NULL-HMAC_SHA1_96 427s algparse -v2 'esp=aes_cbc' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes-sha' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes-sha1' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes128-sha1' (expect SUCCESS) 427s AES_CBC_128-HMAC_SHA1_96 427s algparse -v2 'esp=aes-sha2' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'esp=aes-sha256' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'esp=aes-sha384' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_384_192 427s algparse -v2 'esp=aes-sha512' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_512_256 427s algparse -v2 'esp=aes128-aes_xcbc' (expect SUCCESS) 427s AES_CBC_128-AES_XCBC_96 427s algparse -v2 'esp=aes192-sha1' (expect SUCCESS) 427s AES_CBC_192-HMAC_SHA1_96 427s algparse -v2 'esp=aes256-sha1' (expect SUCCESS) 427s AES_CBC_256-HMAC_SHA1_96 427s algparse -v2 'esp=aes256-sha' (expect SUCCESS) 427s AES_CBC_256-HMAC_SHA1_96 427s algparse -v2 'esp=aes256-sha2' (expect SUCCESS) 427s AES_CBC_256-HMAC_SHA2_256_128 427s algparse -v2 'esp=aes256-sha2_256' (expect SUCCESS) 427s AES_CBC_256-HMAC_SHA2_256_128 427s algparse -v2 'esp=aes256-sha2_384' (expect SUCCESS) 427s AES_CBC_256-HMAC_SHA2_384_192 427s algparse -v2 'esp=aes256-sha2_512' (expect SUCCESS) 427s AES_CBC_256-HMAC_SHA2_512_256 427s algparse -v2 'esp=camellia' (expect SUCCESS) 427s CAMELLIA_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=camellia128' (expect SUCCESS) 427s CAMELLIA_CBC_128-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=camellia192' (expect SUCCESS) 427s CAMELLIA_CBC_192-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=camellia256' (expect SUCCESS) 427s CAMELLIA_CBC_256-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes_ccm' (expect SUCCESS) 427s AES_CCM_16-NONE 427s algparse -v2 'esp=aes_ccm_a-128-null' (expect SUCCESS) 427s AES_CCM_8_128-NONE 427s algparse -v2 'esp=aes_ccm_a-192-null' (expect SUCCESS) 427s AES_CCM_8_192-NONE 427s algparse -v2 'esp=aes_ccm_a-256-null' (expect SUCCESS) 427s AES_CCM_8_256-NONE 427s algparse -v2 'esp=aes_ccm_b-128-null' (expect SUCCESS) 427s AES_CCM_12_128-NONE 427s algparse -v2 'esp=aes_ccm_b-192-null' (expect SUCCESS) 427s AES_CCM_12_192-NONE 427s algparse -v2 'esp=aes_ccm_b-256-null' (expect SUCCESS) 427s AES_CCM_12_256-NONE 427s algparse -v2 'esp=aes_ccm_c-128-null' (expect SUCCESS) 427s AES_CCM_16_128-NONE 427s algparse -v2 'esp=aes_ccm_c-192-null' (expect SUCCESS) 427s AES_CCM_16_192-NONE 427s algparse -v2 'esp=aes_ccm_c-256-null' (expect SUCCESS) 427s AES_CCM_16_256-NONE 427s algparse -v2 'esp=aes_gcm' (expect SUCCESS) 427s AES_GCM_16-NONE 427s algparse -v2 'esp=aes_gcm_a-128-null' (expect SUCCESS) 427s AES_GCM_8_128-NONE 427s algparse -v2 'esp=aes_gcm_a-192-null' (expect SUCCESS) 427s AES_GCM_8_192-NONE 427s algparse -v2 'esp=aes_gcm_a-256-null' (expect SUCCESS) 427s AES_GCM_8_256-NONE 427s algparse -v2 'esp=aes_gcm_b-128-null' (expect SUCCESS) 427s AES_GCM_12_128-NONE 427s algparse -v2 'esp=aes_gcm_b-192-null' (expect SUCCESS) 427s AES_GCM_12_192-NONE 427s algparse -v2 'esp=aes_gcm_b-256-null' (expect SUCCESS) 427s AES_GCM_12_256-NONE 427s algparse -v2 'esp=aes_gcm_c-128-null' (expect SUCCESS) 427s AES_GCM_16_128-NONE 427s algparse -v2 'esp=aes_gcm_c-192-null' (expect SUCCESS) 427s AES_GCM_16_192-NONE 427s algparse -v2 'esp=aes_gcm_c-256-null' (expect SUCCESS) 427s AES_GCM_16_256-NONE 427s algparse -v2 'esp=aes_ccm_a-null' (expect SUCCESS) 427s AES_CCM_8-NONE 427s algparse -v2 'esp=aes_ccm_b-null' (expect SUCCESS) 427s AES_CCM_12-NONE 427s algparse -v2 'esp=aes_ccm_c-null' (expect SUCCESS) 427s AES_CCM_16-NONE 427s algparse -v2 'esp=aes_gcm_a-null' (expect SUCCESS) 427s AES_GCM_8-NONE 427s algparse -v2 'esp=aes_gcm_b-null' (expect SUCCESS) 427s AES_GCM_12-NONE 427s algparse -v2 'esp=aes_gcm_c-null' (expect SUCCESS) 427s AES_GCM_16-NONE 427s algparse -v2 'esp=aes_ccm-null' (expect SUCCESS) 427s AES_CCM_16-NONE 427s algparse -v2 'esp=aes_gcm-null' (expect SUCCESS) 427s AES_GCM_16-NONE 427s algparse -v2 'esp=aes_ccm-256-null' (expect SUCCESS) 427s AES_CCM_16_256-NONE 427s algparse -v2 'esp=aes_gcm-192-null' (expect SUCCESS) 427s AES_GCM_16_192-NONE 427s algparse -v2 'esp=aes_ccm_256-null' (expect SUCCESS) 427s AES_CCM_16_256-NONE 427s algparse -v2 'esp=aes_gcm_192-null' (expect SUCCESS) 427s AES_GCM_16_192-NONE 427s algparse -v2 'esp=aes_ccm_8-null' (expect SUCCESS) 427s AES_CCM_8-NONE 427s algparse -v2 'esp=aes_ccm_12-null' (expect SUCCESS) 427s AES_CCM_12-NONE 427s algparse -v2 'esp=aes_ccm_16-null' (expect SUCCESS) 427s AES_CCM_16-NONE 427s algparse -v2 'esp=aes_gcm_8-null' (expect SUCCESS) 427s AES_GCM_8-NONE 427s algparse -v2 'esp=aes_gcm_12-null' (expect SUCCESS) 427s AES_GCM_12-NONE 427s algparse -v2 'esp=aes_gcm_16-null' (expect SUCCESS) 427s AES_GCM_16-NONE 427s algparse -v2 'esp=aes_ccm_8-128-null' (expect SUCCESS) 427s AES_CCM_8_128-NONE 427s algparse -v2 'esp=aes_ccm_12-192-null' (expect SUCCESS) 427s AES_CCM_12_192-NONE 427s algparse -v2 'esp=aes_ccm_16-256-null' (expect SUCCESS) 427s AES_CCM_16_256-NONE 427s algparse -v2 'esp=aes_gcm_8-128-null' (expect SUCCESS) 427s AES_GCM_8_128-NONE 427s algparse -v2 'esp=aes_gcm_12-192-null' (expect SUCCESS) 427s AES_GCM_12_192-NONE 427s algparse -v2 'esp=aes_gcm_16-256-null' (expect SUCCESS) 427s AES_GCM_16_256-NONE 427s algparse -v2 'esp=aes_ccm_8_128-null' (expect SUCCESS) 427s AES_CCM_8_128-NONE 427s algparse -v2 'esp=aes_ccm_12_192-null' (expect SUCCESS) 427s AES_CCM_12_192-NONE 427s algparse -v2 'esp=aes_ccm_16_256-null' (expect SUCCESS) 427s AES_CCM_16_256-NONE 427s algparse -v2 'esp=aes_gcm_8_128-null' (expect SUCCESS) 427s AES_GCM_8_128-NONE 427s algparse -v2 'esp=aes_gcm_12_192-null' (expect SUCCESS) 427s AES_GCM_12_192-NONE 427s algparse -v2 'esp=aes_gcm_16_256-null' (expect SUCCESS) 427s AES_GCM_16_256-NONE 427s algparse -v2 'esp=aes_ctr' (expect SUCCESS) 427s AES_CTR-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aesctr' (expect SUCCESS) 427s AES_CTR-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes_ctr128' (expect SUCCESS) 427s AES_CTR_128-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes_ctr192' (expect SUCCESS) 427s AES_CTR_192-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes_ctr256' (expect SUCCESS) 427s AES_CTR_256-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=camellia_cbc_256-hmac_sha2_512_256;modp8192' (expect SUCCESS) 427s CAMELLIA_CBC_256-HMAC_SHA2_512_256 427s algparse -v2 'esp=null_auth_aes_gmac_256-null;modp8192' (expect SUCCESS) 427s NULL_AUTH_AES_GMAC_256-NONE 427s algparse -v2 'esp=3des-sha1;modp8192' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=3des-sha1-modp8192' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes-sha1,3des-sha1;modp8192' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes-sha1-modp8192,3des-sha1-modp8192' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes-sha1-modp8192,aes-sha1-modp8192,aes-sha1-modp8192' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes;none' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes;none,aes' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s AES_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes;none,aes;modp2048' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s AES_CBC-HMAC_SHA2_512_256+HMAC_SHA2_256_128 427s algparse -v2 'esp=aes-sha1-none' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=aes-sha1;none' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96 427s algparse -v2 'esp=3des168-sha1' (expect ERROR) 427s ERROR: ESP encryption algorithm 3DES_CBC does not allow a key lengths 427s algparse -v2 'esp=3des-null' (expect ERROR) 427s ERROR: non-AEAD ESP encryption algorithm 3DES_CBC cannot have 'NONE' as the integrity algorithm 427s algparse -v2 'esp=aes128-null' (expect ERROR) 427s ERROR: non-AEAD ESP encryption algorithm AES_CBC cannot have 'NONE' as the integrity algorithm 427s algparse -v2 'esp=aes224-sha1' (expect ERROR) 427s ERROR: ESP encryption algorithm AES_CBC with key length 224 invalid; valid key lengths: 128, 192, 256 427s algparse -v2 'esp=aes-224-sha1' (expect ERROR) 427s ERROR: ESP encryption algorithm AES_CBC with key length 224 invalid; valid key lengths: 128, 192, 256 427s algparse -v2 'esp=aes0-sha1' (expect ERROR) 427s ERROR: ESP encryption key length is zero 427s algparse -v2 'esp=aes-0-sha1' (expect ERROR) 427s ERROR: ESP encryption key length is zero 427s algparse -v2 'esp=aes512-sha1' (expect ERROR) 427s ERROR: ESP encryption algorithm AES_CBC with key length 512 invalid; valid key lengths: 128, 192, 256 427s algparse -v2 'esp=aes-sha1555' (expect ERROR) 427s ERROR: ESP integrity algorithm 'sha1555' is not recognized 427s algparse -v2 'esp=camellia666-sha1' (expect ERROR) 427s ERROR: ESP encryption algorithm CAMELLIA_CBC with key length 666 invalid; valid key lengths: 128, 192, 256 427s algparse -v2 'esp=blowfish' (expect ERROR) 427s ERROR: ESP encryption algorithm 'blowfish' is not supported 427s algparse -v2 'esp=des-sha1' (expect ERROR) 427s ERROR: ESP encryption algorithm 'des' is not supported 427s algparse -v2 'esp=aes_ctr666' (expect ERROR) 427s ERROR: ESP encryption algorithm AES_CTR with key length 666 invalid; valid key lengths: 128, 192, 256 427s algparse -v2 'esp=aes128-sha2_128' (expect ERROR) 427s ERROR: ESP integrity algorithm 'sha2_128' is not recognized 427s algparse -v2 'esp=aes256-sha2_256-4096' (expect ERROR) 427s ERROR: ESP DH algorithm '4096' is not recognized 427s algparse -v2 'esp=aes256-sha2_256-128' (expect ERROR) 427s ERROR: ESP DH algorithm '128' is not recognized 427s algparse -v2 'esp=vanitycipher' (expect ERROR) 427s ERROR: ESP encryption algorithm 'vanitycipher' is not recognized 427s algparse -v2 'esp=ase-sah' (expect ERROR) 427s ERROR: ESP encryption algorithm 'ase' is not recognized 427s algparse -v2 'esp=aes-sah1' (expect ERROR) 427s ERROR: ESP integrity algorithm 'sah1' is not recognized 427s algparse -v2 'esp=id3' (expect ERROR) 427s ERROR: ESP encryption algorithm 'id3' is not recognized 427s algparse -v2 'esp=aes-id3' (expect ERROR) 427s ERROR: ESP integrity algorithm 'id3' is not recognized 427s algparse -v2 'esp=aes_gcm-md5' (expect ERROR) 427s ERROR: AEAD ESP encryption algorithm AES_GCM_16 must have 'NONE' as the integrity algorithm 427s algparse -v2 'esp=mars' (expect ERROR) 427s ERROR: ESP encryption algorithm 'mars' is not supported 427s algparse -v2 'esp=aes_gcm-16' (expect ERROR) 427s ERROR: ESP encryption algorithm AES_GCM_16 with key length 16 invalid; valid key lengths: 128, 192, 256 427s algparse -v2 'esp=aes_gcm-0' (expect ERROR) 427s ERROR: ESP encryption key length is zero 427s algparse -v2 'esp=aes_gcm-123456789012345' (expect ERROR) 427s ERROR: ESP encryption algorithm 'aes_gcm-123456789012345' key length WAY too big 427s algparse -v2 'esp=3des-sha1;dh22' (expect ERROR) 427s ERROR: ESP DH algorithm 'dh22' is not supported 427s algparse -v2 'esp=3des-sha1;modp8192,3des-sha2' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'esp=3des-sha1-modp8192,3des-sha2' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'esp=3des-sha1-modp8192,3des-sha2-modp8192' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'esp=3des-sha1-modp8192,3des-sha2;modp8192' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'esp=3des-sha1;modp8192,3des-sha2-modp8192' (expect SUCCESS) 427s ipsec algparse: ignoring ESP DH algorithm MODP2048 as PFS policy is disabled 427s | parsing 'aes-sha1' for ESP 427s | proposal: 'aes-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes-sha1' for ESP 427s | proposal: 'aes-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes-sha1-modp2048' for ESP 427s | proposal: 'aes-sha1-modp2048' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp2048" '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp2048" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP2048 as PFS policy is disabled 427s | parsing 'aes-128-sha1' for ESP 427s | proposal: 'aes-128-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "128" '-' 427s | token: '-' "128" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes-128-sha1' for ESP 427s | proposal: 'aes-128-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "128" '-' 427s | token: '-' "128" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes-128-sha1-modp2048' for ESP 427s | proposal: 'aes-128-sha1-modp2048' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "128" '-' 427s | token: '-' "128" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp2048" '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp2048" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP2048 as PFS policy is disabled 427s | parsing 'aes-128' for ESP 427s | proposal: 'aes-128' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "128" '' 427s | token: '-' "128" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes_gcm_a-128-null' for ESP 427s | proposal: 'aes_gcm_a-128-null' 427s | token: '' '' "aes_gcm_a" '-' 427s | token: '' "aes_gcm_a" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_8[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing '3des-sha1;modp1024' for ESP 427s | proposal: '3des-sha1;modp1024' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp1024" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp1024" '' '' 427s | parsing dh: 427s | ike_alg_byname() failed: ESP DH algorithm 'modp1024' is not supported 427s | lookup for DH algorithm 'modp1024' failed 427s | ... failed 'ESP DH algorithm 'modp1024' is not supported' 427s | parsing '3des-sha1;modp1536' for ESP 427s | proposal: '3des-sha1;modp1536' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp1536" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp1536" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP1536[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP1536 as PFS policy is disabled 427s | parsing '3des-sha1;modp2048' for ESP 427s | proposal: '3des-sha1;modp2048' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp2048" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp2048" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP2048 as PFS policy is disabled 427s | parsing '3des-sha1;dh21' for ESP 427s | proposal: '3des-sha1;dh21' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "dh21" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "dh21" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm DH21[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm DH21 as PFS policy is disabled 427s | parsing '3des-sha1;ecp_521' for ESP 427s | proposal: '3des-sha1;ecp_521' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "ecp_521" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "ecp_521" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm DH21[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm DH21 as PFS policy is disabled 427s | parsing '3des-sha1;dh23' for ESP 427s | proposal: '3des-sha1;dh23' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "dh23" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "dh23" '' '' 427s | parsing dh: 427s | ike_alg_byname() failed: ESP DH algorithm 'dh23' is not supported 427s | lookup for DH algorithm 'dh23' failed 427s | ... failed 'ESP DH algorithm 'dh23' is not supported' 427s | parsing '3des-sha1;dh24' for ESP 427s | proposal: '3des-sha1;dh24' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "dh24" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "dh24" '' '' 427s | parsing dh: 427s | ike_alg_byname() failed: ESP DH algorithm 'dh24' is not supported 427s | lookup for DH algorithm 'dh24' failed 427s | ... failed 'ESP DH algorithm 'dh24' is not supported' 427s | parsing '3des-sha1' for ESP 427s | proposal: '3des-sha1' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'null-sha1' for ESP 427s | proposal: 'null-sha1' 427s | token: '' '' "null" '-' 427s | token: '' "null" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm NULL[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes_cbc' for ESP 427s | proposal: 'aes_cbc' 427s | token: '' '' "aes_cbc" '' 427s | token: '' "aes_cbc" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes-sha' for ESP 427s | proposal: 'aes-sha' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha" '' 427s | token: '-' "sha" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes-sha1' for ESP 427s | proposal: 'aes-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes128-sha1' for ESP 427s | proposal: 'aes128-sha1' 427s | token: '' '' "aes128" '-' 427s | token: '' "aes128" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes128' is not recognized 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes-sha2' for ESP 427s | proposal: 'aes-sha2' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha2" '' 427s | token: '-' "sha2" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s | parsing 'aes-sha256' for ESP 427s | proposal: 'aes-sha256' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha256" '' 427s | token: '-' "sha256" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s | parsing 'aes-sha384' for ESP 427s | proposal: 'aes-sha384' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha384" '' 427s | token: '-' "sha384" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_384_192[_0] 427s | token: '' '' '' 427s | parsing 'aes-sha512' for ESP 427s | proposal: 'aes-sha512' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha512" '' 427s | token: '-' "sha512" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | token: '' '' '' 427s | parsing 'aes128-aes_xcbc' for ESP 427s | proposal: 'aes128-aes_xcbc' 427s | token: '' '' "aes128" '-' 427s | token: '' "aes128" '-' "aes_xcbc" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes128' is not recognized 427s | token: '-' "aes_xcbc" '' '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm AES_XCBC_96[_0] 427s | token: '' '' '' 427s | parsing 'aes192-sha1' for ESP 427s | proposal: 'aes192-sha1' 427s | token: '' '' "aes192" '-' 427s | token: '' "aes192" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes192' is not recognized 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes256-sha1' for ESP 427s | proposal: 'aes256-sha1' 427s | token: '' '' "aes256" '-' 427s | token: '' "aes256" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes256' is not recognized 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes256-sha' for ESP 427s | proposal: 'aes256-sha' 427s | token: '' '' "aes256" '-' 427s | token: '' "aes256" '-' "sha" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes256' is not recognized 427s | token: '-' "sha" '' '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'aes256-sha2' for ESP 427s | proposal: 'aes256-sha2' 427s | token: '' '' "aes256" '-' 427s | token: '' "aes256" '-' "sha2" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes256' is not recognized 427s | token: '-' "sha2" '' '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s | parsing 'aes256-sha2_256' for ESP 427s | proposal: 'aes256-sha2_256' 427s | token: '' '' "aes256" '-' 427s | token: '' "aes256" '-' "sha2_256" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes256' is not recognized 427s | token: '-' "sha2_256" '' '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s | parsing 'aes256-sha2_384' for ESP 427s | proposal: 'aes256-sha2_384' 427s | token: '' '' "aes256" '-' 427s | token: '' "aes256" '-' "sha2_384" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes256' is not recognized 427s | token: '-' "sha2_384" '' '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_384_192[_0] 427s | token: '' '' '' 427s | parsing 'aes256-sha2_512' for ESP 427s | proposal: 'aes256-sha2_512' 427s | token: '' '' "aes256" '-' 427s | token: '' "aes256" '-' "sha2_512" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes256' is not recognized 427s | token: '-' "sha2_512" '' '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | token: '' '' '' 427s | parsing 'camellia' for ESP 427s | proposal: 'camellia' 427s | token: '' '' "camellia" '' 427s | token: '' "camellia" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm CAMELLIA_CBC[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'camellia128' for ESP 427s | proposal: 'camellia128' 427s | token: '' '' "camellia128" '' 427s | token: '' "camellia128" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'camellia128' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm CAMELLIA_CBC[_128] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'camellia192' for ESP 427s | proposal: 'camellia192' 427s | token: '' '' "camellia192" '' 427s | token: '' "camellia192" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'camellia192' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm CAMELLIA_CBC[_192] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'camellia256' for ESP 427s | proposal: 'camellia256' 427s | token: '' '' "camellia256" '' 427s | token: '' "camellia256" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'camellia256' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm CAMELLIA_CBC[_256] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes_ccm' for ESP 427s | proposal: 'aes_ccm' 427s | token: '' '' "aes_ccm" '' 427s | token: '' "aes_ccm" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_0] 427s | appending ESP integrity algorithm NONE[_0] 427s | parsing 'aes_ccm_a-128-null' for ESP 427s | proposal: 'aes_ccm_a-128-null' 427s | token: '' '' "aes_ccm_a" '-' 427s | token: '' "aes_ccm_a" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_8[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_a-192-null' for ESP 427s | proposal: 'aes_ccm_a-192-null' 427s | token: '' '' "aes_ccm_a" '-' 427s | token: '' "aes_ccm_a" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_8[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_a-256-null' for ESP 427s | proposal: 'aes_ccm_a-256-null' 427s | token: '' '' "aes_ccm_a" '-' 427s | token: '' "aes_ccm_a" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_8[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_b-128-null' for ESP 427s | proposal: 'aes_ccm_b-128-null' 427s | token: '' '' "aes_ccm_b" '-' 427s | token: '' "aes_ccm_b" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_12[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_b-192-null' for ESP 427s | proposal: 'aes_ccm_b-192-null' 427s | token: '' '' "aes_ccm_b" '-' 427s | token: '' "aes_ccm_b" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_12[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_b-256-null' for ESP 427s | proposal: 'aes_ccm_b-256-null' 427s | token: '' '' "aes_ccm_b" '-' 427s | token: '' "aes_ccm_b" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_12[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_c-128-null' for ESP 427s | proposal: 'aes_ccm_c-128-null' 427s | token: '' '' "aes_ccm_c" '-' 427s | token: '' "aes_ccm_c" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_c-192-null' for ESP 427s | proposal: 'aes_ccm_c-192-null' 427s | token: '' '' "aes_ccm_c" '-' 427s | token: '' "aes_ccm_c" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_c-256-null' for ESP 427s | proposal: 'aes_ccm_c-256-null' 427s | token: '' '' "aes_ccm_c" '-' 427s | token: '' "aes_ccm_c" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm' for ESP 427s | proposal: 'aes_gcm' 427s | token: '' '' "aes_gcm" '' 427s | token: '' "aes_gcm" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_0] 427s | appending ESP integrity algorithm NONE[_0] 427s | parsing 'aes_gcm_a-128-null' for ESP 427s | proposal: 'aes_gcm_a-128-null' 427s | token: '' '' "aes_gcm_a" '-' 427s | token: '' "aes_gcm_a" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_8[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_a-192-null' for ESP 427s | proposal: 'aes_gcm_a-192-null' 427s | token: '' '' "aes_gcm_a" '-' 427s | token: '' "aes_gcm_a" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_8[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_a-256-null' for ESP 427s | proposal: 'aes_gcm_a-256-null' 427s | token: '' '' "aes_gcm_a" '-' 427s | token: '' "aes_gcm_a" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_8[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_b-128-null' for ESP 427s | proposal: 'aes_gcm_b-128-null' 427s | token: '' '' "aes_gcm_b" '-' 427s | token: '' "aes_gcm_b" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_12[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_b-192-null' for ESP 427s | proposal: 'aes_gcm_b-192-null' 427s | token: '' '' "aes_gcm_b" '-' 427s | token: '' "aes_gcm_b" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_12[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_b-256-null' for ESP 427s | proposal: 'aes_gcm_b-256-null' 427s | token: '' '' "aes_gcm_b" '-' 427s | token: '' "aes_gcm_b" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_12[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_c-128-null' for ESP 427s | proposal: 'aes_gcm_c-128-null' 427s | token: '' '' "aes_gcm_c" '-' 427s | token: '' "aes_gcm_c" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_c-192-null' for ESP 427s | proposal: 'aes_gcm_c-192-null' 427s | token: '' '' "aes_gcm_c" '-' 427s | token: '' "aes_gcm_c" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_c-256-null' for ESP 427s | proposal: 'aes_gcm_c-256-null' 427s | token: '' '' "aes_gcm_c" '-' 427s | token: '' "aes_gcm_c" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_a-null' for ESP 427s | proposal: 'aes_ccm_a-null' 427s | token: '' '' "aes_ccm_a" '-' 427s | token: '' "aes_ccm_a" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_8[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_b-null' for ESP 427s | proposal: 'aes_ccm_b-null' 427s | token: '' '' "aes_ccm_b" '-' 427s | token: '' "aes_ccm_b" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_12[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_c-null' for ESP 427s | proposal: 'aes_ccm_c-null' 427s | token: '' '' "aes_ccm_c" '-' 427s | token: '' "aes_ccm_c" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_a-null' for ESP 427s | proposal: 'aes_gcm_a-null' 427s | token: '' '' "aes_gcm_a" '-' 427s | token: '' "aes_gcm_a" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_8[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_b-null' for ESP 427s | proposal: 'aes_gcm_b-null' 427s | token: '' '' "aes_gcm_b" '-' 427s | token: '' "aes_gcm_b" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_12[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_c-null' for ESP 427s | proposal: 'aes_gcm_c-null' 427s | token: '' '' "aes_gcm_c" '-' 427s | token: '' "aes_gcm_c" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm-null' for ESP 427s | proposal: 'aes_ccm-null' 427s | token: '' '' "aes_ccm" '-' 427s | token: '' "aes_ccm" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm-null' for ESP 427s | proposal: 'aes_gcm-null' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm-256-null' for ESP 427s | proposal: 'aes_ccm-256-null' 427s | token: '' '' "aes_ccm" '-' 427s | token: '' "aes_ccm" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm-192-null' for ESP 427s | proposal: 'aes_gcm-192-null' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_256-null' for ESP 427s | proposal: 'aes_ccm_256-null' 427s | token: '' '' "aes_ccm_256" '-' 427s | token: '' "aes_ccm_256" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_ccm_256' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_192-null' for ESP 427s | proposal: 'aes_gcm_192-null' 427s | token: '' '' "aes_gcm_192" '-' 427s | token: '' "aes_gcm_192" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_gcm_192' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_8-null' for ESP 427s | proposal: 'aes_ccm_8-null' 427s | token: '' '' "aes_ccm_8" '-' 427s | token: '' "aes_ccm_8" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_8[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_12-null' for ESP 427s | proposal: 'aes_ccm_12-null' 427s | token: '' '' "aes_ccm_12" '-' 427s | token: '' "aes_ccm_12" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_12[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_16-null' for ESP 427s | proposal: 'aes_ccm_16-null' 427s | token: '' '' "aes_ccm_16" '-' 427s | token: '' "aes_ccm_16" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_8-null' for ESP 427s | proposal: 'aes_gcm_8-null' 427s | token: '' '' "aes_gcm_8" '-' 427s | token: '' "aes_gcm_8" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_8[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_12-null' for ESP 427s | proposal: 'aes_gcm_12-null' 427s | token: '' '' "aes_gcm_12" '-' 427s | token: '' "aes_gcm_12" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_12[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_16-null' for ESP 427s | proposal: 'aes_gcm_16-null' 427s | token: '' '' "aes_gcm_16" '-' 427s | token: '' "aes_gcm_16" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_8-128-null' for ESP 427s | proposal: 'aes_ccm_8-128-null' 427s | token: '' '' "aes_ccm_8" '-' 427s | token: '' "aes_ccm_8" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_8[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_12-192-null' for ESP 427s | proposal: 'aes_ccm_12-192-null' 427s | token: '' '' "aes_ccm_12" '-' 427s | token: '' "aes_ccm_12" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_12[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_16-256-null' for ESP 427s | proposal: 'aes_ccm_16-256-null' 427s | token: '' '' "aes_ccm_16" '-' 427s | token: '' "aes_ccm_16" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_8-128-null' for ESP 427s | proposal: 'aes_gcm_8-128-null' 427s | token: '' '' "aes_gcm_8" '-' 427s | token: '' "aes_gcm_8" '-' "128" '-' 427s | token: '-' "128" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_8[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_12-192-null' for ESP 427s | proposal: 'aes_gcm_12-192-null' 427s | token: '' '' "aes_gcm_12" '-' 427s | token: '' "aes_gcm_12" '-' "192" '-' 427s | token: '-' "192" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_12[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_16-256-null' for ESP 427s | proposal: 'aes_gcm_16-256-null' 427s | token: '' '' "aes_gcm_16" '-' 427s | token: '' "aes_gcm_16" '-' "256" '-' 427s | token: '-' "256" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_8_128-null' for ESP 427s | proposal: 'aes_ccm_8_128-null' 427s | token: '' '' "aes_ccm_8_128" '-' 427s | token: '' "aes_ccm_8_128" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_ccm_8_128' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_8[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_12_192-null' for ESP 427s | proposal: 'aes_ccm_12_192-null' 427s | token: '' '' "aes_ccm_12_192" '-' 427s | token: '' "aes_ccm_12_192" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_ccm_12_192' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_12[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ccm_16_256-null' for ESP 427s | proposal: 'aes_ccm_16_256-null' 427s | token: '' '' "aes_ccm_16_256" '-' 427s | token: '' "aes_ccm_16_256" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_ccm_16_256' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CCM_16[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_8_128-null' for ESP 427s | proposal: 'aes_gcm_8_128-null' 427s | token: '' '' "aes_gcm_8_128" '-' 427s | token: '' "aes_gcm_8_128" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_gcm_8_128' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_8[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_12_192-null' for ESP 427s | proposal: 'aes_gcm_12_192-null' 427s | token: '' '' "aes_gcm_12_192" '-' 427s | token: '' "aes_gcm_12_192" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_gcm_12_192' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_12[_192] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm_16_256-null' for ESP 427s | proposal: 'aes_gcm_16_256-null' 427s | token: '' '' "aes_gcm_16_256" '-' 427s | token: '' "aes_gcm_16_256" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_gcm_16_256' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_ctr' for ESP 427s | proposal: 'aes_ctr' 427s | token: '' '' "aes_ctr" '' 427s | token: '' "aes_ctr" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CTR[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aesctr' for ESP 427s | proposal: 'aesctr' 427s | token: '' '' "aesctr" '' 427s | token: '' "aesctr" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CTR[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes_ctr128' for ESP 427s | proposal: 'aes_ctr128' 427s | token: '' '' "aes_ctr128" '' 427s | token: '' "aes_ctr128" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_ctr128' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CTR[_128] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes_ctr192' for ESP 427s | proposal: 'aes_ctr192' 427s | token: '' '' "aes_ctr192" '' 427s | token: '' "aes_ctr192" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_ctr192' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CTR[_192] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes_ctr256' for ESP 427s | proposal: 'aes_ctr256' 427s | token: '' '' "aes_ctr256" '' 427s | token: '' "aes_ctr256" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_ctr256' is not recognized 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CTR[_256] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'camellia_cbc_256-hmac_sha2_512_256;modp8192' for ESP 427s | proposal: 'camellia_cbc_256-hmac_sha2_512_256;modp8192' 427s | token: '' '' "camellia_cbc_256" '-' 427s | token: '' "camellia_cbc_256" '-' "hmac_sha2_512_256" ';' 427s | ike_alg_byname() failed: ESP encryption algorithm 'camellia_cbc_256' is not recognized 427s | token: '-' "hmac_sha2_512_256" ';' "modp8192" '' 427s | appending ESP encryption algorithm CAMELLIA_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing 'null_auth_aes_gmac_256-null;modp8192' for ESP 427s | proposal: 'null_auth_aes_gmac_256-null;modp8192' 427s | token: '' '' "null_auth_aes_gmac_256" '-' 427s | token: '' "null_auth_aes_gmac_256" '-' "null" ';' 427s | ike_alg_byname() failed: ESP encryption algorithm 'null_auth_aes_gmac_256' is not recognized 427s | token: '-' "null" ';' "modp8192" '' 427s | appending ESP encryption algorithm NULL_AUTH_AES_GMAC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing '3des-sha1;modp8192' for ESP 427s | proposal: '3des-sha1;modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing '3des-sha1-modp8192' for ESP 427s | proposal: '3des-sha1-modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing 'aes-sha1,3des-sha1;modp8192' for ESP 427s | proposal: 'aes-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha1;modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing 'aes-sha1-modp8192,3des-sha1-modp8192' for ESP 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha1-modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing 'aes-sha1-modp8192,aes-sha1-modp8192,aes-sha1-modp8192' for ESP 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing 'aes;none' for ESP 427s | proposal: 'aes;none' 427s | token: '' '' "aes" ';' 427s | token: '' "aes" ';' "none" '' 427s | token: ';' "none" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing dh: 427s | appending ESP DH algorithm NONE[_0] 427s | token: '' '' '' 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s ipsec algparse: ignoring redundant ESP DH algorithm NONE as PFS policy is disabled 427s | parsing 'aes;none,aes' for ESP 427s | proposal: 'aes;none' 427s | token: '' '' "aes" ';' 427s | token: '' "aes" ';' "none" '' 427s | token: ';' "none" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing dh: 427s | appending ESP DH algorithm NONE[_0] 427s | token: '' '' '' 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | proposal: 'aes' 427s | token: '' '' "aes" '' 427s | token: '' "aes" '' '' 427s | token: '' '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s ipsec algparse: ignoring redundant ESP DH algorithm NONE as PFS policy is disabled 427s | parsing 'aes;none,aes;modp2048' for ESP 427s | proposal: 'aes;none' 427s | token: '' '' "aes" ';' 427s | token: '' "aes" ';' "none" '' 427s | token: ';' "none" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing dh: 427s | appending ESP DH algorithm NONE[_0] 427s | token: '' '' '' 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | proposal: 'aes;modp2048' 427s | token: '' '' "aes" ';' 427s | token: '' "aes" ';' "modp2048" '' 427s | token: ';' "modp2048" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing dh: 427s | appending ESP DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s | appending ESP integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s ipsec algparse: ignoring redundant ESP DH algorithm NONE as PFS policy is disabled 427s ipsec algparse: ignoring ESP DH algorithm MODP2048 as PFS policy is disabled 427s | parsing 'aes-sha1-none' for ESP 427s | proposal: 'aes-sha1-none' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "none" '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "none" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm NONE[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring redundant ESP DH algorithm NONE as PFS policy is disabled 427s | parsing 'aes-sha1;none' for ESP 427s | proposal: 'aes-sha1;none' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "none" '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "none" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm NONE[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring redundant ESP DH algorithm NONE as PFS policy is disabled 427s | parsing '3des168-sha1' for ESP 427s | proposal: '3des168-sha1' 427s | token: '' '' "3des168" '-' 427s | token: '' "3des168" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm '3des168' is not recognized 427s | parsing '3des-null' for ESP 427s | proposal: '3des-null' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "null" '' 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes128-null' for ESP 427s | proposal: 'aes128-null' 427s | token: '' '' "aes128" '-' 427s | token: '' "aes128" '-' "null" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes128' is not recognized 427s | token: '-' "null" '' '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | parsing integ: 427s | appending ESP integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes224-sha1' for ESP 427s | proposal: 'aes224-sha1' 427s | token: '' '' "aes224" '-' 427s | token: '' "aes224" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes224' is not recognized 427s | parsing 'aes-224-sha1' for ESP 427s | proposal: 'aes-224-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "224" '-' 427s | byname('aes') with ='224' failed: ESP encryption algorithm AES_CBC with key length 224 invalid; valid key lengths: 128, 192, 256 427s | parsing 'aes0-sha1' for ESP 427s | proposal: 'aes0-sha1' 427s | token: '' '' "aes0" '-' 427s | token: '' "aes0" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes0' is not recognized 427s | parsing 'aes-0-sha1' for ESP 427s | proposal: 'aes-0-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "0" '-' 427s | parsing 'aes512-sha1' for ESP 427s | proposal: 'aes512-sha1' 427s | token: '' '' "aes512" '-' 427s | token: '' "aes512" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes512' is not recognized 427s | parsing 'aes-sha1555' for ESP 427s | proposal: 'aes-sha1555' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1555" '' 427s | token: '-' "sha1555" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | ike_alg_byname() failed: ESP integrity algorithm 'sha1555' is not recognized 427s | lookup for integrity algorithm 'sha1555' failed 427s | or - failed 'ESP integrity algorithm 'sha1555' is not recognized') 427s | parsing 'camellia666-sha1' for ESP 427s | proposal: 'camellia666-sha1' 427s | token: '' '' "camellia666" '-' 427s | token: '' "camellia666" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'camellia666' is not recognized 427s | parsing 'blowfish' for ESP 427s | proposal: 'blowfish' 427s | token: '' '' "blowfish" '' 427s | token: '' "blowfish" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'blowfish' is not supported 427s | parsing 'des-sha1' for ESP 427s | proposal: 'des-sha1' 427s | token: '' '' "des" '-' 427s | token: '' "des" '-' "sha1" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'des' is not supported 427s | parsing 'aes_ctr666' for ESP 427s | proposal: 'aes_ctr666' 427s | token: '' '' "aes_ctr666" '' 427s | token: '' "aes_ctr666" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes_ctr666' is not recognized 427s | parsing 'aes128-sha2_128' for ESP 427s | proposal: 'aes128-sha2_128' 427s | token: '' '' "aes128" '-' 427s | token: '' "aes128" '-' "sha2_128" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes128' is not recognized 427s | token: '-' "sha2_128" '' '' 427s | appending ESP encryption algorithm AES_CBC[_128] 427s | parsing integ: 427s | ike_alg_byname() failed: ESP integrity algorithm 'sha2_128' is not recognized 427s | lookup for integrity algorithm 'sha2_128' failed 427s | or - failed 'ESP integrity algorithm 'sha2_128' is not recognized') 427s | parsing 'aes256-sha2_256-4096' for ESP 427s | proposal: 'aes256-sha2_256-4096' 427s | token: '' '' "aes256" '-' 427s | token: '' "aes256" '-' "sha2_256" '-' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes256' is not recognized 427s | token: '-' "sha2_256" '-' "4096" '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '-' "4096" '' '' 427s | parsing dh: 427s | ike_alg_byname() failed: ESP DH algorithm '4096' is not recognized 427s | lookup for DH algorithm '4096' failed 427s | ... failed 'ESP DH algorithm '4096' is not recognized' 427s | parsing 'aes256-sha2_256-128' for ESP 427s | proposal: 'aes256-sha2_256-128' 427s | token: '' '' "aes256" '-' 427s | token: '' "aes256" '-' "sha2_256" '-' 427s | ike_alg_byname() failed: ESP encryption algorithm 'aes256' is not recognized 427s | token: '-' "sha2_256" '-' "128" '' 427s | appending ESP encryption algorithm AES_CBC[_256] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '-' "128" '' '' 427s | parsing dh: 427s | ike_alg_byname() failed: ESP DH algorithm '128' is not recognized 427s | lookup for DH algorithm '128' failed 427s | ... failed 'ESP DH algorithm '128' is not recognized' 427s | parsing 'vanitycipher' for ESP 427s | proposal: 'vanitycipher' 427s | token: '' '' "vanitycipher" '' 427s | token: '' "vanitycipher" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'vanitycipher' is not recognized 427s | parsing 'ase-sah' for ESP 427s | proposal: 'ase-sah' 427s | token: '' '' "ase" '-' 427s | token: '' "ase" '-' "sah" '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'ase' is not recognized 427s | parsing 'aes-sah1' for ESP 427s | proposal: 'aes-sah1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sah1" '' 427s | token: '-' "sah1" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | ike_alg_byname() failed: ESP integrity algorithm 'sah1' is not recognized 427s | lookup for integrity algorithm 'sah1' failed 427s | or - failed 'ESP integrity algorithm 'sah1' is not recognized') 427s | parsing 'id3' for ESP 427s | proposal: 'id3' 427s | token: '' '' "id3" '' 427s | token: '' "id3" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'id3' is not recognized 427s | ike_alg_byname() failed: ESP encryption algorithm 'id3' is not recognized 427s | parsing 'aes-id3' for ESP 427s | proposal: 'aes-id3' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "id3" '' 427s | token: '-' "id3" '' '' 427s | appending ESP encryption algorithm AES_CBC[_0] 427s | parsing integ: 427s | ike_alg_byname() failed: ESP integrity algorithm 'id3' is not recognized 427s | lookup for integrity algorithm 'id3' failed 427s | or - failed 'ESP integrity algorithm 'id3' is not recognized') 427s | parsing 'aes_gcm-md5' for ESP 427s | proposal: 'aes_gcm-md5' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "md5" '' 427s | token: '-' "md5" '' '' 427s | appending ESP encryption algorithm AES_GCM_16[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_MD5_96[_0] 427s | token: '' '' '' 427s | parsing 'mars' for ESP 427s | proposal: 'mars' 427s | token: '' '' "mars" '' 427s | token: '' "mars" '' '' 427s | ike_alg_byname() failed: ESP encryption algorithm 'mars' is not supported 427s | parsing 'aes_gcm-16' for ESP 427s | proposal: 'aes_gcm-16' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "16" '' 427s | byname('aes_gcm') with ='16' failed: ESP encryption algorithm AES_GCM_16 with key length 16 invalid; valid key lengths: 128, 192, 256 427s | parsing 'aes_gcm-0' for ESP 427s | proposal: 'aes_gcm-0' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "0" '' 427s | parsing 'aes_gcm-123456789012345' for ESP 427s | proposal: 'aes_gcm-123456789012345' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "123456789012345" '' 427s | parsing '3des-sha1;dh22' for ESP 427s | proposal: '3des-sha1;dh22' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "dh22" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "dh22" '' '' 427s | parsing dh: 427s | ike_alg_byname() failed: ESP DH algorithm 'dh22' is not supported 427s | lookup for DH algorithm 'dh22' failed 427s | ... failed 'ESP DH algorithm 'dh22' is not supported' 427s | parsing '3des-sha1;modp8192,3des-sha2' for ESP 427s | proposal: '3des-sha1;modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha2' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha2" '' 427s | token: '-' "sha2" '' '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing '3des-sha1-modp8192,3des-sha2' for ESP 427s | proposal: '3des-sha1-modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha2' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha2" '' 427s | token: '-' "sha2" '' '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing '3des-sha1-modp8192,3des-sha2-modp8192' for ESP 427s | proposal: '3des-sha1-modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha2-modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha2" '-' 427s | token: '-' "sha2" '-' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing '3des-sha1-modp8192,3des-sha2;modp8192' for ESP 427s | proposal: '3des-sha1-modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha2;modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha2" ';' 427s | token: '-' "sha2" ';' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing '3des-sha1;modp8192,3des-sha2-modp8192' for ESP 427s | proposal: '3des-sha1;modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha2-modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha2" '-' 427s | token: '-' "sha2" '-' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing '3des-sha1;modp8192,3des-sha2;modp8192' for ESP 427s | proposal: '3des-sha1;modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha2;modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha2" ';' 427s | token: '-' "sha2" ';' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: ';' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s | parsing '3des-sha1-modp8192,3des-sha2-modp2048' for ESP 427s | proposal: '3des-sha1-modp8192' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: '3des-sha2-modp2048' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha2" '-' 427s | token: '-' "sha2" '-' "modp2048" '' 427s | appending ESP encryption algorithm 3DES_CBC[_0] 427s | parsing integ: 427s | appending ESP integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '-' "modp2048" '' '' 427s | parsing dh: 427s | appending ESP DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring ESP DH algorithm MODP8192 as PFS policy is disabled 427s ipsec algparse: ignoring ESP DH algorithm MODP2048 as PFS policy is disabled 427s | parsing 'SHA2_512_256,SHA2_256_128' for AH 427s | proposal: 'SHA2_512_256' 427s | token: '' '' "SHA2_512_256" '' 427s | token: '' "SHA2_512_256" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_512_256[_0] 427s | token: '' '' '' 427s | proposal: 'SHA2_256_128' 427s | token: '' '' "SHA2_256_128" '' 427s | token: '' "SHA2_256_128" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s | parsing '' for AH 427s | parsing 'md5' for AH 427s | proposal: 'md5' 427s | token: '' '' "md5" '' 427s | token: '' "md5" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_MD5_96[_0] 427s | token: '' '' '' 427s | parsing 'sha' for AH 427s | proposal: 'sha' 427s | token: '' '' "sha" '' 427s | token: '' "sha" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'sha;modp2048' for AH 427s | proposal: 'sha;modp2048' 427s | token: '' '' "sha" ';' 427s | token: '' "sha" ';' "modp2048" '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA1_96[_0] 427s | token: ';' "modp2048" '' '' 427s | parsing dh: 427s | appending AH DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring AH DH algorithm MODP2048 as PFS policy is disabled 427s | parsing 'sha1' for AH 427s | proposal: 'sha1' 427s | token: '' '' "sha1" '' 427s | token: '' "sha1" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA1_96[_0] 427s | token: '' '' '' 427s | parsing 'sha2' for AH 427s | proposal: 'sha2' 427s | token: '' '' "sha2" '' 427s | token: '' "sha2" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s | parsing 'sha256' for AH 427s | proposal: 'sha256' 427s | token: '' '' "sha256" '' 427s | token: '' "sha256" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s | parsing 'sha384' for AH 427s | proposal: 'sha384' 427s | token: '' '' "sha384" '' 427s 3DES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'esp=3des-sha1;modp8192,3des-sha2;modp8192' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'esp=3des-sha1-modp8192,3des-sha2-modp2048' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1_96 427s 3DES_CBC-HMAC_SHA2_256_128 427s algparse -v2 'ah' (expect SUCCESS) 427s HMAC_SHA2_512_256 427s HMAC_SHA2_256_128 427s algparse -v2 'ah=' (expect ERROR) 427s ERROR: AH proposal is empty 427s algparse -v2 'ah=md5' (expect SUCCESS) 427s HMAC_MD5_96 427s algparse -v2 'ah=sha' (expect SUCCESS) 427s HMAC_SHA1_96 427s algparse -v2 'ah=sha;modp2048' (expect SUCCESS) 427s HMAC_SHA1_96 427s algparse -v2 'ah=sha1' (expect SUCCESS) 427s HMAC_SHA1_96 427s algparse -v2 'ah=sha2' (expect SUCCESS) 427s HMAC_SHA2_256_128 427s algparse -v2 'ah=sha256' (expect SUCCESS) 427s HMAC_SHA2_256_128 427s algparse -v2 'ah=sha384' (expect SUCCESS) 427s HMAC_SHA2_384_192 427s algparse -v2 'ah=sha512' (expect SUCCESS) 427s HMAC_SHA2_512_256 427s algparse -v2 'ah=sha2_256' (expect SUCCESS) 427s HMAC_SHA2_256_128 427s algparse -v2 'ah=sha2_384' (expect SUCCESS) 427s HMAC_SHA2_384_192 427s algparse -v2 'ah=sha2_512' (expect SUCCESS) 427s HMAC_SHA2_512_256 427s algparse -v2 'ah=aes_xcbc' (expect SUCCESS) 427s AES_XCBC_96 427s algparse -v2 'ah=sha2-none' (expect SUCCESS) 427s HMAC_SHA2_256_128 427s algparse -v2 'ah=sha2;none' (expect SUCCESS) 427s HMAC_SHA2_256_128 427s algparse -v2 'ah=sha1-modp8192,sha1-modp8192,sha1-modp8192' (expect SUCCESS) 427s HMAC_SHA1_96 427s algparse -v2 'ah=aes-sha1' (expect ERROR) 427s ERROR: AH integrity algorithm 'aes' is not recognized 427s algparse -v2 'ah=vanityhash1' (expect ERROR) 427s | token: '' "sha384" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_384_192[_0] 427s | token: '' '' '' 427s | parsing 'sha512' for AH 427s | proposal: 'sha512' 427s | token: '' '' "sha512" '' 427s | token: '' "sha512" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_512_256[_0] 427s | token: '' '' '' 427s | parsing 'sha2_256' for AH 427s | proposal: 'sha2_256' 427s | token: '' '' "sha2_256" '' 427s | token: '' "sha2_256" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '' '' '' 427s | parsing 'sha2_384' for AH 427s | proposal: 'sha2_384' 427s | token: '' '' "sha2_384" '' 427s | token: '' "sha2_384" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_384_192[_0] 427s | token: '' '' '' 427s | parsing 'sha2_512' for AH 427s | proposal: 'sha2_512' 427s | token: '' '' "sha2_512" '' 427s | token: '' "sha2_512" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_512_256[_0] 427s | token: '' '' '' 427s | parsing 'aes_xcbc' for AH 427s | proposal: 'aes_xcbc' 427s | token: '' '' "aes_xcbc" '' 427s | token: '' "aes_xcbc" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm AES_XCBC_96[_0] 427s | token: '' '' '' 427s | parsing 'sha2-none' for AH 427s | proposal: 'sha2-none' 427s | token: '' '' "sha2" '-' 427s | token: '' "sha2" '-' "none" '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: '-' "none" '' '' 427s | parsing dh: 427s | appending AH DH algorithm NONE[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring redundant AH DH algorithm NONE as PFS policy is disabled 427s | parsing 'sha2;none' for AH 427s | proposal: 'sha2;none' 427s | token: '' '' "sha2" ';' 427s | token: '' "sha2" ';' "none" '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA2_256_128[_0] 427s | token: ';' "none" '' '' 427s | parsing dh: 427s | appending AH DH algorithm NONE[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring redundant AH DH algorithm NONE as PFS policy is disabled 427s | parsing 'sha1-modp8192,sha1-modp8192,sha1-modp8192' for AH 427s | proposal: 'sha1-modp8192' 427s | token: '' '' "sha1" '-' 427s | token: '' "sha1" '-' "modp8192" '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending AH DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: 'sha1-modp8192' 427s | token: '' '' "sha1" '-' 427s | token: '' "sha1" '-' "modp8192" '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending AH DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | proposal: 'sha1-modp8192' 427s | token: '' '' "sha1" '-' 427s | token: '' "sha1" '-' "modp8192" '' 427s | parsing integ: 427s | appending AH integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "modp8192" '' '' 427s | parsing dh: 427s | appending AH DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: ignoring AH DH algorithm MODP8192 as PFS policy is disabled 427s | parsing 'aes-sha1' for AH 427s | proposal: 'aes-sha1' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '' 427s | parsing integ: 427s | ike_alg_byname() failed: AH integrity algorithm 'aes' is not recognized 427s | lookup for integrity algorithm 'aes' failed 427s | or - failed 'AH integrity algorithm 'aes' is not recognized') 427s | parsing 'vanityhash1' for AH 427s | proposal: 'vanityhash1' 427s | token: '' '' "vanityhash1" '' 427s | token: '' "vanityhash1" '' '' 427s | parsing integ: 427s | ike_alg_byname() failed: AH integrity algorithm 'vanityhash1' is not recognized 427s | lookup for integrity algorithm 'vanityhash1' failed 427s | or - failed 'AH integrity algorithm 'vanityhash1' is not recognized') 427s | parsing 'aes_gcm_c-256' for AH 427s | proposal: 'aes_gcm_c-256' 427s | token: '' '' "aes_gcm_c" '-' 427s | token: '' "aes_gcm_c" '-' "256" '' 427s | parsing integ: 427s | ike_alg_byname() failed: AH integrity algorithm 'aes_gcm_c' is not recognized 427s | lookup for integrity algorithm 'aes_gcm_c' failed 427s | or - failed 'AH integrity algorithm 'aes_gcm_c' is not recognized') 427s | parsing 'id3' for AH 427s | proposal: 'id3' 427s | token: '' '' "id3" '' 427s | token: '' "id3" '' '' 427s | parsing integ: 427s | ike_alg_byname() failed: AH integrity algorithm 'id3' is not recognized 427s | lookup for integrity algorithm 'id3' failed 427s | or - failed 'AH integrity algorithm 'id3' is not recognized') 427s | parsing '3des' for AH 427s | proposal: '3des' 427s | token: '' '' "3des" '' 427s | token: '' "3des" '' '' 427s | parsing integ: 427s | ike_alg_byname() failed: AH integrity algorithm '3des' is not recognized 427s | lookup for integrity algorithm '3des' failed 427s | or - failed 'AH integrity algorithm '3des' is not recognized') 427s | parsing 'null' for AH 427s | proposal: 'null' 427s | token: '' '' "null" '' 427s | token: '' "null" '' '' 427s | parsing integ: 427s | appending AH integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm' for AH 427s | proposal: 'aes_gcm' 427s | token: '' '' "aes_gcm" '' 427s | token: '' "aes_gcm" '' '' 427s | parsing integ: 427s | ike_alg_byname() failed: AH integrity algorithm 'aes_gcm' is not recognized 427s | lookup for integrity algorithm 'aes_gcm' failed 427s | or - failed 'AH integrity algorithm 'aes_gcm' is not recognized') 427s | parsing 'aes_ccm' for AH 427s | proposal: 'aes_ccm' 427s | token: '' '' "aes_ccm" '' 427s | token: '' "aes_ccm" '' '' 427s | parsing integ: 427s | ike_alg_byname() failed: AH integrity algorithm 'aes_ccm' is not recognized 427s | lookup for integrity algorithm 'aes_ccm' failed 427s | or - failed 'AH integrity algorithm 'aes_ccm' is not recognized') 427s | parsing 'ripemd' for AH 427s | proposal: 'ripemd' 427s | token: '' '' "ripemd" '' 427s | token: '' "ripemd" '' '' 427s | parsing integ: 427s | ike_alg_byname() failed: AH integrity algorithm 'ripemd' is not recognized 427s | lookup for integrity algorithm 'ripemd' failed 427s | or - failed 'AH integrity algorithm 'ripemd' is not recognized') 427s | parsing 'AES_GCM_16_256,AES_GCM_16_128,CHACHA20_POLY1305,AES_CBC_256,AES_CBC_128' for IKE 427s | proposal: 'AES_GCM_16_256' 427s | token: '' '' "AES_GCM_16_256" '' 427s | token: '' "AES_GCM_16_256" '' '' 427s | ike_alg_byname() failed: IKE encryption algorithm 'AES_GCM_16_256' is not recognized 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_GCM_16[_256] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm NONE[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | proposal: 'AES_GCM_16_128' 427s | token: '' '' "AES_GCM_16_128" '' 427s | token: '' "AES_GCM_16_128" '' '' 427s | ike_alg_byname() failed: IKE encryption algorithm 'AES_GCM_16_128' is not recognized 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_GCM_16[_128] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm NONE[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | proposal: 'CHACHA20_POLY1305' 427s | token: '' '' "CHACHA20_POLY1305" '' 427s | token: '' "CHACHA20_POLY1305" '' '' 427s | token: '' '' '' 427s | appending IKE encryption algorithm CHACHA20_POLY1305[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm NONE[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | proposal: 'AES_CBC_256' 427s | token: '' '' "AES_CBC_256" '' 427s | token: '' "AES_CBC_256" '' '' 427s | ike_alg_byname() failed: IKE encryption algorithm 'AES_CBC_256' is not recognized 427s | token: '' '' '' 427s ERROR: AH integrity algorithm 'vanityhash1' is not recognized 427s algparse -v2 'ah=aes_gcm_c-256' (expect ERROR) 427s ERROR: AH integrity algorithm 'aes_gcm_c' is not recognized 427s algparse -v2 'ah=id3' (expect ERROR) 427s ERROR: AH integrity algorithm 'id3' is not recognized 427s algparse -v2 'ah=3des' (expect ERROR) 427s ERROR: AH integrity algorithm '3des' is not recognized 427s algparse -v2 'ah=null' (expect ERROR) 427s ERROR: AH cannot have 'none' as the integrity algorithm 427s algparse -v2 'ah=aes_gcm' (expect ERROR) 427s ERROR: AH integrity algorithm 'aes_gcm' is not recognized 427s algparse -v2 'ah=aes_ccm' (expect ERROR) 427s ERROR: AH integrity algorithm 'aes_ccm' is not recognized 427s algparse -v2 'ah=ripemd' (expect ERROR) 427s ERROR: AH integrity algorithm 'ripemd' is not recognized 427s algparse -v2 'ike' (expect SUCCESS) 427s AES_GCM_16_256-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s AES_GCM_16_128-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s CHACHA20_POLY1305-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s AES_CBC_256-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s AES_CBC_128-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=' (expect ERROR) 427s ERROR: IKE proposal is empty 427s algparse -v2 'ike=3des-sha1' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=3des-sha1' (expect SUCCESS) 427s | appending IKE encryption algorithm AES_CBC[_256] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | proposal: 'AES_CBC_128' 427s | token: '' '' "AES_CBC_128" '' 427s | token: '' "AES_CBC_128" '' '' 427s | ike_alg_byname() failed: IKE encryption algorithm 'AES_CBC_128' is not recognized 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_CBC[_128] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing '' for IKE 427s | parsing '3des-sha1' for IKE 427s | proposal: '3des-sha1' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '' '' '' 427s | - succeeded, advancing tokens 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing '3des-sha1' for IKE 427s | proposal: '3des-sha1' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '' 427s | token: '-' "sha1" '' '' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '' '' '' 427s | - succeeded, advancing tokens 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s 3DES_CBC-HMAC_SHA1-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=3des-sha1;modp1536' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1-MODP1536 427s algparse -v2 'ike=3des;dh21' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA2_512+HMAC_SHA2_256-DH21 427s algparse -v2 'ike=3des-sha1;dh21' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1-DH21 427s algparse -v2 'ike=3des-sha1-ecp_521' (expect SUCCESS) 427s 3DES_CBC-HMAC_SHA1-DH21 427s algparse -v2 'ike=3des+aes' (expect SUCCESS) 427s 3DES_CBC+AES_CBC-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=aes;none' (expect ERROR) 427s ERROR: IKE DH algorithm 'none' not permitted 427s algparse -v2 'ike=id2' (expect ERROR) 427s ERROR: IKE encryption algorithm 'id2' is not recognized 427s algparse -v2 'ike=3des-id2' (expect ERROR) 427s ERROR: IKE PRF algorithm 'id2' is not recognized 427s algparse -v2 'ike=aes_ccm' (expect ERROR) 427s ERROR: IKE encryption algorithm 'aes_ccm' is not supported 427s algparse -v2 'ike=aes-sha1-sha2-ecp_521' (expect ERROR) 427s ERROR: IKE DH algorithm 'sha2' is not recognized 427s algparse -v2 'ike=aes-sha2-sha2;ecp_521' (expect ERROR) 427s ERROR: IKE DH algorithm 'sha2' is not recognized 427s algparse -v2 'ike=aes-sha1_96-sha2-ecp_521' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96-HMAC_SHA2_256-DH21 427s algparse -v2 'ike=aes-sha1_96-sha2;ecp_521' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1_96-HMAC_SHA2_256-DH21 427s algparse -v2 'ike=aes+aes-sha1+sha1-modp8192+modp8192' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1-MODP8192 427s algparse -v2 'ike=3des+aes+aes-sha2+sha1+sha1-modp4096+modp8192+modp8192' (expect SUCCESS) 427s 3DES_CBC+AES_CBC-HMAC_SHA2_256+HMAC_SHA1-MODP4096+MODP8192 427s algparse -v2 'ike=aes+3des+aes-sha1+sha2+sha1-modp8192+modp4096+modp8192' (expect SUCCESS) 427s AES_CBC+3DES_CBC-HMAC_SHA1+HMAC_SHA2_256-MODP8192+MODP4096 427s algparse -v2 'ike=aes+aes+3des-sha1+sha1+sha2-modp8192+modp8192+modp4096' (expect SUCCESS) 427s AES_CBC+3DES_CBC-HMAC_SHA1+HMAC_SHA2_256-MODP8192+MODP4096 427s algparse -v2 'ike=aes+aes128+aes256' (expect SUCCESS) 427s AES_CBC-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=aes128+aes+aes256' (expect SUCCESS) 427s AES_CBC_128+AES_CBC-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=aes128+aes256+aes' (expect SUCCESS) 427s AES_CBC_128+AES_CBC_256+AES_CBC-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=aes-sha1-modp8192,aes-sha1-modp8192,aes-sha1-modp8192' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1-MODP8192 427s algparse -v2 'ike=aes-sha1-modp8192,aes-sha2-modp8192,aes-sha1-modp8192' (expect SUCCESS) 427s AES_CBC-HMAC_SHA1-MODP8192 427s AES_CBC-HMAC_SHA2_256-MODP8192 427s algparse -v2 'ike=aes_gcm' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=aes_gcm-sha2' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=aes_gcm-sha2-modp2048' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_256-MODP2048 427s algparse -v2 'ike=aes_gcm-sha2;modp2048' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_256-MODP2048 427s algparse -v2 'ike=aes_gcm-modp2048' (expect ERROR) 427s ERROR: IKE PRF algorithm 'modp2048' is not recognized 427s algparse -v2 'ike=aes_gcm;modp2048' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_512+HMAC_SHA2_256-MODP2048 427s algparse -v2 'ike=aes_gcm-none' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_512+HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=aes_gcm-none-sha2' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_256-DH19+DH20+DH21+DH31+MODP4096+MODP3072+MODP2048+MODP8192 427s algparse -v2 'ike=aes_gcm-none-sha2-modp2048' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_256-MODP2048 427s algparse -v2 'ike=aes_gcm-none-sha2;modp2048' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_256-MODP2048 427s algparse -v2 'ike=aes_gcm-none-modp2048' (expect ERROR) 427s ERROR: IKE PRF algorithm 'modp2048' is not recognized 427s algparse -v2 'ike=aes_gcm-none;modp2048' (expect SUCCESS) 427s AES_GCM_16-HMAC_SHA2_512+HMAC_SHA2_256-MODP2048 427s algparse -v2 'ike=aes_gcm-sha1-none-modp2048' (expect ERROR) 427s ERROR: IKE proposal contains unexpected 'modp2048' 427s algparse -v2 'ike=aes_gcm-sha1-none;modp2048' (expect ERROR) 427s ERROR: IKE proposal contains unexpected 'modp2048' 427s algparse -v2 'ike=aes+aes_gcm' (expect ERROR) 427s ERROR: AEAD and non-AEAD IKE encryption algorithm cannot be combined 427s algparse -v2 'ike=,' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=aes,' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=aes,,aes' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=,aes' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=-' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=+' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=;' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=aes-' (expect ERROR) 427s ERROR: IKE PRF algorithm is empty 427s algparse -v2 'ike=aes+' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=aes;' (expect ERROR) 427s ERROR: IKE DH algorithm is empty 427s algparse -v2 'ike=-aes' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=+aes' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=;aes' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=aes+-' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=aes+;' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s algparse -v2 'ike=aes++' (expect ERROR) 427s ERROR: IKE encryption algorithm is empty 427s | parsing '3des-sha1;modp1536' for IKE 427s | proposal: '3des-sha1;modp1536' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "modp1536" '' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: ';' "modp1536" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP1536[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | parsing '3des;dh21' for IKE 427s | proposal: '3des;dh21' 427s | token: '' '' "3des" ';' 427s | token: '' "3des" ';' "dh21" '' 427s | token: ';' "dh21" '' '' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | parsing dh: 427s | appending IKE DH algorithm DH21[_0] 427s | token: '' '' '' 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s testing -ta 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing '3des-sha1;dh21' for IKE 427s | proposal: '3des-sha1;dh21' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" ';' 427s | token: '-' "sha1" ';' "dh21" '' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: ';' "dh21" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm DH21[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | parsing '3des-sha1-ecp_521' for IKE 427s | proposal: '3des-sha1-ecp_521' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "ecp_521" '' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "ecp_521" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm DH21[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | parsing '3des+aes' for IKE 427s | proposal: '3des+aes' 427s | token: '' '' "3des" '+' 427s | token: '' "3des" '+' "aes" '' 427s | token: '+' "aes" '' '' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing 'aes;none' for IKE 427s | proposal: 'aes;none' 427s | token: '' '' "aes" ';' 427s | token: '' "aes" ';' "none" '' 427s | token: ';' "none" '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing dh: 427s | appending IKE DH algorithm NONE[_0] 427s | token: '' '' '' 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'id2' for IKE 427s | proposal: 'id2' 427s | token: '' '' "id2" '' 427s | token: '' "id2" '' '' 427s | ike_alg_byname() failed: IKE encryption algorithm 'id2' is not recognized 427s | ike_alg_byname() failed: IKE encryption algorithm 'id2' is not recognized 427s | parsing '3des-id2' for IKE 427s | proposal: '3des-id2' 427s | token: '' '' "3des" '-' 427s | token: '' "3des" '-' "id2" '' 427s | token: '-' "id2" '' '' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'id2' is not recognized 427s | lookup for PRF algorithm 'id2' failed 427s | - failed, saving error 'IKE PRF algorithm 'id2' is not recognized' and tossing result 427s | parsing integ: 427s | ike_alg_byname() failed: IKE integrity algorithm 'id2' is not recognized 427s | lookup for integrity algorithm 'id2' failed 427s | - and - failed, returning earlier PRF error 'IKE PRF algorithm 'id2' is not recognized' and discarding INTEG error 'IKE integrity algorithm 'id2' is not recognized') 427s | parsing 'aes_ccm' for IKE 427s | proposal: 'aes_ccm' 427s | token: '' '' "aes_ccm" '' 427s | token: '' "aes_ccm" '' '' 427s | alg_byname_ok() failed: IKE encryption algorithm 'aes_ccm' is not supported 427s | parsing 'aes-sha1-sha2-ecp_521' for IKE 427s | proposal: 'aes-sha1-sha2-ecp_521' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "sha2" '-' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "sha2" '-' "ecp_521" '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | ike_alg_byname() failed: IKE DH algorithm 'sha2' is not recognized 427s | lookup for DH algorithm 'sha2' failed 427s | ... failed 'IKE DH algorithm 'sha2' is not recognized' 427s | parsing 'aes-sha2-sha2;ecp_521' for IKE 427s | proposal: 'aes-sha2-sha2;ecp_521' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha2" '-' 427s | token: '-' "sha2" '-' "sha2" ';' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '-' "sha2" ';' "ecp_521" '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | ike_alg_byname() failed: IKE DH algorithm 'sha2' is not recognized 427s | lookup for DH algorithm 'sha2' failed 427s | ... failed 'IKE DH algorithm 'sha2' is not recognized' 427s | parsing 'aes-sha1_96-sha2-ecp_521' for IKE 427s | proposal: 'aes-sha1_96-sha2-ecp_521' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1_96" '-' 427s | token: '-' "sha1_96" '-' "sha2" '-' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'sha1_96' is not recognized 427s | lookup for PRF algorithm 'sha1_96' failed 427s | - failed, saving error 'IKE PRF algorithm 'sha1_96' is not recognized' and tossing result 427s | parsing integ: 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "sha2" '-' "ecp_521" '' 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '-' "ecp_521" '' '' 427s | parsing dh: 427s | appending IKE DH algorithm DH21[_0] 427s | token: '' '' '' 427s | parsing 'aes-sha1_96-sha2;ecp_521' for IKE 427s | proposal: 'aes-sha1_96-sha2;ecp_521' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1_96" '-' 427s | token: '-' "sha1_96" '-' "sha2" ';' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'sha1_96' is not recognized 427s | lookup for PRF algorithm 'sha1_96' failed 427s | - failed, saving error 'IKE PRF algorithm 'sha1_96' is not recognized' and tossing result 427s | parsing integ: 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | token: '-' "sha2" ';' "ecp_521" '' 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: ';' "ecp_521" '' '' 427s | parsing dh: 427s | appending IKE DH algorithm DH21[_0] 427s | token: '' '' '' 427s | parsing 'aes+aes-sha1+sha1-modp8192+modp8192' for IKE 427s | proposal: 'aes+aes-sha1+sha1-modp8192+modp8192' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "aes" '-' 427s | token: '+' "aes" '-' "sha1" '+' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | token: '-' "sha1" '+' "sha1" '-' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s ipsec algparse: discarding duplicate IKE encryption algorithm AES_CBC 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '+' "sha1" '-' "modp8192" '+' 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "modp8192" '+' "modp8192" '' 427s ipsec algparse: discarding duplicate IKE PRF algorithm HMAC_SHA1 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '+' "modp8192" '' '' 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: discarding duplicate IKE DH algorithm MODP8192 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | parsing '3des+aes+aes-sha2+sha1+sha1-modp4096+modp8192+modp8192' for IKE 427s | proposal: '3des+aes+aes-sha2+sha1+sha1-modp4096+modp8192+modp8192' 427s | token: '' '' "3des" '+' 427s | token: '' "3des" '+' "aes" '+' 427s | token: '+' "aes" '+' "aes" '-' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | token: '+' "aes" '-' "sha2" '+' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | token: '-' "sha2" '+' "sha1" '+' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s ipsec algparse: discarding duplicate IKE encryption algorithm AES_CBC 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '+' "sha1" '+' "sha1" '-' 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '+' "sha1" '-' "modp4096" '+' 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "modp4096" '+' "modp8192" '+' 427s ipsec algparse: discarding duplicate IKE PRF algorithm HMAC_SHA1 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP4096[_0] 427s | token: '+' "modp8192" '+' "modp8192" '' 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '+' "modp8192" '' '' 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: discarding duplicate IKE DH algorithm MODP8192 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | parsing 'aes+3des+aes-sha1+sha2+sha1-modp8192+modp4096+modp8192' for IKE 427s | proposal: 'aes+3des+aes-sha1+sha2+sha1-modp8192+modp4096+modp8192' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "3des" '+' 427s | token: '+' "3des" '+' "aes" '-' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | token: '+' "aes" '-' "sha1" '+' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s | token: '-' "sha1" '+' "sha2" '+' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s ipsec algparse: discarding duplicate IKE encryption algorithm AES_CBC 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '+' "sha2" '+' "sha1" '-' 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '+' "sha1" '-' "modp8192" '+' 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "modp8192" '+' "modp4096" '+' 427s ipsec algparse: discarding duplicate IKE PRF algorithm HMAC_SHA1 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '+' "modp4096" '+' "modp8192" '' 427s | appending IKE DH algorithm MODP4096[_0] 427s | token: '+' "modp8192" '' '' 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s ipsec algparse: discarding duplicate IKE DH algorithm MODP8192 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes+aes+3des-sha1+sha1+sha2-modp8192+modp8192+modp4096' for IKE 427s | proposal: 'aes+aes+3des-sha1+sha1+sha2-modp8192+modp8192+modp4096' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "aes" '+' 427s | token: '+' "aes" '+' "3des" '-' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | token: '+' "3des" '-' "sha1" '+' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | token: '-' "sha1" '+' "sha1" '+' 427s | appending IKE encryption algorithm 3DES_CBC[_0] 427s ipsec algparse: discarding duplicate IKE encryption algorithm AES_CBC 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '+' "sha1" '+' "sha2" '-' 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '+' "sha2" '-' "modp8192" '+' 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '-' "modp8192" '+' "modp8192" '+' 427s ipsec algparse: discarding duplicate IKE PRF algorithm HMAC_SHA1 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '+' "modp8192" '+' "modp4096" '' 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '+' "modp4096" '' '' 427s | appending IKE DH algorithm MODP4096[_0] 427s | token: '' '' '' 427s ipsec algparse: discarding duplicate IKE DH algorithm MODP8192 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | parsing 'aes+aes128+aes256' for IKE 427s | proposal: 'aes+aes128+aes256' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "aes128" '+' 427s | token: '+' "aes128" '+' "aes256" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | ike_alg_byname() failed: IKE encryption algorithm 'aes128' is not recognized 427s | token: '+' "aes256" '' '' 427s | appending IKE encryption algorithm AES_CBC[_128] 427s | ike_alg_byname() failed: IKE encryption algorithm 'aes256' is not recognized 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_CBC[_256] 427s ipsec algparse: discarding duplicate IKE encryption algorithm AES_CBC_128 427s ipsec algparse: discarding duplicate IKE encryption algorithm AES_CBC_256 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing 'aes128+aes+aes256' for IKE 427s | proposal: 'aes128+aes+aes256' 427s | token: '' '' "aes128" '+' 427s | token: '' "aes128" '+' "aes" '+' 427s | ike_alg_byname() failed: IKE encryption algorithm 'aes128' is not recognized 427s | token: '+' "aes" '+' "aes256" '' 427s | appending IKE encryption algorithm AES_CBC[_128] 427s | token: '+' "aes256" '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | ike_alg_byname() failed: IKE encryption algorithm 'aes256' is not recognized 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_CBC[_256] 427s ipsec algparse: discarding duplicate IKE encryption algorithm AES_CBC_256 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing 'aes128+aes256+aes' for IKE 427s | proposal: 'aes128+aes256+aes' 427s | token: '' '' "aes128" '+' 427s | token: '' "aes128" '+' "aes256" '+' 427s | ike_alg_byname() failed: IKE encryption algorithm 'aes128' is not recognized 427s | token: '+' "aes256" '+' "aes" '' 427s | appending IKE encryption algorithm AES_CBC[_128] 427s | ike_alg_byname() failed: IKE encryption algorithm 'aes256' is not recognized 427s | token: '+' "aes" '' '' 427s | appending IKE encryption algorithm AES_CBC[_256] 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing 'aes-sha1-modp8192,aes-sha1-modp8192,aes-sha1-modp8192' for IKE 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "modp8192" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "modp8192" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "modp8192" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | parsing 'aes-sha1-modp8192,aes-sha2-modp8192,aes-sha1-modp8192' for IKE 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "modp8192" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | proposal: 'aes-sha2-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha2" '-' 427s | token: '-' "sha2" '-' "modp8192" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '-' "modp8192" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | proposal: 'aes-sha1-modp8192' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "modp8192" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "modp8192" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP8192[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm HMAC_SHA1_96[_0] 427s | parsing 'aes_gcm' for IKE 427s | proposal: 'aes_gcm' 427s | token: '' '' "aes_gcm" '' 427s | token: '' "aes_gcm" '' '' 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm NONE[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing 'aes_gcm-sha2' for IKE 427s | proposal: 'aes_gcm-sha2' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "sha2" '' 427s | token: '-' "sha2" '' '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '' '' '' 427s | - succeeded, advancing tokens 427s | appending IKE integrity algorithm NONE[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing 'aes_gcm-sha2-modp2048' for IKE 427s | proposal: 'aes_gcm-sha2-modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "sha2" '-' 427s | token: '-' "sha2" '-' "modp2048" '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '-' "modp2048" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm NONE[_0] 427s | parsing 'aes_gcm-sha2;modp2048' for IKE 427s | proposal: 'aes_gcm-sha2;modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "sha2" ';' 427s | token: '-' "sha2" ';' "modp2048" '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: ';' "modp2048" '' '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s | appending IKE integrity algorithm NONE[_0] 427s | parsing 'aes_gcm-modp2048' for IKE 427s | proposal: 'aes_gcm-modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "modp2048" '' 427s | token: '-' "modp2048" '' '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'modp2048' is not recognized 427s | lookup for PRF algorithm 'modp2048' failed 427s | - failed, saving error 'IKE PRF algorithm 'modp2048' is not recognized' and tossing result 427s | parsing integ: 427s | ike_alg_byname() failed: IKE integrity algorithm 'modp2048' is not recognized 427s | lookup for integrity algorithm 'modp2048' failed 427s | - and - failed, returning earlier PRF error 'IKE PRF algorithm 'modp2048' is not recognized' and discarding INTEG error 'IKE integrity algorithm 'modp2048' is not recognized') 427s | parsing 'aes_gcm;modp2048' for IKE 427s | proposal: 'aes_gcm;modp2048' 427s | token: '' '' "aes_gcm" ';' 427s | token: '' "aes_gcm" ';' "modp2048" '' 427s | token: ';' "modp2048" '' '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing dh: 427s | appending IKE DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm NONE[_0] 427s | parsing 'aes_gcm-none' for IKE 427s | proposal: 'aes_gcm-none' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "none" '' 427s | token: '-' "none" '' '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'none' is not recognized 427s | lookup for PRF algorithm 'none' failed 427s | - failed, saving error 'IKE PRF algorithm 'none' is not recognized' and tossing result 427s | parsing integ: 427s | appending IKE integrity algorithm NONE[_0] 427s | token: '' '' '' 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing 'aes_gcm-none-sha2' for IKE 427s | proposal: 'aes_gcm-none-sha2' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "none" '-' 427s | token: '-' "none" '-' "sha2" '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'none' is not recognized 427s | lookup for PRF algorithm 'none' failed 427s | - failed, saving error 'IKE PRF algorithm 'none' is not recognized' and tossing result 427s | parsing integ: 427s | appending IKE integrity algorithm NONE[_0] 427s | token: '-' "sha2" '' '' 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '' '' '' 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing 'aes_gcm-none-sha2-modp2048' for IKE 427s | proposal: 'aes_gcm-none-sha2-modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "none" '-' 427s | token: '-' "none" '-' "sha2" '-' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'none' is not recognized 427s | lookup for PRF algorithm 'none' failed 427s | - failed, saving error 'IKE PRF algorithm 'none' is not recognized' and tossing result 427s | parsing integ: 427s | appending IKE integrity algorithm NONE[_0] 427s | token: '-' "sha2" '-' "modp2048" '' 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: '-' "modp2048" '' '' 427s | parsing dh: 427s | appending IKE DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm-none-sha2;modp2048' for IKE 427s | proposal: 'aes_gcm-none-sha2;modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "none" '-' 427s | token: '-' "none" '-' "sha2" ';' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'none' is not recognized 427s | lookup for PRF algorithm 'none' failed 427s | - failed, saving error 'IKE PRF algorithm 'none' is not recognized' and tossing result 427s | parsing integ: 427s | appending IKE integrity algorithm NONE[_0] 427s | token: '-' "sha2" ';' "modp2048" '' 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | token: ';' "modp2048" '' '' 427s | parsing dh: 427s | appending IKE DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s | parsing 'aes_gcm-none-modp2048' for IKE 427s | proposal: 'aes_gcm-none-modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "none" '-' 427s | token: '-' "none" '-' "modp2048" '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'none' is not recognized 427s | lookup for PRF algorithm 'none' failed 427s | - failed, saving error 'IKE PRF algorithm 'none' is not recognized' and tossing result 427s | parsing integ: 427s | appending IKE integrity algorithm NONE[_0] 427s | token: '-' "modp2048" '' '' 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'modp2048' is not recognized 427s | lookup for PRF algorithm 'modp2048' failed 427s | -- failed 'IKE PRF algorithm 'modp2048' is not recognized' 427s | parsing 'aes_gcm-none;modp2048' for IKE 427s | proposal: 'aes_gcm-none;modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "none" ';' 427s | token: '-' "none" ';' "modp2048" '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | ike_alg_byname() failed: IKE PRF algorithm 'none' is not recognized 427s | lookup for PRF algorithm 'none' failed 427s | - failed, saving error 'IKE PRF algorithm 'none' is not recognized' and tossing result 427s | parsing integ: 427s | appending IKE integrity algorithm NONE[_0] 427s | token: ';' "modp2048" '' '' 427s | parsing dh: 427s | appending IKE DH algorithm MODP2048[_0] 427s | token: '' '' '' 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | parsing 'aes_gcm-sha1-none-modp2048' for IKE 427s | proposal: 'aes_gcm-sha1-none-modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "none" '-' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "none" '-' "modp2048" '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm NONE[_0] 427s | token: '-' "modp2048" '' '' 427s | parsing 'aes_gcm-sha1-none;modp2048' for IKE 427s | proposal: 'aes_gcm-sha1-none;modp2048' 427s | token: '' '' "aes_gcm" '-' 427s | token: '' "aes_gcm" '-' "sha1" '-' 427s | token: '-' "sha1" '-' "none" ';' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | parsing prf: 427s | appending IKE PRF algorithm HMAC_SHA1[_0] 427s | token: '-' "none" ';' "modp2048" '' 427s | - succeeded, advancing tokens 427s | parsing dh: 427s | appending IKE DH algorithm NONE[_0] 427s | token: ';' "modp2048" '' '' 427s | parsing 'aes+aes_gcm' for IKE 427s | proposal: 'aes+aes_gcm' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "aes_gcm" '' 427s | token: '+' "aes_gcm" '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_GCM_16[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | parsing ',' for IKE 427s | proposal: '' 427s | token: '' '' "" '' 427s | token: '' "" '' '' 427s | parsing 'aes,' for IKE 427s | proposal: 'aes' 427s | token: '' '' "aes" '' 427s | token: '' "aes" '' '' 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | proposal: '' 427s | token: '' '' "" '' 427s | token: '' "" '' '' 427s | parsing 'aes,,aes' for IKE 427s | proposal: 'aes' 427s | token: '' '' "aes" '' 427s | token: '' "aes" '' '' 427s | token: '' '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_512[_0] 427s | appending IKE PRF algorithm HMAC_SHA2_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_512_256[_0] 427s | appending IKE integrity algorithm HMAC_SHA2_256_128[_0] 427s | appending IKE DH algorithm DH19[_0] 427s | appending IKE DH algorithm DH20[_0] 427s | appending IKE DH algorithm DH21[_0] 427s | appending IKE DH algorithm DH31[_0] 427s | appending IKE DH algorithm MODP4096[_0] 427s | appending IKE DH algorithm MODP3072[_0] 427s | appending IKE DH algorithm MODP2048[_0] 427s | appending IKE DH algorithm MODP8192[_0] 427s | proposal: '' 427s | token: '' '' "" '' 427s | token: '' "" '' '' 427s | parsing ',aes' for IKE 427s | proposal: '' 427s | token: '' '' "" '' 427s | token: '' "" '' '' 427s | parsing '-' for IKE 427s | proposal: '-' 427s | token: '' '' "" '-' 427s | token: '' "" '-' "" '' 427s | parsing '+' for IKE 427s | proposal: '+' 427s | token: '' '' "" '+' 427s | token: '' "" '+' "" '' 427s | parsing ';' for IKE 427s | proposal: ';' 427s | token: '' '' "" ';' 427s | token: '' "" ';' "" '' 427s | parsing 'aes-' for IKE 427s | proposal: 'aes-' 427s | token: '' '' "aes" '-' 427s | token: '' "aes" '-' "" '' 427s | token: '-' "" '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing prf: 427s | - failed, saving error 'IKE PRF algorithm is empty' and tossing result 427s | parsing integ: 427s | - and - failed, returning earlier PRF error 'IKE PRF algorithm is empty' and discarding INTEG error 'IKE integrity algorithm is empty') 427s | parsing 'aes+' for IKE 427s | proposal: 'aes+' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "" '' 427s | token: '+' "" '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing 'aes;' for IKE 427s | proposal: 'aes;' 427s | token: '' '' "aes" ';' 427s | token: '' "aes" ';' "" '' 427s | token: ';' "" '' '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing dh: 427s | ... failed 'IKE DH algorithm is empty' 427s | parsing '-aes' for IKE 427s | proposal: '-aes' 427s | token: '' '' "" '-' 427s | token: '' "" '-' "aes" '' 427s | parsing '+aes' for IKE 427s | proposal: '+aes' 427s | token: '' '' "" '+' 427s | token: '' "" '+' "aes" '' 427s | parsing ';aes' for IKE 427s | proposal: ';aes' 427s | token: '' '' "" ';' 427s | token: '' "" ';' "aes" '' 427s | parsing 'aes+-' for IKE 427s | proposal: 'aes+-' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "" '-' 427s | token: '+' "" '-' "" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing 'aes+;' for IKE 427s | proposal: 'aes+;' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "" ';' 427s | token: '+' "" ';' "" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s | parsing 'aes++' for IKE 427s | proposal: 'aes++' 427s | token: '' '' "aes" '+' 427s | token: '' "aes" '+' "" '+' 427s | token: '+' "" '+' "" '' 427s | appending IKE encryption algorithm AES_CBC[_0] 427s ipsec algparse: leak detective found no leaks 427s ipsec algparse: Encryption algorithms: 427s ipsec algparse: AES_CCM_16 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm, aes_ccm_c 427s ipsec algparse: AES_CCM_12 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm_b 427s ipsec algparse: AES_CCM_8 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm_a 427s ipsec algparse: 3DES_CBC [*192] IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CBC) 3des 427s ipsec algparse: CAMELLIA_CTR {256,192,*128} IKEv1: ESP IKEv2: ESP 427s ipsec algparse: CAMELLIA_CBC {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP NSS(CBC) camellia 427s ipsec algparse: AES_GCM_16 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm, aes_gcm_c 427s ipsec algparse: AES_GCM_12 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm_b 427s ipsec algparse: AES_GCM_8 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm_a 427s ipsec algparse: AES_CTR {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CTR) aesctr 427s ipsec algparse: AES_CBC {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CBC) aes 427s ipsec algparse: NULL_AUTH_AES_GMAC {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_gmac 427s ipsec algparse: NULL [] IKEv1: ESP IKEv2: ESP NULL 427s ipsec algparse: CHACHA20_POLY1305 [*256] IKEv1: IKEv2: IKE ESP NSS(AEAD) chacha20poly1305 427s ipsec algparse: Hash algorithms: 427s ipsec algparse: MD5 IKEv1: IKE IKEv2: NSS 427s ipsec algparse: SHA1 IKEv1: IKE IKEv2: IKE FIPS NSS sha 427s ipsec algparse: SHA2_256 IKEv1: IKE IKEv2: IKE FIPS NSS sha2, sha256 427s ipsec algparse: SHA2_384 IKEv1: IKE IKEv2: IKE FIPS NSS sha384 427s ipsec algparse: SHA2_512 IKEv1: IKE IKEv2: IKE FIPS NSS sha512 427s ipsec algparse: IDENTITY IKEv1: IKEv2: FIPS 427s ipsec algparse: PRF algorithms: 427s ipsec algparse: HMAC_MD5 IKEv1: IKE IKEv2: IKE NSS md5 427s ipsec algparse: HMAC_SHA1 IKEv1: IKE IKEv2: IKE FIPS NSS sha, sha1 427s ipsec algparse: HMAC_SHA2_256 IKEv1: IKE IKEv2: IKE FIPS NSS sha2, sha256, sha2_256 427s ipsec algparse: HMAC_SHA2_384 IKEv1: IKE IKEv2: IKE FIPS NSS sha384, sha2_384 427s ipsec algparse: HMAC_SHA2_512 IKEv1: IKE IKEv2: IKE FIPS NSS sha512, sha2_512 427s ipsec algparse: AES_XCBC IKEv1: IKEv2: IKE native(XCBC) aes128_xcbc 427s ipsec algparse: Integrity algorithms: 427s ipsec algparse: HMAC_MD5_96 IKEv1: IKE ESP AH IKEv2: IKE ESP AH NSS md5, hmac_md5 427s ipsec algparse: HMAC_SHA1_96 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha, sha1, sha1_96, hmac_sha1 427s ipsec algparse: HMAC_SHA2_512_256 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha512, sha2_512, sha2_512_256, hmac_sha2_512 427s ipsec algparse: HMAC_SHA2_384_192 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha384, sha2_384, sha2_384_192, hmac_sha2_384 427s ipsec algparse: HMAC_SHA2_256_128 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha2, sha256, sha2_256, sha2_256_128, hmac_sha2_256 427s ipsec algparse: HMAC_SHA2_256_TRUNCBUG IKEv1: ESP AH IKEv2: AH 427s ipsec algparse: AES_XCBC_96 IKEv1: ESP AH IKEv2: IKE ESP AH native(XCBC) aes_xcbc, aes128_xcbc, aes128_xcbc_96 427s ipsec algparse: AES_CMAC_96 IKEv1: ESP AH IKEv2: ESP AH FIPS aes_cmac 427s ipsec algparse: NONE IKEv1: ESP IKEv2: IKE ESP FIPS null 427s ipsec algparse: DH algorithms: 427s ipsec algparse: NONE IKEv1: IKEv2: IKE ESP AH FIPS NSS(MODP) null, dh0 427s ipsec algparse: MODP1536 IKEv1: IKE ESP AH IKEv2: IKE ESP AH NSS(MODP) dh5 427s ipsec algparse: MODP2048 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh14 427s ipsec algparse: MODP3072 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh15 427s ipsec algparse: MODP4096 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh16 427s ipsec algparse: MODP6144 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh17 427s ipsec algparse: MODP8192 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh18 427s ipsec algparse: DH19 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_256, ecp256 427s ipsec algparse: DH20 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_384, ecp384 427s ipsec algparse: DH21 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_521, ecp521 427s ipsec algparse: DH31 IKEv1: IKE IKEv2: IKE ESP AH NSS(ECP) curve25519 427s ipsec algparse: IPCOMP algorithms: 427s ipsec algparse: DEFLATE IKEv1: ESP AH IKEv2: ESP AH FIPS 427s ipsec algparse: LZS IKEv1: IKEv2: ESP AH FIPS 427s ipsec algparse: LZJH IKEv1: IKEv2: ESP AH FIPS 427s ipsec algparse: testing CAMELLIA_CBC: 427s ipsec algparse: Camellia: 16 bytes with 128-bit key 427s | decode_to_chunk() raw_key: input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_chunk() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9430 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: CAMELLIA_CBC 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9438 427s | decode_to_mac() IV: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_mac() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() new IV: : input "0x07 92 3A 39 EB 0A 81 7D 1C 4D 87 BD B8 2D 1F 1C" 427s | decode_to_chunk() output: 427s | 07 92 3a 39 eb 0a 81 7d 1c 4d 87 bd b8 2d 1f 1c ..:9...}.M...-.. 427s | decode_to_chunk() plaintext: : input "0x80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_chunk() output: 427s | 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() ciphertext: : input "0x07 92 3A 39 EB 0A 81 7D 1C 4D 87 BD B8 2D 1F 1C" 427s | decode_to_chunk() output: 427s | 07 92 3a 39 eb 0a 81 7d 1c 4d 87 bd b8 2d 1f 1c ..:9...}.M...-.. 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - exit 427s | verify_bytes() Camellia: 16 bytes with 128-bit key: encrypt: ok 427s | verify_bytes() Camellia: 16 bytes with 128-bit key: updated CBC IV: ok 427s | decode_to_mac() IV: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_mac() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() new IV: : input "0x07 92 3A 39 EB 0A 81 7D 1C 4D 87 BD B8 2D 1F 1C" 427s | decode_to_chunk() output: 427s | 07 92 3a 39 eb 0a 81 7d 1c 4d 87 bd b8 2d 1f 1c ..:9...}.M...-.. 427s | decode_to_chunk() ciphertext: : input "0x07 92 3A 39 EB 0A 81 7D 1C 4D 87 BD B8 2D 1F 1C" 427s | decode_to_chunk() output: 427s | 07 92 3a 39 eb 0a 81 7d 1c 4d 87 bd b8 2d 1f 1c ..:9...}.M...-.. 427s | decode_to_chunk() plaintext: : input "0x80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_chunk() output: 427s | 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - exit 427s | verify_bytes() Camellia: 16 bytes with 128-bit key: decrypt: ok 427s | verify_bytes() Camellia: 16 bytes with 128-bit key: updated CBC IV: ok 427s ipsec algparse: Camellia: 16 bytes with 128-bit key 427s | decode_to_chunk() raw_key: input "0x00 11 22 33 44 55 66 77 88 99 AA BB CC DD EE FF" 427s | decode_to_chunk() output: 427s | 00 11 22 33 44 55 66 77 88 99 aa bb cc dd ee ff .."3DUfw........ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9430 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: CAMELLIA_CBC 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9438 427s | decode_to_mac() IV: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_mac() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() new IV: : input "0x14 4D 2B 0F 50 0C 27 B7 EC 2C D1 2D 91 59 6F 37" 427s | decode_to_chunk() output: 427s | 14 4d 2b 0f 50 0c 27 b7 ec 2c d1 2d 91 59 6f 37 .M+.P.'..,.-.Yo7 427s | decode_to_chunk() plaintext: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 " 427s | decode_to_chunk() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ................ 427s | decode_to_chunk() ciphertext: : input "0x14 4D 2B 0F 50 0C 27 B7 EC 2C D1 2D 91 59 6F 37" 427s | decode_to_chunk() output: 427s | 14 4d 2b 0f 50 0c 27 b7 ec 2c d1 2d 91 59 6f 37 .M+.P.'..,.-.Yo7 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - exit 427s | verify_bytes() Camellia: 16 bytes with 128-bit key: encrypt: ok 427s | verify_bytes() Camellia: 16 bytes with 128-bit key: updated CBC IV: ok 427s | decode_to_mac() IV: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_mac() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() new IV: : input "0x14 4D 2B 0F 50 0C 27 B7 EC 2C D1 2D 91 59 6F 37" 427s | decode_to_chunk() output: 427s | 14 4d 2b 0f 50 0c 27 b7 ec 2c d1 2d 91 59 6f 37 .M+.P.'..,.-.Yo7 427s | decode_to_chunk() ciphertext: : input "0x14 4D 2B 0F 50 0C 27 B7 EC 2C D1 2D 91 59 6F 37" 427s | decode_to_chunk() output: 427s | 14 4d 2b 0f 50 0c 27 b7 ec 2c d1 2d 91 59 6f 37 .M+.P.'..,.-.Yo7 427s | decode_to_chunk() plaintext: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 " 427s | decode_to_chunk() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ................ 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - exit 427s | verify_bytes() Camellia: 16 bytes with 128-bit key: decrypt: ok 427s | verify_bytes() Camellia: 16 bytes with 128-bit key: updated CBC IV: ok 427s ipsec algparse: Camellia: 16 bytes with 256-bit key 427s | decode_to_chunk() raw_key: input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_chunk() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9430 427s | key-offset: 0, key-size: 32 427s | EXTRACT_KEY_FROM_KEY: 427s | target: CAMELLIA_CBC 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 32-bytes 427s | base: base-key@0x11f9b50d2a0 (48-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9438 427s | decode_to_mac() IV: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_mac() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() new IV: : input "0xB0 C6 B8 8A EA 51 8A B0 9E 84 72 48 E9 1B 1B 9D" 427s | decode_to_chunk() output: 427s | b0 c6 b8 8a ea 51 8a b0 9e 84 72 48 e9 1b 1b 9d .....Q....rH.... 427s | decode_to_chunk() plaintext: : input "0x80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_chunk() output: 427s | 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() ciphertext: : input "0xB0 C6 B8 8A EA 51 8A B0 9E 84 72 48 E9 1B 1B 9D" 427s | decode_to_chunk() output: 427s | b0 c6 b8 8a ea 51 8a b0 9e 84 72 48 e9 1b 1b 9d .....Q....rH.... 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - exit 427s | verify_bytes() Camellia: 16 bytes with 256-bit key: encrypt: ok 427s | verify_bytes() Camellia: 16 bytes with 256-bit key: updated CBC IV: ok 427s | decode_to_mac() IV: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_mac() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() new IV: : input "0xB0 C6 B8 8A EA 51 8A B0 9E 84 72 48 E9 1B 1B 9D" 427s | decode_to_chunk() output: 427s | b0 c6 b8 8a ea 51 8a b0 9e 84 72 48 e9 1b 1b 9d .....Q....rH.... 427s | decode_to_chunk() ciphertext: : input "0xB0 C6 B8 8A EA 51 8A B0 9E 84 72 48 E9 1B 1B 9D" 427s | decode_to_chunk() output: 427s | b0 c6 b8 8a ea 51 8a b0 9e 84 72 48 e9 1b 1b 9d .....Q....rH.... 427s | decode_to_chunk() plaintext: : input "0x80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_chunk() output: 427s | 80 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - exit 427s | verify_bytes() Camellia: 16 bytes with 256-bit key: decrypt: ok 427s | verify_bytes() Camellia: 16 bytes with 256-bit key: updated CBC IV: ok 427s ipsec algparse: Camellia: 16 bytes with 256-bit key 427s | decode_to_chunk() raw_key: input "0x00 11 22 33 44 55 66 77 88 99 AA BB CC DD EE FF FF EE DD CC BB AA 99 88 77 66 55 44 33 22 11 00" 427s | decode_to_chunk() output: 427s | 00 11 22 33 44 55 66 77 88 99 aa bb cc dd ee ff .."3DUfw........ 427s | ff ee dd cc bb aa 99 88 77 66 55 44 33 22 11 00 ........wfUD3".. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9430 427s | key-offset: 0, key-size: 32 427s | EXTRACT_KEY_FROM_KEY: 427s | target: CAMELLIA_CBC 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 32-bytes 427s | base: base-key@0x11f9b50d2a0 (48-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9438 427s | decode_to_mac() IV: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_mac() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() new IV: : input "0xCC 39 FF EE 18 56 D3 EB 61 02 5E 93 21 9B 65 23 " 427s | decode_to_chunk() output: 427s | cc 39 ff ee 18 56 d3 eb 61 02 5e 93 21 9b 65 23 .9...V..a.^.!.e# 427s | decode_to_chunk() plaintext: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01" 427s | decode_to_chunk() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ................ 427s | decode_to_chunk() ciphertext: : input "0xCC 39 FF EE 18 56 D3 EB 61 02 5E 93 21 9B 65 23 " 427s | decode_to_chunk() output: 427s | cc 39 ff ee 18 56 d3 eb 61 02 5e 93 21 9b 65 23 .9...V..a.^.!.e# 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - exit 427s | verify_bytes() Camellia: 16 bytes with 256-bit key: encrypt: ok 427s | verify_bytes() Camellia: 16 bytes with 256-bit key: updated CBC IV: ok 427s | decode_to_mac() IV: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00" 427s | decode_to_mac() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | decode_to_chunk() new IV: : input "0xCC 39 FF EE 18 56 D3 EB 61 02 5E 93 21 9B 65 23 " 427s | decode_to_chunk() output: 427s | cc 39 ff ee 18 56 d3 eb 61 02 5e 93 21 9b 65 23 .9...V..a.^.!.e# 427s | decode_to_chunk() ciphertext: : input "0xCC 39 FF EE 18 56 D3 EB 61 02 5E 93 21 9B 65 23 " 427s | decode_to_chunk() output: 427s | cc 39 ff ee 18 56 d3 eb 61 02 5e 93 21 9b 65 23 .9...V..a.^.!.e# 427s | decode_to_chunk() plaintext: : input "0x00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01" 427s | decode_to_chunk() output: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 01 ................ 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: CAMELLIA_CBC - exit 427s | verify_bytes() Camellia: 16 bytes with 256-bit key: decrypt: ok 427s | verify_bytes() Camellia: 16 bytes with 256-bit key: updated CBC IV: ok 427s ipsec algparse: testing AES_GCM_16: 427s ipsec algparse: empty string 427s | decode_to_chunk() raw_key: input "0xcf063a34d4a9a76c2c86787d3f96db71" 427s | decode_to_chunk() output: 427s | cf 06 3a 34 d4 a9 a7 6c 2c 86 78 7d 3f 96 db 71 ..:4...l,.x}?..q 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9300 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_GCM 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9308 427s | decode_to_chunk() salted IV: input "0x113b9785971864c83b01c787" 427s | decode_to_chunk() output: 427s | 11 3b 97 85 97 18 64 c8 3b 01 c7 87 .;....d.;... 427s | decode_to_chunk() AAD: input "" 427s | decode_to_chunk() output: 427s | 427s | decode_to_chunk() plaintext: input "" 427s | decode_to_chunk() output: 427s | 427s | decode_to_chunk() ciphertext: input "" 427s | decode_to_chunk() output: 427s | 427s | decode_to_chunk() tag: input "0x72ac8493e3a5228b5d130a69d2510e42" 427s | decode_to_chunk() output: 427s | 72 ac 84 93 e3 a5 22 8b 5d 13 0a 69 d2 51 0e 42 r.....".]..i.Q.B 427s | test_gcm_vector() DECRYPT: aad-size=0 salt-size=4 wire-IV-size=8 text-size=0 tag-size=16 text+tag in: 427s | 72 ac 84 93 e3 a5 22 8b 5d 13 0a 69 d2 51 0e 42 r.....".]..i.Q.B 427s | verify_bytes() empty string: output ciphertext: ok 427s | verify_bytes() empty string: TAG: ok 427s | test_gcm_vector() text+tag out: 427s | 72 ac 84 93 e3 a5 22 8b 5d 13 0a 69 d2 51 0e 42 r.....".]..i.Q.B 427s | test_gcm_vector() ENCRYPT: aad-size=0 salt-size=4 wire-IV-size=8 text-size=0 tag-size=16 text+tag in: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | verify_bytes() empty string: output ciphertext: ok 427s | verify_bytes() empty string: TAG: ok 427s | test_gcm_vector() text+tag out: 427s | 72 ac 84 93 e3 a5 22 8b 5d 13 0a 69 d2 51 0e 42 r.....".]..i.Q.B 427s ipsec algparse: one block 427s | decode_to_chunk() raw_key: input "0xe98b72a9881a84ca6b76e0f43e68647a" 427s | decode_to_chunk() output: 427s | e9 8b 72 a9 88 1a 84 ca 6b 76 e0 f4 3e 68 64 7a ..r.....kv..>hdz 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9300 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_GCM 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9308 427s | decode_to_chunk() salted IV: input "0x8b23299fde174053f3d652ba" 427s | decode_to_chunk() output: 427s | 8b 23 29 9f de 17 40 53 f3 d6 52 ba .#)...@S..R. 427s | decode_to_chunk() AAD: input "" 427s | decode_to_chunk() output: 427s | 427s | decode_to_chunk() plaintext: input "0x28286a321293253c3e0aa2704a278032" 427s | decode_to_chunk() output: 427s | 28 28 6a 32 12 93 25 3c 3e 0a a2 70 4a 27 80 32 ((j2..%<>..pJ'.2 427s | decode_to_chunk() ciphertext: input "0x5a3c1cf1985dbb8bed818036fdd5ab42" 427s | decode_to_chunk() output: 427s | 5a 3c 1c f1 98 5d bb 8b ed 81 80 36 fd d5 ab 42 Z<...].....6...B 427s | decode_to_chunk() tag: input "0x23c7ab0f952b7091cd324835043b5eb5" 427s | decode_to_chunk() output: 427s | 23 c7 ab 0f 95 2b 70 91 cd 32 48 35 04 3b 5e b5 #....+p..2H5.;^. 427s | test_gcm_vector() DECRYPT: aad-size=0 salt-size=4 wire-IV-size=8 text-size=16 tag-size=16 text+tag in: 427s | 5a 3c 1c f1 98 5d bb 8b ed 81 80 36 fd d5 ab 42 Z<...].....6...B 427s | 23 c7 ab 0f 95 2b 70 91 cd 32 48 35 04 3b 5e b5 #....+p..2H5.;^. 427s | verify_bytes() one block: output ciphertext: ok 427s | verify_bytes() one block: TAG: ok 427s | test_gcm_vector() text+tag out: 427s | 28 28 6a 32 12 93 25 3c 3e 0a a2 70 4a 27 80 32 ((j2..%<>..pJ'.2 427s | 23 c7 ab 0f 95 2b 70 91 cd 32 48 35 04 3b 5e b5 #....+p..2H5.;^. 427s | test_gcm_vector() ENCRYPT: aad-size=0 salt-size=4 wire-IV-size=8 text-size=16 tag-size=16 text+tag in: 427s | 28 28 6a 32 12 93 25 3c 3e 0a a2 70 4a 27 80 32 ((j2..%<>..pJ'.2 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | verify_bytes() one block: output ciphertext: ok 427s | verify_bytes() one block: TAG: ok 427s | test_gcm_vector() text+tag out: 427s | 5a 3c 1c f1 98 5d bb 8b ed 81 80 36 fd d5 ab 42 Z<...].....6...B 427s | 23 c7 ab 0f 95 2b 70 91 cd 32 48 35 04 3b 5e b5 #....+p..2H5.;^. 427s ipsec algparse: two blocks 427s | decode_to_chunk() raw_key: input "0xbfd414a6212958a607a0f5d3ab48471d" 427s | decode_to_chunk() output: 427s | bf d4 14 a6 21 29 58 a6 07 a0 f5 d3 ab 48 47 1d ....!)X......HG. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9300 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_GCM 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9308 427s | decode_to_chunk() salted IV: input "0x86d8ea0ab8e40dcc481cd0e2" 427s | decode_to_chunk() output: 427s | 86 d8 ea 0a b8 e4 0d cc 48 1c d0 e2 ........H... 427s | decode_to_chunk() AAD: input "" 427s | decode_to_chunk() output: 427s | 427s | decode_to_chunk() plaintext: input "0xa6b76a066e63392c9443e60272ceaeb9d25c991b0f2e55e2804e168c05ea591a" 427s | decode_to_chunk() output: 427s | a6 b7 6a 06 6e 63 39 2c 94 43 e6 02 72 ce ae b9 ..j.nc9,.C..r... 427s | d2 5c 99 1b 0f 2e 55 e2 80 4e 16 8c 05 ea 59 1a .\....U..N....Y. 427s | decode_to_chunk() ciphertext: input "0x62171db33193292d930bf6647347652c1ef33316d7feca99d54f1db4fcf513f8" 427s | decode_to_chunk() output: 427s | 62 17 1d b3 31 93 29 2d 93 0b f6 64 73 47 65 2c b...1.)-...dsGe, 427s | 1e f3 33 16 d7 fe ca 99 d5 4f 1d b4 fc f5 13 f8 ..3......O...... 427s | decode_to_chunk() tag: input "0xc28280aa5c6c7a8bd366f28c1cfd1f6e" 427s | decode_to_chunk() output: 427s | c2 82 80 aa 5c 6c 7a 8b d3 66 f2 8c 1c fd 1f 6e ....\lz..f.....n 427s | test_gcm_vector() DECRYPT: aad-size=0 salt-size=4 wire-IV-size=8 text-size=32 tag-size=16 text+tag in: 427s | 62 17 1d b3 31 93 29 2d 93 0b f6 64 73 47 65 2c b...1.)-...dsGe, 427s | 1e f3 33 16 d7 fe ca 99 d5 4f 1d b4 fc f5 13 f8 ..3......O...... 427s | c2 82 80 aa 5c 6c 7a 8b d3 66 f2 8c 1c fd 1f 6e ....\lz..f.....n 427s | verify_bytes() two blocks: output ciphertext: ok 427s | verify_bytes() two blocks: TAG: ok 427s | test_gcm_vector() text+tag out: 427s | a6 b7 6a 06 6e 63 39 2c 94 43 e6 02 72 ce ae b9 ..j.nc9,.C..r... 427s | d2 5c 99 1b 0f 2e 55 e2 80 4e 16 8c 05 ea 59 1a .\....U..N....Y. 427s | c2 82 80 aa 5c 6c 7a 8b d3 66 f2 8c 1c fd 1f 6e ....\lz..f.....n 427s | test_gcm_vector() ENCRYPT: aad-size=0 salt-size=4 wire-IV-size=8 text-size=32 tag-size=16 text+tag in: 427s | a6 b7 6a 06 6e 63 39 2c 94 43 e6 02 72 ce ae b9 ..j.nc9,.C..r... 427s | d2 5c 99 1b 0f 2e 55 e2 80 4e 16 8c 05 ea 59 1a .\....U..N....Y. 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | verify_bytes() two blocks: output ciphertext: ok 427s | verify_bytes() two blocks: TAG: ok 427s | test_gcm_vector() text+tag out: 427s | 62 17 1d b3 31 93 29 2d 93 0b f6 64 73 47 65 2c b...1.)-...dsGe, 427s | 1e f3 33 16 d7 fe ca 99 d5 4f 1d b4 fc f5 13 f8 ..3......O...... 427s | c2 82 80 aa 5c 6c 7a 8b d3 66 f2 8c 1c fd 1f 6e ....\lz..f.....n 427s ipsec algparse: two blocks with associated data 427s | decode_to_chunk() raw_key: input "0x95bcde70c094f04e3dd8259cafd88ce8" 427s | decode_to_chunk() output: 427s | 95 bc de 70 c0 94 f0 4e 3d d8 25 9c af d8 8c e8 ...p...N=.%..... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9300 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_GCM 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9308 427s | decode_to_chunk() salted IV: input "0x12cf097ad22380432ff40a5c" 427s | decode_to_chunk() output: 427s | 12 cf 09 7a d2 23 80 43 2f f4 0a 5c ...z.#.C/..\ 427s | decode_to_chunk() AAD: input "0xc783a0cca10a8d9fb8d27d69659463f2" 427s | decode_to_chunk() output: 427s | c7 83 a0 cc a1 0a 8d 9f b8 d2 7d 69 65 94 63 f2 ..........}ie.c. 427s | decode_to_chunk() plaintext: input "0x32f51e837a9748838925066d69e87180f34a6437e6b396e5643b34cb2ee4f7b1" 427s | decode_to_chunk() output: 427s | 32 f5 1e 83 7a 97 48 83 89 25 06 6d 69 e8 71 80 2...z.H..%.mi.q. 427s | f3 4a 64 37 e6 b3 96 e5 64 3b 34 cb 2e e4 f7 b1 .Jd7....d;4..... 427s | decode_to_chunk() ciphertext: input "0x8a023ba477f5b809bddcda8f55e09064d6d88aaec99c1e141212ea5b08503660" 427s | decode_to_chunk() output: 427s | 8a 02 3b a4 77 f5 b8 09 bd dc da 8f 55 e0 90 64 ..;.w.......U..d 427s | d6 d8 8a ae c9 9c 1e 14 12 12 ea 5b 08 50 36 60 ...........[.P6` 427s | decode_to_chunk() tag: input "0x562f500dae635d60a769b466e15acd1e" 427s | decode_to_chunk() output: 427s | 56 2f 50 0d ae 63 5d 60 a7 69 b4 66 e1 5a cd 1e V/P..c]`.i.f.Z.. 427s | test_gcm_vector() DECRYPT: aad-size=16 salt-size=4 wire-IV-size=8 text-size=32 tag-size=16 text+tag in: 427s | 8a 02 3b a4 77 f5 b8 09 bd dc da 8f 55 e0 90 64 ..;.w.......U..d 427s | d6 d8 8a ae c9 9c 1e 14 12 12 ea 5b 08 50 36 60 ...........[.P6` 427s | 56 2f 50 0d ae 63 5d 60 a7 69 b4 66 e1 5a cd 1e V/P..c]`.i.f.Z.. 427s | verify_bytes() two blocks with associated data: output ciphertext: ok 427s | verify_bytes() two blocks with associated data: TAG: ok 427s | test_gcm_vector() text+tag out: 427s | 32 f5 1e 83 7a 97 48 83 89 25 06 6d 69 e8 71 80 2...z.H..%.mi.q. 427s | f3 4a 64 37 e6 b3 96 e5 64 3b 34 cb 2e e4 f7 b1 .Jd7....d;4..... 427s | 56 2f 50 0d ae 63 5d 60 a7 69 b4 66 e1 5a cd 1e V/P..c]`.i.f.Z.. 427s | test_gcm_vector() ENCRYPT: aad-size=16 salt-size=4 wire-IV-size=8 text-size=32 tag-size=16 text+tag in: 427s | 32 f5 1e 83 7a 97 48 83 89 25 06 6d 69 e8 71 80 2...z.H..%.mi.q. 427s | f3 4a 64 37 e6 b3 96 e5 64 3b 34 cb 2e e4 f7 b1 .Jd7....d;4..... 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | verify_bytes() two blocks with associated data: output ciphertext: ok 427s | verify_bytes() two blocks with associated data: TAG: ok 427s | test_gcm_vector() text+tag out: 427s | 8a 02 3b a4 77 f5 b8 09 bd dc da 8f 55 e0 90 64 ..;.w.......U..d 427s | d6 d8 8a ae c9 9c 1e 14 12 12 ea 5b 08 50 36 60 ...........[.P6` 427s | 56 2f 50 0d ae 63 5d 60 a7 69 b4 66 e1 5a cd 1e V/P..c]`.i.f.Z.. 427s ipsec algparse: testing AES_CTR: 427s ipsec algparse: Encrypting 16 octets using AES-CTR with 128-bit key 427s | decode_to_chunk() raw_key: input "0x AE 68 52 F8 12 10 67 CC 4B F7 A5 76 55 77 F3 9E" 427s | decode_to_chunk() output: 427s | ae 68 52 f8 12 10 67 cc 4b f7 a5 76 55 77 f3 9e .hR...g.K..vUw.. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 00 00 30 00 00 00 00 00 00 00 00 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 00 00 30 00 00 00 00 00 00 00 00 00 00 00 01 ...0............ 427s | decode_to_chunk() Plaintext: input "0x 53 69 6E 67 6C 65 20 62 6C 6F 63 6B 20 6D 73 67" 427s | decode_to_chunk() output: 427s | 53 69 6e 67 6c 65 20 62 6c 6f 63 6b 20 6d 73 67 Single block msg 427s | decode_to_chunk() Ciphertext: input "0x E4 09 5D 4F B7 A7 B3 79 2D 61 75 A3 26 13 11 B8" 427s | decode_to_chunk() output: 427s | e4 09 5d 4f b7 a7 b3 79 2d 61 75 a3 26 13 11 b8 ..]O...y-au.&... 427s | decode_to_chunk() expected counter-block: : input "0x 00 00 00 30 00 00 00 00 00 00 00 00 00 00 00 02" 427s | decode_to_chunk() output: 427s | 00 00 00 30 00 00 00 00 00 00 00 00 00 00 00 02 ...0............ 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b50dc00 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 00000030000000000000000000000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x2 for 16 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 128-bit key: encrypt: ok 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 128-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 00 00 30 00 00 00 00 00 00 00 00 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 00 00 30 00 00 00 00 00 00 00 00 00 00 00 01 ...0............ 427s | decode_to_chunk() Ciphertext: input "0x E4 09 5D 4F B7 A7 B3 79 2D 61 75 A3 26 13 11 B8" 427s | decode_to_chunk() output: 427s | e4 09 5d 4f b7 a7 b3 79 2d 61 75 a3 26 13 11 b8 ..]O...y-au.&... 427s | decode_to_chunk() Plaintext: input "0x 53 69 6E 67 6C 65 20 62 6C 6F 63 6B 20 6D 73 67" 427s | decode_to_chunk() output: 427s | 53 69 6e 67 6c 65 20 62 6c 6f 63 6b 20 6d 73 67 Single block msg 427s | decode_to_chunk() expected counter-block: : input "0x 00 00 00 30 00 00 00 00 00 00 00 00 00 00 00 02" 427s | decode_to_chunk() output: 427s | 00 00 00 30 00 00 00 00 00 00 00 00 00 00 00 02 ...0............ 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b50dc00 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 00000030000000000000000000000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x2 for 16 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 128-bit key: decrypt: ok 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 128-bit key: counter-block: ok 427s ipsec algparse: Encrypting 32 octets using AES-CTR with 128-bit key 427s | decode_to_chunk() raw_key: input "0x 7E 24 06 78 17 FA E0 D7 43 D6 CE 1F 32 53 91 63" 427s | decode_to_chunk() output: 427s | 7e 24 06 78 17 fa e0 d7 43 d6 ce 1f 32 53 91 63 ~$.x....C...2S.c 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 6C B6 DB C0 54 3B 59 DA 48 D9 0B 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 6c b6 db c0 54 3b 59 da 48 d9 0b 00 00 00 01 .l...T;Y.H...... 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | decode_to_chunk() Ciphertext: input "0x51 04 A1 06 16 8A 72 D9 79 0D 41 EE 8E DA D3 88EB 2E 1E FC 46 DA 57 C8 FC E6 30 DF 91 41 BE 28" 427s | decode_to_chunk() output: 427s | 51 04 a1 06 16 8a 72 d9 79 0d 41 ee 8e da d3 88 Q.....r.y.A..... 427s | eb 2e 1e fc 46 da 57 c8 fc e6 30 df 91 41 be 28 ....F.W...0..A.( 427s | decode_to_chunk() expected counter-block: : input "0x 00 6C B6 DB C0 54 3B 59 DA 48 D9 0B 00 00 00 03" 427s | decode_to_chunk() output: 427s | 00 6c b6 db c0 54 3b 59 da 48 d9 0b 00 00 00 03 .l...T;Y.H...... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b50a160 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 006cb6dbc0543b59da48d90b00000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x3 for 32 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 128-bit key: encrypt: ok 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 128-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 6C B6 DB C0 54 3B 59 DA 48 D9 0B 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 6c b6 db c0 54 3b 59 da 48 d9 0b 00 00 00 01 .l...T;Y.H...... 427s | decode_to_chunk() Ciphertext: input "0x51 04 A1 06 16 8A 72 D9 79 0D 41 EE 8E DA D3 88EB 2E 1E FC 46 DA 57 C8 FC E6 30 DF 91 41 BE 28" 427s | decode_to_chunk() output: 427s | 51 04 a1 06 16 8a 72 d9 79 0d 41 ee 8e da d3 88 Q.....r.y.A..... 427s | eb 2e 1e fc 46 da 57 c8 fc e6 30 df 91 41 be 28 ....F.W...0..A.( 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | decode_to_chunk() expected counter-block: : input "0x 00 6C B6 DB C0 54 3B 59 DA 48 D9 0B 00 00 00 03" 427s | decode_to_chunk() output: 427s | 00 6c b6 db c0 54 3b 59 da 48 d9 0b 00 00 00 03 .l...T;Y.H...... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b50a160 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 006cb6dbc0543b59da48d90b00000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x3 for 32 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 128-bit key: decrypt: ok 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 128-bit key: counter-block: ok 427s ipsec algparse: Encrypting 36 octets using AES-CTR with 128-bit key 427s | decode_to_chunk() raw_key: input "0x 76 91 BE 03 5E 50 20 A8 AC 6E 61 85 29 F9 A0 DC" 427s | decode_to_chunk() output: 427s | 76 91 be 03 5e 50 20 a8 ac 6e 61 85 29 f9 a0 dc v...^P ..na.)... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 E0 01 7B 27 77 7F 3F 4A 17 86 F0 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 e0 01 7b 27 77 7f 3f 4a 17 86 f0 00 00 00 01 ...{'w.?J....... 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F20 21 22 23" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 22 23 !"# 427s | decode_to_chunk() Ciphertext: input "0xC1 CF 48 A8 9F 2F FD D9 CF 46 52 E9 EF DB 72 D745 40 A4 2B DE 6D 78 36 D5 9A 5C EA AE F3 10 5325 B2 07 2F" 427s | decode_to_chunk() output: 427s | c1 cf 48 a8 9f 2f fd d9 cf 46 52 e9 ef db 72 d7 ..H../...FR...r. 427s | 45 40 a4 2b de 6d 78 36 d5 9a 5c ea ae f3 10 53 E@.+.mx6..\....S 427s | 25 b2 07 2f %../ 427s | decode_to_chunk() expected counter-block: : input "0x 00 E0 01 7B 27 77 7F 3F 4A 17 86 F0 00 00 00 04" 427s | decode_to_chunk() output: 427s | 00 e0 01 7b 27 77 7f 3f 4a 17 86 f0 00 00 00 04 ...{'w.?J....... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 00e0017b27777f3f4a1786f000000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x4 for 36 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 128-bit key: encrypt: ok 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 128-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 E0 01 7B 27 77 7F 3F 4A 17 86 F0 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 e0 01 7b 27 77 7f 3f 4a 17 86 f0 00 00 00 01 ...{'w.?J....... 427s | decode_to_chunk() Ciphertext: input "0xC1 CF 48 A8 9F 2F FD D9 CF 46 52 E9 EF DB 72 D745 40 A4 2B DE 6D 78 36 D5 9A 5C EA AE F3 10 5325 B2 07 2F" 427s | decode_to_chunk() output: 427s | c1 cf 48 a8 9f 2f fd d9 cf 46 52 e9 ef db 72 d7 ..H../...FR...r. 427s | 45 40 a4 2b de 6d 78 36 d5 9a 5c ea ae f3 10 53 E@.+.mx6..\....S 427s | 25 b2 07 2f %../ 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F20 21 22 23" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 22 23 !"# 427s | decode_to_chunk() expected counter-block: : input "0x 00 E0 01 7B 27 77 7F 3F 4A 17 86 F0 00 00 00 04" 427s | decode_to_chunk() output: 427s | 00 e0 01 7b 27 77 7f 3f 4a 17 86 f0 00 00 00 04 ...{'w.?J....... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 00e0017b27777f3f4a1786f000000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x4 for 36 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 128-bit key: decrypt: ok 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 128-bit key: counter-block: ok 427s ipsec algparse: Encrypting 16 octets using AES-CTR with 192-bit key 427s | decode_to_chunk() raw_key: input "0x16 AF 5B 14 5F C9 F5 79 C1 75 F9 3E 3B FB 0E ED86 3D 06 CC FD B7 85 15" 427s | decode_to_chunk() output: 427s | 16 af 5b 14 5f c9 f5 79 c1 75 f9 3e 3b fb 0e ed ..[._..y.u.>;... 427s | 86 3d 06 cc fd b7 85 15 .=...... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 24 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 24-bytes 427s | base: base-key@0x11f9b50d2a0 (40-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 00 00 48 36 73 3C 14 7D 6D 93 CB 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 00 00 48 36 73 3c 14 7d 6d 93 cb 00 00 00 01 ...H6s<.}m...... 427s | decode_to_chunk() Plaintext: input "0x 53 69 6E 67 6C 65 20 62 6C 6F 63 6B 20 6D 73 67" 427s | decode_to_chunk() output: 427s | 53 69 6e 67 6c 65 20 62 6c 6f 63 6b 20 6d 73 67 Single block msg 427s | decode_to_chunk() Ciphertext: input "0x 4B 55 38 4F E2 59 C9 C8 4E 79 35 A0 03 CB E9 28" 427s | decode_to_chunk() output: 427s | 4b 55 38 4f e2 59 c9 c8 4e 79 35 a0 03 cb e9 28 KU8O.Y..Ny5....( 427s | decode_to_chunk() expected counter-block: : input "0x 00 00 00 48 36 73 3C 14 7D 6D 93 CB 00 00 00 02" 427s | decode_to_chunk() output: 427s | 00 00 00 48 36 73 3c 14 7d 6d 93 cb 00 00 00 02 ...H6s<.}m...... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b50dbe0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 0000004836733c147d6d93cb00000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x2 for 16 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 192-bit key: encrypt: ok 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 192-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 00 00 48 36 73 3C 14 7D 6D 93 CB 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 00 00 48 36 73 3c 14 7d 6d 93 cb 00 00 00 01 ...H6s<.}m...... 427s | decode_to_chunk() Ciphertext: input "0x 4B 55 38 4F E2 59 C9 C8 4E 79 35 A0 03 CB E9 28" 427s | decode_to_chunk() output: 427s | 4b 55 38 4f e2 59 c9 c8 4e 79 35 a0 03 cb e9 28 KU8O.Y..Ny5....( 427s | decode_to_chunk() Plaintext: input "0x 53 69 6E 67 6C 65 20 62 6C 6F 63 6B 20 6D 73 67" 427s | decode_to_chunk() output: 427s | 53 69 6e 67 6c 65 20 62 6c 6f 63 6b 20 6d 73 67 Single block msg 427s | decode_to_chunk() expected counter-block: : input "0x 00 00 00 48 36 73 3C 14 7D 6D 93 CB 00 00 00 02" 427s | decode_to_chunk() output: 427s | 00 00 00 48 36 73 3c 14 7d 6d 93 cb 00 00 00 02 ...H6s<.}m...... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b50dbe0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 0000004836733c147d6d93cb00000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x2 for 16 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 192-bit key: decrypt: ok 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 192-bit key: counter-block: ok 427s ipsec algparse: Encrypting 32 octets using AES-CTR with 192-bit key 427s | decode_to_chunk() raw_key: input "0x7C 5C B2 40 1B 3D C3 3C 19 E7 34 08 19 E0 F6 9C67 8C 3D B8 E6 F6 A9 1A" 427s | decode_to_chunk() output: 427s | 7c 5c b2 40 1b 3d c3 3c 19 e7 34 08 19 e0 f6 9c |\.@.=.<..4..... 427s | 67 8c 3d b8 e6 f6 a9 1a g.=..... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 24 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 24-bytes 427s | base: base-key@0x11f9b50d2a0 (40-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 96 B0 3B 02 0C 6E AD C2 CB 50 0D 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 96 b0 3b 02 0c 6e ad c2 cb 50 0d 00 00 00 01 ...;..n...P..... 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | decode_to_chunk() Ciphertext: input "0x45 32 43 FC 60 9B 23 32 7E DF AA FA 71 31 CD 9F84 90 70 1C 5A D4 A7 9C FC 1F E0 FF 42 F4 FB 00" 427s | decode_to_chunk() output: 427s | 45 32 43 fc 60 9b 23 32 7e df aa fa 71 31 cd 9f E2C.`.#2~...q1.. 427s | 84 90 70 1c 5a d4 a7 9c fc 1f e0 ff 42 f4 fb 00 ..p.Z.......B... 427s | decode_to_chunk() expected counter-block: : input "0x 00 96 B0 3B 02 0C 6E AD C2 CB 50 0D 00 00 00 03" 427s | decode_to_chunk() output: 427s | 00 96 b0 3b 02 0c 6e ad c2 cb 50 0d 00 00 00 03 ...;..n...P..... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 0096b03b020c6eadc2cb500d00000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x3 for 32 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 192-bit key: encrypt: ok 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 192-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 96 B0 3B 02 0C 6E AD C2 CB 50 0D 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 96 b0 3b 02 0c 6e ad c2 cb 50 0d 00 00 00 01 ...;..n...P..... 427s | decode_to_chunk() Ciphertext: input "0x45 32 43 FC 60 9B 23 32 7E DF AA FA 71 31 CD 9F84 90 70 1C 5A D4 A7 9C FC 1F E0 FF 42 F4 FB 00" 427s | decode_to_chunk() output: 427s | 45 32 43 fc 60 9b 23 32 7e df aa fa 71 31 cd 9f E2C.`.#2~...q1.. 427s | 84 90 70 1c 5a d4 a7 9c fc 1f e0 ff 42 f4 fb 00 ..p.Z.......B... 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | decode_to_chunk() expected counter-block: : input "0x 00 96 B0 3B 02 0C 6E AD C2 CB 50 0D 00 00 00 03" 427s | decode_to_chunk() output: 427s | 00 96 b0 3b 02 0c 6e ad c2 cb 50 0d 00 00 00 03 ...;..n...P..... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 0096b03b020c6eadc2cb500d00000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x3 for 32 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 192-bit key: decrypt: ok 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 192-bit key: counter-block: ok 427s ipsec algparse: Encrypting 36 octets using AES-CTR with 192-bit key 427s | decode_to_chunk() raw_key: input "0x02 BF 39 1E E8 EC B1 59 B9 59 61 7B 09 65 27 9BF5 9B 60 A7 86 D3 E0 FE" 427s | decode_to_chunk() output: 427s | 02 bf 39 1e e8 ec b1 59 b9 59 61 7b 09 65 27 9b ..9....Y.Ya{.e'. 427s | f5 9b 60 a7 86 d3 e0 fe ..`..... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 24 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 24-bytes 427s | base: base-key@0x11f9b50d2a0 (40-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 07 BD FD 5C BD 60 27 8D CC 09 12 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 07 bd fd 5c bd 60 27 8d cc 09 12 00 00 00 01 ....\.`'........ 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F20 21 22 23" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 22 23 !"# 427s | decode_to_chunk() Ciphertext: input "0x96 89 3F C5 5E 5C 72 2F 54 0B 7D D1 DD F7 E7 58D2 88 BC 95 C6 91 65 88 45 36 C8 11 66 2F 21 88AB EE 09 35" 427s | decode_to_chunk() output: 427s | 96 89 3f c5 5e 5c 72 2f 54 0b 7d d1 dd f7 e7 58 ..?.^\r/T.}....X 427s | d2 88 bc 95 c6 91 65 88 45 36 c8 11 66 2f 21 88 ......e.E6..f/!. 427s | ab ee 09 35 ...5 427s | decode_to_chunk() expected counter-block: : input "0x 00 07 BD FD 5C BD 60 27 8D CC 09 12 00 00 00 04" 427s | decode_to_chunk() output: 427s | 00 07 bd fd 5c bd 60 27 8d cc 09 12 00 00 00 04 ....\.`'........ 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 0007bdfd5cbd60278dcc091200000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x4 for 36 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 192-bit key: encrypt: ok 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 192-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 07 BD FD 5C BD 60 27 8D CC 09 12 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 07 bd fd 5c bd 60 27 8d cc 09 12 00 00 00 01 ....\.`'........ 427s | decode_to_chunk() Ciphertext: input "0x96 89 3F C5 5E 5C 72 2F 54 0B 7D D1 DD F7 E7 58D2 88 BC 95 C6 91 65 88 45 36 C8 11 66 2F 21 88AB EE 09 35" 427s | decode_to_chunk() output: 427s | 96 89 3f c5 5e 5c 72 2f 54 0b 7d d1 dd f7 e7 58 ..?.^\r/T.}....X 427s | d2 88 bc 95 c6 91 65 88 45 36 c8 11 66 2f 21 88 ......e.E6..f/!. 427s | ab ee 09 35 ...5 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F20 21 22 23" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 22 23 !"# 427s | decode_to_chunk() expected counter-block: : input "0x 00 07 BD FD 5C BD 60 27 8D CC 09 12 00 00 00 04" 427s | decode_to_chunk() output: 427s | 00 07 bd fd 5c bd 60 27 8d cc 09 12 00 00 00 04 ....\.`'........ 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 0007bdfd5cbd60278dcc091200000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x4 for 36 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 192-bit key: decrypt: ok 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 192-bit key: counter-block: ok 427s ipsec algparse: Encrypting 16 octets using AES-CTR with 256-bit key 427s | decode_to_chunk() raw_key: input "0x77 6B EF F2 85 1D B0 6F 4C 8A 05 42 C8 69 6F 6C6A 81 AF 1E EC 96 B4 D3 7F C1 D6 89 E6 C1 C1 04" 427s | decode_to_chunk() output: 427s | 77 6b ef f2 85 1d b0 6f 4c 8a 05 42 c8 69 6f 6c wk.....oL..B.iol 427s | 6a 81 af 1e ec 96 b4 d3 7f c1 d6 89 e6 c1 c1 04 j............... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 32 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 32-bytes 427s | base: base-key@0x11f9b50d2a0 (48-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 00 00 60 DB 56 72 C9 7A A8 F0 B2 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 00 00 60 db 56 72 c9 7a a8 f0 b2 00 00 00 01 ...`.Vr.z....... 427s | decode_to_chunk() Plaintext: input "0x 53 69 6E 67 6C 65 20 62 6C 6F 63 6B 20 6D 73 67" 427s | decode_to_chunk() output: 427s | 53 69 6e 67 6c 65 20 62 6c 6f 63 6b 20 6d 73 67 Single block msg 427s | decode_to_chunk() Ciphertext: input "0x 14 5A D0 1D BF 82 4E C7 56 08 63 DC 71 E3 E0 C0" 427s | decode_to_chunk() output: 427s | 14 5a d0 1d bf 82 4e c7 56 08 63 dc 71 e3 e0 c0 .Z....N.V.c.q... 427s | decode_to_chunk() expected counter-block: : input "0x 00 00 00 60 DB 56 72 C9 7A A8 F0 B2 00 00 00 02" 427s | decode_to_chunk() output: 427s | 00 00 00 60 db 56 72 c9 7a a8 f0 b2 00 00 00 02 ...`.Vr.z....... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b50dbe0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 00000060db5672c97aa8f0b200000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x2 for 16 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 256-bit key: encrypt: ok 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 256-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 00 00 60 DB 56 72 C9 7A A8 F0 B2 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 00 00 60 db 56 72 c9 7a a8 f0 b2 00 00 00 01 ...`.Vr.z....... 427s | decode_to_chunk() Ciphertext: input "0x 14 5A D0 1D BF 82 4E C7 56 08 63 DC 71 E3 E0 C0" 427s | decode_to_chunk() output: 427s | 14 5a d0 1d bf 82 4e c7 56 08 63 dc 71 e3 e0 c0 .Z....N.V.c.q... 427s | decode_to_chunk() Plaintext: input "0x 53 69 6E 67 6C 65 20 62 6C 6F 63 6B 20 6D 73 67" 427s | decode_to_chunk() output: 427s | 53 69 6e 67 6c 65 20 62 6c 6f 63 6b 20 6d 73 67 Single block msg 427s | decode_to_chunk() expected counter-block: : input "0x 00 00 00 60 DB 56 72 C9 7A A8 F0 B2 00 00 00 02" 427s | decode_to_chunk() output: 427s | 00 00 00 60 db 56 72 c9 7a a8 f0 b2 00 00 00 02 ...`.Vr.z....... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b50dbe0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 00000060db5672c97aa8f0b200000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x2 for 16 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 256-bit key: decrypt: ok 427s | verify_bytes() Encrypting 16 octets using AES-CTR with 256-bit key: counter-block: ok 427s ipsec algparse: Encrypting 32 octets using AES-CTR with 256-bit key 427s | decode_to_chunk() raw_key: input "0xF6 D6 6D 6B D5 2D 59 BB 07 96 36 58 79 EF F8 86C6 6D D5 1A 5B 6A 99 74 4B 50 59 0C 87 A2 38 84" 427s | decode_to_chunk() output: 427s | f6 d6 6d 6b d5 2d 59 bb 07 96 36 58 79 ef f8 86 ..mk.-Y...6Xy... 427s | c6 6d d5 1a 5b 6a 99 74 4b 50 59 0c 87 a2 38 84 .m..[j.tKPY...8. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 32 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 32-bytes 427s | base: base-key@0x11f9b50d2a0 (48-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 FA AC 24 C1 58 5E F1 5A 43 D8 75 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 fa ac 24 c1 58 5e f1 5a 43 d8 75 00 00 00 01 ...$.X^.ZC.u.... 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | decode_to_chunk() Ciphertext: input "0xF0 5E 23 1B 38 94 61 2C 49 EE 00 0B 80 4E B2 A9B8 30 6B 50 8F 83 9D 6A 55 30 83 1D 93 44 AF 1C" 427s | decode_to_chunk() output: 427s | f0 5e 23 1b 38 94 61 2c 49 ee 00 0b 80 4e b2 a9 .^#.8.a,I....N.. 427s | b8 30 6b 50 8f 83 9d 6a 55 30 83 1d 93 44 af 1c .0kP...jU0...D.. 427s | decode_to_chunk() expected counter-block: : input "0x 00 FA AC 24 C1 58 5E F1 5A 43 D8 75 00 00 00 03" 427s | decode_to_chunk() output: 427s | 00 fa ac 24 c1 58 5e f1 5a 43 d8 75 00 00 00 03 ...$.X^.ZC.u.... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 00faac24c1585ef15a43d87500000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x3 for 32 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 256-bit key: encrypt: ok 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 256-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 FA AC 24 C1 58 5E F1 5A 43 D8 75 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 fa ac 24 c1 58 5e f1 5a 43 d8 75 00 00 00 01 ...$.X^.ZC.u.... 427s | decode_to_chunk() Ciphertext: input "0xF0 5E 23 1B 38 94 61 2C 49 EE 00 0B 80 4E B2 A9B8 30 6B 50 8F 83 9D 6A 55 30 83 1D 93 44 AF 1C" 427s | decode_to_chunk() output: 427s | f0 5e 23 1b 38 94 61 2c 49 ee 00 0b 80 4e b2 a9 .^#.8.a,I....N.. 427s | b8 30 6b 50 8f 83 9d 6a 55 30 83 1d 93 44 af 1c .0kP...jU0...D.. 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | decode_to_chunk() expected counter-block: : input "0x 00 FA AC 24 C1 58 5E F1 5A 43 D8 75 00 00 00 03" 427s | decode_to_chunk() output: 427s | 00 fa ac 24 c1 58 5e f1 5a 43 d8 75 00 00 00 03 ...$.X^.ZC.u.... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 00faac24c1585ef15a43d87500000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x3 for 32 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 256-bit key: decrypt: ok 427s | verify_bytes() Encrypting 32 octets using AES-CTR with 256-bit key: counter-block: ok 427s ipsec algparse: Encrypting 36 octets using AES-CTR with 256-bit key 427s | decode_to_chunk() raw_key: input "0xFF 7A 61 7C E6 91 48 E4 F1 72 6E 2F 43 58 1D E2AA 62 D9 F8 05 53 2E DF F1 EE D6 87 FB 54 15 3D" 427s | decode_to_chunk() output: 427s | ff 7a 61 7c e6 91 48 e4 f1 72 6e 2f 43 58 1d e2 .za|..H..rn/CX.. 427s | aa 62 d9 f8 05 53 2e df f1 ee d6 87 fb 54 15 3d .b...S.......T.= 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9420 427s | key-offset: 0, key-size: 32 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CTR 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 32-bytes 427s | base: base-key@0x11f9b50d2a0 (48-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9428 427s | decode_to_mac() input counter-block: : input "0x 00 1C C5 B7 51 A5 1D 70 A1 C1 11 48 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 1c c5 b7 51 a5 1d 70 a1 c1 11 48 00 00 00 01 ....Q..p...H.... 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F20 21 22 23" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 22 23 !"# 427s | decode_to_chunk() Ciphertext: input "0xEB 6C 52 82 1D 0B BB F7 CE 75 94 46 2A CA 4F AAB4 07 DF 86 65 69 FD 07 F4 8C C0 B5 83 D6 07 1F1E C0 E6 B8" 427s | decode_to_chunk() output: 427s | eb 6c 52 82 1d 0b bb f7 ce 75 94 46 2a ca 4f aa .lR......u.F*.O. 427s | b4 07 df 86 65 69 fd 07 f4 8c c0 b5 83 d6 07 1f ....ei.......... 427s | 1e c0 e6 b8 .... 427s | decode_to_chunk() expected counter-block: : input "0x 00 1C C5 B7 51 A5 1D 70 A1 C1 11 48 00 00 00 04" 427s | decode_to_chunk() output: 427s | 00 1c c5 b7 51 a5 1d 70 a1 c1 11 48 00 00 00 04 ....Q..p...H.... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 001cc5b751a51d70a1c1114800000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x4 for 36 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 256-bit key: encrypt: ok 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 256-bit key: counter-block: ok 427s | decode_to_mac() input counter-block: : input "0x 00 1C C5 B7 51 A5 1D 70 A1 C1 11 48 00 00 00 01" 427s | decode_to_mac() output: 427s | 00 1c c5 b7 51 a5 1d 70 a1 c1 11 48 00 00 00 01 ....Q..p...H.... 427s | decode_to_chunk() Ciphertext: input "0xEB 6C 52 82 1D 0B BB F7 CE 75 94 46 2A CA 4F AAB4 07 DF 86 65 69 FD 07 F4 8C C0 B5 83 D6 07 1F1E C0 E6 B8" 427s | decode_to_chunk() output: 427s | eb 6c 52 82 1d 0b bb f7 ce 75 94 46 2a ca 4f aa .lR......u.F*.O. 427s | b4 07 df 86 65 69 fd 07 f4 8c c0 b5 83 d6 07 1f ....ei.......... 427s | 1e c0 e6 b8 .... 427s | decode_to_chunk() Plaintext: input "0x00 01 02 03 04 05 06 07 08 09 0A 0B 0C 0D 0E 0F10 11 12 13 14 15 16 17 18 19 1A 1B 1C 1D 1E 1F20 21 22 23" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 22 23 !"# 427s | decode_to_chunk() expected counter-block: : input "0x 00 1C C5 B7 51 A5 1D 70 A1 C1 11 48 00 00 00 04" 427s | decode_to_chunk() output: 427s | 00 1c c5 b7 51 a5 1d 70 a1 c1 11 48 00 00 00 04 ....Q..p...H.... 427s | cipher_op_ctr_nss() enter AES_CTR 0x11f9b509fc0 use IKEv1 IV wire_iv 0 count 0 427s | ctr_param: count 32 iv 001cc5b751a51d70a1c1114800000001 427s | cipher_op_ctr_nss() counter-block updated from 0x1 to 0x4 for 36 bytes 427s | do_aes_ctr: exit 427s | cipher_op_context_destroy_ctr_nss() 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 256-bit key: decrypt: ok 427s | verify_bytes() Encrypting 36 octets using AES-CTR with 256-bit key: counter-block: ok 427s ipsec algparse: testing AES_CBC: 427s ipsec algparse: Encrypting 16 bytes (1 block) using AES-CBC with 128-bit key 427s | decode_to_chunk() raw_key: input "0x06a9214036b8a15b512e03d534120006" 427s | decode_to_chunk() output: 427s | 06 a9 21 40 36 b8 a1 5b 51 2e 03 d5 34 12 00 06 ..!@6..[Q...4... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9430 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CBC 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9438 427s | decode_to_mac() IV: : input "0x3dafba429d9eb430b422da802c9fac41" 427s | decode_to_mac() output: 427s | 3d af ba 42 9d 9e b4 30 b4 22 da 80 2c 9f ac 41 =..B...0."..,..A 427s | decode_to_chunk() new IV: : input "0xe353779c1079aeb82708942dbe77181a" 427s | decode_to_chunk() output: 427s | e3 53 77 9c 10 79 ae b8 27 08 94 2d be 77 18 1a .Sw..y..'..-.w.. 427s | decode_to_chunk() plaintext: : input "Single block msg" 427s | decode_to_chunk() output: 427s | 53 69 6e 67 6c 65 20 62 6c 6f 63 6b 20 6d 73 67 Single block msg 427s | decode_to_chunk() ciphertext: : input "0xe353779c1079aeb82708942dbe77181a" 427s | decode_to_chunk() output: 427s | e3 53 77 9c 10 79 ae b8 27 08 94 2d be 77 18 1a .Sw..y..'..-.w.. 427s | NSS ike_alg_nss_cbc: AES_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: AES_CBC - exit 427s | verify_bytes() Encrypting 16 bytes (1 block) using AES-CBC with 128-bit key: encrypt: ok 427s | verify_bytes() Encrypting 16 bytes (1 block) using AES-CBC with 128-bit key: updated CBC IV: ok 427s | decode_to_mac() IV: : input "0x3dafba429d9eb430b422da802c9fac41" 427s | decode_to_mac() output: 427s | 3d af ba 42 9d 9e b4 30 b4 22 da 80 2c 9f ac 41 =..B...0."..,..A 427s | decode_to_chunk() new IV: : input "0xe353779c1079aeb82708942dbe77181a" 427s | decode_to_chunk() output: 427s | e3 53 77 9c 10 79 ae b8 27 08 94 2d be 77 18 1a .Sw..y..'..-.w.. 427s | decode_to_chunk() ciphertext: : input "0xe353779c1079aeb82708942dbe77181a" 427s | decode_to_chunk() output: 427s | e3 53 77 9c 10 79 ae b8 27 08 94 2d be 77 18 1a .Sw..y..'..-.w.. 427s | decode_to_chunk() plaintext: : input "Single block msg" 427s | decode_to_chunk() output: 427s | 53 69 6e 67 6c 65 20 62 6c 6f 63 6b 20 6d 73 67 Single block msg 427s | NSS ike_alg_nss_cbc: AES_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: AES_CBC - exit 427s | verify_bytes() Encrypting 16 bytes (1 block) using AES-CBC with 128-bit key: decrypt: ok 427s | verify_bytes() Encrypting 16 bytes (1 block) using AES-CBC with 128-bit key: updated CBC IV: ok 427s ipsec algparse: Encrypting 32 bytes (2 blocks) using AES-CBC with 128-bit key 427s | decode_to_chunk() raw_key: input "0xc286696d887c9aa0611bbb3e2025a45a" 427s | decode_to_chunk() output: 427s | c2 86 69 6d 88 7c 9a a0 61 1b bb 3e 20 25 a4 5a ..im.|..a..> %.Z 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9430 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CBC 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9438 427s | decode_to_mac() IV: : input "0x562e17996d093d28ddb3ba695a2e6f58" 427s | decode_to_mac() output: 427s | 56 2e 17 99 6d 09 3d 28 dd b3 ba 69 5a 2e 6f 58 V...m.=(...iZ.oX 427s | decode_to_chunk() new IV: : input "0xd296cd94c2cccf8a3a863028b5e1dc0a7586602d253cfff91b8266bea6d61ab1" 427s | decode_to_chunk() output: 427s | d2 96 cd 94 c2 cc cf 8a 3a 86 30 28 b5 e1 dc 0a ........:.0(.... 427s | 75 86 60 2d 25 3c ff f9 1b 82 66 be a6 d6 1a b1 u.`-%<....f..... 427s | decode_to_chunk() plaintext: : input "0x000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | decode_to_chunk() ciphertext: : input "0xd296cd94c2cccf8a3a863028b5e1dc0a7586602d253cfff91b8266bea6d61ab1" 427s | decode_to_chunk() output: 427s | d2 96 cd 94 c2 cc cf 8a 3a 86 30 28 b5 e1 dc 0a ........:.0(.... 427s | 75 86 60 2d 25 3c ff f9 1b 82 66 be a6 d6 1a b1 u.`-%<....f..... 427s | NSS ike_alg_nss_cbc: AES_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: AES_CBC - exit 427s | verify_bytes() Encrypting 32 bytes (2 blocks) using AES-CBC with 128-bit key: encrypt: ok 427s | verify_bytes() Encrypting 32 bytes (2 blocks) using AES-CBC with 128-bit key: updated CBC IV: ok 427s | decode_to_mac() IV: : input "0x562e17996d093d28ddb3ba695a2e6f58" 427s | decode_to_mac() output: 427s | 56 2e 17 99 6d 09 3d 28 dd b3 ba 69 5a 2e 6f 58 V...m.=(...iZ.oX 427s | decode_to_chunk() new IV: : input "0xd296cd94c2cccf8a3a863028b5e1dc0a7586602d253cfff91b8266bea6d61ab1" 427s | decode_to_chunk() output: 427s | d2 96 cd 94 c2 cc cf 8a 3a 86 30 28 b5 e1 dc 0a ........:.0(.... 427s | 75 86 60 2d 25 3c ff f9 1b 82 66 be a6 d6 1a b1 u.`-%<....f..... 427s | decode_to_chunk() ciphertext: : input "0xd296cd94c2cccf8a3a863028b5e1dc0a7586602d253cfff91b8266bea6d61ab1" 427s | decode_to_chunk() output: 427s | d2 96 cd 94 c2 cc cf 8a 3a 86 30 28 b5 e1 dc 0a ........:.0(.... 427s | 75 86 60 2d 25 3c ff f9 1b 82 66 be a6 d6 1a b1 u.`-%<....f..... 427s | decode_to_chunk() plaintext: : input "0x000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | NSS ike_alg_nss_cbc: AES_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: AES_CBC - exit 427s | verify_bytes() Encrypting 32 bytes (2 blocks) using AES-CBC with 128-bit key: decrypt: ok 427s | verify_bytes() Encrypting 32 bytes (2 blocks) using AES-CBC with 128-bit key: updated CBC IV: ok 427s ipsec algparse: Encrypting 48 bytes (3 blocks) using AES-CBC with 128-bit key 427s | decode_to_chunk() raw_key: input "0x6c3ea0477630ce21a2ce334aa746c2cd" 427s | decode_to_chunk() output: 427s | 6c 3e a0 47 76 30 ce 21 a2 ce 33 4a a7 46 c2 cd l>.Gv0.!..3J.F.. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9430 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CBC 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9438 427s | decode_to_mac() IV: : input "0xc782dc4c098c66cbd9cd27d825682c81" 427s | decode_to_mac() output: 427s | c7 82 dc 4c 09 8c 66 cb d9 cd 27 d8 25 68 2c 81 ...L..f...'.%h,. 427s | decode_to_chunk() new IV: : input "0xd0a02b3836451753d493665d33f0e8862dea54cdb293abc7506939276772f8d5021c19216bad525c8579695d83ba2684" 427s | decode_to_chunk() output: 427s | d0 a0 2b 38 36 45 17 53 d4 93 66 5d 33 f0 e8 86 ..+86E.S..f]3... 427s | 2d ea 54 cd b2 93 ab c7 50 69 39 27 67 72 f8 d5 -.T.....Pi9'gr.. 427s | 02 1c 19 21 6b ad 52 5c 85 79 69 5d 83 ba 26 84 ...!k.R\.yi]..&. 427s | decode_to_chunk() plaintext: : input "This is a 48-byte message (exactly 3 AES blocks)" 427s | decode_to_chunk() output: 427s | 54 68 69 73 20 69 73 20 61 20 34 38 2d 62 79 74 This is a 48-byt 427s | 65 20 6d 65 73 73 61 67 65 20 28 65 78 61 63 74 e message (exact 427s | 6c 79 20 33 20 41 45 53 20 62 6c 6f 63 6b 73 29 ly 3 AES blocks) 427s | decode_to_chunk() ciphertext: : input "0xd0a02b3836451753d493665d33f0e8862dea54cdb293abc7506939276772f8d5021c19216bad525c8579695d83ba2684" 427s | decode_to_chunk() output: 427s | d0 a0 2b 38 36 45 17 53 d4 93 66 5d 33 f0 e8 86 ..+86E.S..f]3... 427s | 2d ea 54 cd b2 93 ab c7 50 69 39 27 67 72 f8 d5 -.T.....Pi9'gr.. 427s | 02 1c 19 21 6b ad 52 5c 85 79 69 5d 83 ba 26 84 ...!k.R\.yi]..&. 427s | NSS ike_alg_nss_cbc: AES_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: AES_CBC - exit 427s | verify_bytes() Encrypting 48 bytes (3 blocks) using AES-CBC with 128-bit key: encrypt: ok 427s | verify_bytes() Encrypting 48 bytes (3 blocks) using AES-CBC with 128-bit key: updated CBC IV: ok 427s | decode_to_mac() IV: : input "0xc782dc4c098c66cbd9cd27d825682c81" 427s | decode_to_mac() output: 427s | c7 82 dc 4c 09 8c 66 cb d9 cd 27 d8 25 68 2c 81 ...L..f...'.%h,. 427s | decode_to_chunk() new IV: : input "0xd0a02b3836451753d493665d33f0e8862dea54cdb293abc7506939276772f8d5021c19216bad525c8579695d83ba2684" 427s | decode_to_chunk() output: 427s | d0 a0 2b 38 36 45 17 53 d4 93 66 5d 33 f0 e8 86 ..+86E.S..f]3... 427s | 2d ea 54 cd b2 93 ab c7 50 69 39 27 67 72 f8 d5 -.T.....Pi9'gr.. 427s | 02 1c 19 21 6b ad 52 5c 85 79 69 5d 83 ba 26 84 ...!k.R\.yi]..&. 427s | decode_to_chunk() ciphertext: : input "0xd0a02b3836451753d493665d33f0e8862dea54cdb293abc7506939276772f8d5021c19216bad525c8579695d83ba2684" 427s | decode_to_chunk() output: 427s | d0 a0 2b 38 36 45 17 53 d4 93 66 5d 33 f0 e8 86 ..+86E.S..f]3... 427s | 2d ea 54 cd b2 93 ab c7 50 69 39 27 67 72 f8 d5 -.T.....Pi9'gr.. 427s | 02 1c 19 21 6b ad 52 5c 85 79 69 5d 83 ba 26 84 ...!k.R\.yi]..&. 427s | decode_to_chunk() plaintext: : input "This is a 48-byte message (exactly 3 AES blocks)" 427s | decode_to_chunk() output: 427s | 54 68 69 73 20 69 73 20 61 20 34 38 2d 62 79 74 This is a 48-byt 427s | 65 20 6d 65 73 73 61 67 65 20 28 65 78 61 63 74 e message (exact 427s | 6c 79 20 33 20 41 45 53 20 62 6c 6f 63 6b 73 29 ly 3 AES blocks) 427s | NSS ike_alg_nss_cbc: AES_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: AES_CBC - exit 427s | verify_bytes() Encrypting 48 bytes (3 blocks) using AES-CBC with 128-bit key: decrypt: ok 427s | verify_bytes() Encrypting 48 bytes (3 blocks) using AES-CBC with 128-bit key: updated CBC IV: ok 427s ipsec algparse: Encrypting 64 bytes (4 blocks) using AES-CBC with 128-bit key 427s | decode_to_chunk() raw_key: input "0x56e47a38c5598974bc46903dba290349" 427s | decode_to_chunk() output: 427s | 56 e4 7a 38 c5 59 89 74 bc 46 90 3d ba 29 03 49 V.z8.Y.t.F.=.).I 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9430 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_CBC 427s | flags: ENCRYPT+DECRYPT 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9438 427s | decode_to_mac() IV: : input "0x8ce82eefbea0da3c44699ed7db51b7d9" 427s | decode_to_mac() output: 427s | 8c e8 2e ef be a0 da 3c 44 69 9e d7 db 51 b7 d9 ...........U 427s | decode_to_chunk() plaintext: : input "0xa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedf" 427s | decode_to_chunk() output: 427s | a0 a1 a2 a3 a4 a5 a6 a7 a8 a9 aa ab ac ad ae af ................ 427s | b0 b1 b2 b3 b4 b5 b6 b7 b8 b9 ba bb bc bd be bf ................ 427s | c0 c1 c2 c3 c4 c5 c6 c7 c8 c9 ca cb cc cd ce cf ................ 427s | d0 d1 d2 d3 d4 d5 d6 d7 d8 d9 da db dc dd de df ................ 427s | decode_to_chunk() ciphertext: : input "0xc30e32ffedc0774e6aff6af0869f71aa0f3af07a9a31a9c684db207eb0ef8e4e35907aa632c3ffdf868bb7b29d3d46ad83ce9f9a102ee99d49a53e87f4c3da55" 427s | decode_to_chunk() output: 427s | c3 0e 32 ff ed c0 77 4e 6a ff 6a f0 86 9f 71 aa ..2...wNj.j...q. 427s | 0f 3a f0 7a 9a 31 a9 c6 84 db 20 7e b0 ef 8e 4e .:.z.1.... ~...N 427s | 35 90 7a a6 32 c3 ff df 86 8b b7 b2 9d 3d 46 ad 5.z.2........=F. 427s | 83 ce 9f 9a 10 2e e9 9d 49 a5 3e 87 f4 c3 da 55 ........I.>....U 427s | NSS ike_alg_nss_cbc: AES_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: AES_CBC - exit 427s | verify_bytes() Encrypting 64 bytes (4 blocks) using AES-CBC with 128-bit key: encrypt: ok 427s | verify_bytes() Encrypting 64 bytes (4 blocks) using AES-CBC with 128-bit key: updated CBC IV: ok 427s | decode_to_mac() IV: : input "0x8ce82eefbea0da3c44699ed7db51b7d9" 427s | decode_to_mac() output: 427s | 8c e8 2e ef be a0 da 3c 44 69 9e d7 db 51 b7 d9 ...........U 427s | decode_to_chunk() ciphertext: : input "0xc30e32ffedc0774e6aff6af0869f71aa0f3af07a9a31a9c684db207eb0ef8e4e35907aa632c3ffdf868bb7b29d3d46ad83ce9f9a102ee99d49a53e87f4c3da55" 427s | decode_to_chunk() output: 427s | c3 0e 32 ff ed c0 77 4e 6a ff 6a f0 86 9f 71 aa ..2...wNj.j...q. 427s | 0f 3a f0 7a 9a 31 a9 c6 84 db 20 7e b0 ef 8e 4e .:.z.1.... ~...N 427s | 35 90 7a a6 32 c3 ff df 86 8b b7 b2 9d 3d 46 ad 5.z.2........=F. 427s | 83 ce 9f 9a 10 2e e9 9d 49 a5 3e 87 f4 c3 da 55 ........I.>....U 427s | decode_to_chunk() plaintext: : input "0xa0a1a2a3a4a5a6a7a8a9aaabacadaeafb0b1b2b3b4b5b6b7b8b9babbbcbdbebfc0c1c2c3c4c5c6c7c8c9cacbcccdcecfd0d1d2d3d4d5d6d7d8d9dadbdcdddedf" 427s | decode_to_chunk() output: 427s | a0 a1 a2 a3 a4 a5 a6 a7 a8 a9 aa ab ac ad ae af ................ 427s | b0 b1 b2 b3 b4 b5 b6 b7 b8 b9 ba bb bc bd be bf ................ 427s | c0 c1 c2 c3 c4 c5 c6 c7 c8 c9 ca cb cc cd ce cf ................ 427s | d0 d1 d2 d3 d4 d5 d6 d7 d8 d9 da db dc dd de df ................ 427s | NSS ike_alg_nss_cbc: AES_CBC - enter (nil) 427s | using IKEv1 IV 427s | NSS ike_alg_nss_cbc: AES_CBC - exit 427s | verify_bytes() Encrypting 64 bytes (4 blocks) using AES-CBC with 128-bit key: decrypt: ok 427s | verify_bytes() Encrypting 64 bytes (4 blocks) using AES-CBC with 128-bit key: updated CBC IV: ok 427s ipsec algparse: testing AES_XCBC: 427s ipsec algparse: RFC 3566 Test Case 1: AES-XCBC-MAC-96 with 0-byte input 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "" 427s | decode_to_chunk() output: 427s | 427s | decode_to_chunk() test_prf_vector: input "0x75f0251d528ac01c4573dfd584d79f29" 427s | decode_to_chunk() output: 427s | 75 f0 25 1d 52 8a c0 1c 45 73 df d5 84 d7 9f 29 u.%.R...Es.....) 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50d5d0 (length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50a230 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50bae0 length 0) 427s | 427s | XCBC: data 427s | 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50deb0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | Computing E[0] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: M[n] 427s | 427s | XCBC: M[n] 427s | 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | 41 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e A....:..X......n 427s | XCBC: MAC 427s | 75 f0 25 1d 52 8a c0 1c 45 73 df d5 84 d7 9f 29 u.%.R...Es.....) 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | 75 f0 25 1d 52 8a c0 1c 45 73 df d5 84 d7 9f 29 u.%.R...Es.....) 427s | chunk output 427s | 75 f0 25 1d 52 8a c0 1c 45 73 df d5 84 d7 9f 29 u.%.R...Es.....) 427s | verify_bytes() RFC 3566 Test Case 1: AES-XCBC-MAC-96 with 0-byte input: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50a230 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@(nil) (size 0) 427s | PRF symkey interface: symkey message-key@NULL 427s | symkey message NULL key has no bytes 427s | XCBC: data 427s | 427s | K extracting all 16 bytes of key@0x11f9b50bbb0 427s | K: symkey-key@0x11f9b50bbb0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225488: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50deb0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | Computing E[0] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: M[n] 427s | 427s | XCBC: M[n] 427s | 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | 41 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e A....:..X......n 427s | XCBC: MAC 427s | 75 f0 25 1d 52 8a c0 1c 45 73 df d5 84 d7 9f 29 u.%.R...Es.....) 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e040 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 3566 Test Case 1: AES-XCBC-MAC-96 with 0-byte input extracting all 16 bytes of key@0x11f9b50e040 427s | RFC 3566 Test Case 1: AES-XCBC-MAC-96 with 0-byte input: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: 2a b1 3e 5e c3 17 2e 42 f7 a0 1c 66 84 23 41 4f 427s | RFC 3566 Test Case 1: AES-XCBC-MAC-96 with 0-byte input extracted len 16 bytes at 0x11f9b50e020 427s | unwrapped: 427s | 75 f0 25 1d 52 8a c0 1c 45 73 df d5 84 d7 9f 29 u.%.R...Es.....) 427s | verify_bytes() RFC 3566 Test Case 1: AES-XCBC-MAC-96 with 0-byte input: symkey: ok 427s ipsec algparse: RFC 3566 Test Case 2: AES-XCBC-MAC-96 with 3-byte input 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "0x000102" 427s | decode_to_chunk() output: 427s | 00 01 02 ... 427s | decode_to_chunk() test_prf_vector: input "0x5b376580ae2f19afe7219ceef172756f" 427s | decode_to_chunk() output: 427s | 5b 37 65 80 ae 2f 19 af e7 21 9c ee f1 72 75 6f [7e../...!...ruo 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50d5d0 (length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50a230 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50bae0 length 3) 427s | 00 01 02 ... 427s | XCBC: data 427s | 00 01 02 ... 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50d5f0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | Computing E[1] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: M[n] 427s | 00 01 02 ... 427s | XCBC: M[n] 427s | 00 01 02 ... 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | c1 a6 a9 21 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e ...!.:..X......n 427s | XCBC: MAC 427s | 5b 37 65 80 ae 2f 19 af e7 21 9c ee f1 72 75 6f [7e../...!...ruo 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | 5b 37 65 80 ae 2f 19 af e7 21 9c ee f1 72 75 6f [7e../...!...ruo 427s | chunk output 427s | 5b 37 65 80 ae 2f 19 af e7 21 9c ee f1 72 75 6f [7e../...!...ruo 427s | verify_bytes() RFC 3566 Test Case 2: AES-XCBC-MAC-96 with 3-byte input: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50a230 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 3 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 3-bytes 427s | base: base-key@0x11f9b50e380 (19-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@0x11f9b50bbb0 (size 3) 427s | PRF symkey interface: symkey message-key@0x11f9b50bbb0 (3-bytes, EXTRACT_KEY_FROM_KEY) 427s | symkey message extracting all 3 bytes of key@0x11f9b50bbb0 427s | symkey message: symkey-key@0x11f9b50bbb0 (3-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225248: 97 04 bf d7 8c 39 27 6b 53 30 a1 d1 26 57 60 b3 427s | symkey message extracted len 16 bytes at 0x11f9b50d5f0 427s | unwrapped: 427s | 00 01 02 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: data 427s | 00 01 02 ... 427s | K extracting all 16 bytes of key@0x11f9b50e040 427s | K: symkey-key@0x11f9b50e040 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: siDERCertBuffer: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50a160 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | Computing E[1] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: M[n] 427s | 00 01 02 ... 427s | XCBC: M[n] 427s | 00 01 02 ... 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | c1 a6 a9 21 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e ...!.:..X......n 427s | XCBC: MAC 427s | 5b 37 65 80 ae 2f 19 af e7 21 9c ee f1 72 75 6f [7e../...!...ruo 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e380 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 3566 Test Case 2: AES-XCBC-MAC-96 with 3-byte input extracting all 16 bytes of key@0x11f9b50e380 427s | RFC 3566 Test Case 2: AES-XCBC-MAC-96 with 3-byte input: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: 8c b8 26 dd 17 a0 26 2c a5 c3 54 5a 0f fb 38 9a 427s | RFC 3566 Test Case 2: AES-XCBC-MAC-96 with 3-byte input extracted len 16 bytes at 0x11f9b50a160 427s | unwrapped: 427s | 5b 37 65 80 ae 2f 19 af e7 21 9c ee f1 72 75 6f [7e../...!...ruo 427s | verify_bytes() RFC 3566 Test Case 2: AES-XCBC-MAC-96 with 3-byte input: symkey: ok 427s ipsec algparse: RFC 3566 Test Case 3: AES-XCBC-MAC-96 with 16-byte input 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "0xd2a246fa349b68a79998a4394ff7a263" 427s | decode_to_chunk() output: 427s | d2 a2 46 fa 34 9b 68 a7 99 98 a4 39 4f f7 a2 63 ..F.4.h....9O..c 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50d5d0 (length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50a230 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50bae0 length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50deb0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | XCBC: Computing E[1] using K2 427s | XCBC: K2 427s | bd 86 2f fb 97 ad 2f b8 f8 b8 91 f6 03 2f 36 cb ../.../....../6. 427s | XCBC: E[n-1] 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: M[n] 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: M[n]^E[n-1]^K2 427s | bd 87 2d f8 93 a8 29 bf f0 b1 9b fd 0f 22 38 c4 ..-...)......"8. 427s | XCBC: MAC 427s | d2 a2 46 fa 34 9b 68 a7 99 98 a4 39 4f f7 a2 63 ..F.4.h....9O..c 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | d2 a2 46 fa 34 9b 68 a7 99 98 a4 39 4f f7 a2 63 ..F.4.h....9O..c 427s | chunk output 427s | d2 a2 46 fa 34 9b 68 a7 99 98 a4 39 4f f7 a2 63 ..F.4.h....9O..c 427s | verify_bytes() RFC 3566 Test Case 3: AES-XCBC-MAC-96 with 16-byte input: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50a230 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@0x11f9b50bbb0 (size 16) 427s | PRF symkey interface: symkey message-key@0x11f9b50bbb0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | symkey message extracting all 16 bytes of key@0x11f9b50bbb0 427s | symkey message: symkey-key@0x11f9b50bbb0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225248: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | symkey message extracted len 16 bytes at 0x11f9b50deb0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | K extracting all 16 bytes of key@0x11f9b50e380 427s | K: symkey-key@0x11f9b50e380 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)16: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b509fc0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | XCBC: Computing E[1] using K2 427s | XCBC: K2 427s | bd 86 2f fb 97 ad 2f b8 f8 b8 91 f6 03 2f 36 cb ../.../....../6. 427s | XCBC: E[n-1] 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: M[n] 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: M[n]^E[n-1]^K2 427s | bd 87 2d f8 93 a8 29 bf f0 b1 9b fd 0f 22 38 c4 ..-...)......"8. 427s | XCBC: MAC 427s | d2 a2 46 fa 34 9b 68 a7 99 98 a4 39 4f f7 a2 63 ..F.4.h....9O..c 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e040 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 3566 Test Case 3: AES-XCBC-MAC-96 with 16-byte input extracting all 16 bytes of key@0x11f9b50e040 427s | RFC 3566 Test Case 3: AES-XCBC-MAC-96 with 16-byte input: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: 9b 51 b7 80 47 a4 17 60 a4 ba 21 a8 ab 80 0f 31 427s | RFC 3566 Test Case 3: AES-XCBC-MAC-96 with 16-byte input extracted len 16 bytes at 0x11f9b509fc0 427s | unwrapped: 427s | d2 a2 46 fa 34 9b 68 a7 99 98 a4 39 4f f7 a2 63 ..F.4.h....9O..c 427s | verify_bytes() RFC 3566 Test Case 3: AES-XCBC-MAC-96 with 16-byte input: symkey: ok 427s ipsec algparse: RFC 3566 Test Case 4: AES-XCBC-MAC-96 with 20-byte input 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f10111213" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | decode_to_chunk() test_prf_vector: input "0x47f51b4564966215b8985c63055ed308" 427s | decode_to_chunk() output: 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50d5d0 (length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50a230 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50bae0 length 20) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50ea20 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | Computing E[2] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 1d 04 48 fa cf 4d 9c 6f 55 b9 93 da 09 80 3d b3 ..H..M.oU.....=. 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | cc b2 f1 48 ed 77 08 69 0d be 33 56 c1 6e ed dd ...H.w.i..3V.n.. 427s | XCBC: MAC 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | chunk output 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | verify_bytes() RFC 3566 Test Case 4: AES-XCBC-MAC-96 with 20-byte input: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50a230 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 20 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 20-bytes 427s | base: base-key@0x11f9b50e380 (36-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@0x11f9b50bbb0 (size 20) 427s | PRF symkey interface: symkey message-key@0x11f9b50bbb0 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | symkey message extracting all 20 bytes of key@0x11f9b50bbb0 427s | symkey message: symkey-key@0x11f9b50bbb0 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)-541225248: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c f5 ac 6f 17 e5 36 21 76 8d d8 f9 24 6f 60 16 53 427s | symkey message extracted len 32 bytes at 0x11f9b50dc20 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | K extracting all 16 bytes of key@0x11f9b50e040 427s | K: symkey-key@0x11f9b50e040 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)20: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50a160 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | Computing E[2] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 1d 04 48 fa cf 4d 9c 6f 55 b9 93 da 09 80 3d b3 ..H..M.oU.....=. 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | cc b2 f1 48 ed 77 08 69 0d be 33 56 c1 6e ed dd ...H.w.i..3V.n.. 427s | XCBC: MAC 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e380 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 3566 Test Case 4: AES-XCBC-MAC-96 with 20-byte input extracting all 16 bytes of key@0x11f9b50e380 427s | RFC 3566 Test Case 4: AES-XCBC-MAC-96 with 20-byte input: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: 3d ab 2b 4f d9 d6 1d 3d e9 94 0b 77 af bf dc a0 427s | RFC 3566 Test Case 4: AES-XCBC-MAC-96 with 20-byte input extracted len 16 bytes at 0x11f9b50a160 427s | unwrapped: 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | verify_bytes() RFC 3566 Test Case 4: AES-XCBC-MAC-96 with 20-byte input: symkey: ok 427s ipsec algparse: RFC 3566 Test Case 5: AES-XCBC-MAC-96 with 32-byte input 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | decode_to_chunk() test_prf_vector: input "0xf54f0ec8d2b9f3d36807734bd5283fd4" 427s | decode_to_chunk() output: 427s | f5 4f 0e c8 d2 b9 f3 d3 68 07 73 4b d5 28 3f d4 .O......h.sK.(?. 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50d5d0 (length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50dc20 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50a230 length 32) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50d8e0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | XCBC: Computing E[2] using K2 427s | XCBC: K2 427s | bd 86 2f fb 97 ad 2f b8 f8 b8 91 f6 03 2f 36 cb ../.../....../6. 427s | XCBC: E[n-1] 427s | 1d 04 48 fa cf 4d 9c 6f 55 b9 93 da 09 80 3d b3 ..H..M.oU.....=. 427s | XCBC: M[n] 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | XCBC: M[n]^E[n-1]^K2 427s | b0 93 75 12 4c f5 a5 c0 b5 18 18 37 16 b2 15 67 ..u.L......7...g 427s | XCBC: MAC 427s | f5 4f 0e c8 d2 b9 f3 d3 68 07 73 4b d5 28 3f d4 .O......h.sK.(?. 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | f5 4f 0e c8 d2 b9 f3 d3 68 07 73 4b d5 28 3f d4 .O......h.sK.(?. 427s | chunk output 427s | f5 4f 0e c8 d2 b9 f3 d3 68 07 73 4b d5 28 3f d4 .O......h.sK.(?. 427s | verify_bytes() RFC 3566 Test Case 5: AES-XCBC-MAC-96 with 32-byte input: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50dc20 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 32 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 32-bytes 427s | base: base-key@0x11f9b50e040 (48-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@0x11f9b50bbb0 (size 32) 427s | PRF symkey interface: symkey message-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | symkey message extracting all 32 bytes of key@0x11f9b50bbb0 427s | symkey message: symkey-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)-541225248: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 5d 4d b1 7f 5a 9b 3f a5 49 62 74 93 54 19 c7 e2 427s | symkey message extracted len 32 bytes at 0x11f9b50e9a0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | K extracting all 16 bytes of key@0x11f9b50e380 427s | K: symkey-key@0x11f9b50e380 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)32: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50d5f0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | XCBC: Computing E[2] using K2 427s | XCBC: K2 427s | bd 86 2f fb 97 ad 2f b8 f8 b8 91 f6 03 2f 36 cb ../.../....../6. 427s | XCBC: E[n-1] 427s | 1d 04 48 fa cf 4d 9c 6f 55 b9 93 da 09 80 3d b3 ..H..M.oU.....=. 427s | XCBC: M[n] 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | XCBC: M[n]^E[n-1]^K2 427s | b0 93 75 12 4c f5 a5 c0 b5 18 18 37 16 b2 15 67 ..u.L......7...g 427s | XCBC: MAC 427s | f5 4f 0e c8 d2 b9 f3 d3 68 07 73 4b d5 28 3f d4 .O......h.sK.(?. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e040 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 3566 Test Case 5: AES-XCBC-MAC-96 with 32-byte input extracting all 16 bytes of key@0x11f9b50e040 427s | RFC 3566 Test Case 5: AES-XCBC-MAC-96 with 32-byte input: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: 74 5a 60 a1 26 56 f7 a9 a6 e1 ed d7 7e 42 73 3b 427s | RFC 3566 Test Case 5: AES-XCBC-MAC-96 with 32-byte input extracted len 16 bytes at 0x11f9b50deb0 427s | unwrapped: 427s | f5 4f 0e c8 d2 b9 f3 d3 68 07 73 4b d5 28 3f d4 .O......h.sK.(?. 427s | verify_bytes() RFC 3566 Test Case 5: AES-XCBC-MAC-96 with 32-byte input: symkey: ok 427s ipsec algparse: RFC 3566 Test Case 6: AES-XCBC-MAC-96 with 34-byte input 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f101112131415161718191a1b1c1d1e1f2021" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 ! 427s | decode_to_chunk() test_prf_vector: input "0xbecbb3bccdb518a30677d5481fb6b4d8" 427s | decode_to_chunk() output: 427s | be cb b3 bc cd b5 18 a3 06 77 d5 48 1f b6 b4 d8 .........w.H.... 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50bae0 (length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50a230 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50a260 length 34) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 ! 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 ! 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50d5f0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | Computing E[3] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 09 02 5e 5a 67 25 20 72 44 14 5c 6b 80 66 85 79 ..^Zg% rD.\k.f.y 427s | XCBC: M[n] 427s | 20 21 ! 427s | XCBC: M[n] 427s | 20 21 ! 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | e8 84 75 fb c5 1f b4 74 1c 13 fc e7 48 88 55 17 ..u....t....H.U. 427s | XCBC: MAC 427s | be cb b3 bc cd b5 18 a3 06 77 d5 48 1f b6 b4 d8 .........w.H.... 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | be cb b3 bc cd b5 18 a3 06 77 d5 48 1f b6 b4 d8 .........w.H.... 427s | chunk output 427s | be cb b3 bc cd b5 18 a3 06 77 d5 48 1f b6 b4 d8 .........w.H.... 427s | verify_bytes() RFC 3566 Test Case 6: AES-XCBC-MAC-96 with 34-byte input: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50a230 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 34 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 34-bytes 427s | base: base-key@0x11f9b50e380 (50-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@0x11f9b50bbb0 (size 34) 427s | PRF symkey interface: symkey message-key@0x11f9b50bbb0 (34-bytes, EXTRACT_KEY_FROM_KEY) 427s | symkey message extracting all 34 bytes of key@0x11f9b50bbb0 427s | symkey message: symkey-key@0x11f9b50bbb0 (34-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 48 427s | wrapper: (SECItemType)-541225248: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 5d 4d b1 7f 5a 9b 3f a5 49 62 74 93 54 19 c7 e2 b6 27 f0 c3 b5 65 d5 c2 72 45 a3 d5 87 81 71 af 427s | symkey message extracted len 48 bytes at 0x11f9b50d900 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 00 00 00 00 00 00 00 00 00 00 00 00 00 00 !.............. 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 14 15 16 17 18 19 1a 1b 1c 1d 1e 1f ................ 427s | 20 21 ! 427s | K extracting all 16 bytes of key@0x11f9b50e040 427s | K: symkey-key@0x11f9b50e040 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)34: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50d8e0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | Computing E[3] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 09 02 5e 5a 67 25 20 72 44 14 5c 6b 80 66 85 79 ..^Zg% rD.\k.f.y 427s | XCBC: M[n] 427s | 20 21 ! 427s | XCBC: M[n] 427s | 20 21 ! 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | e8 84 75 fb c5 1f b4 74 1c 13 fc e7 48 88 55 17 ..u....t....H.U. 427s | XCBC: MAC 427s | be cb b3 bc cd b5 18 a3 06 77 d5 48 1f b6 b4 d8 .........w.H.... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e380 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 3566 Test Case 6: AES-XCBC-MAC-96 with 34-byte input extracting all 16 bytes of key@0x11f9b50e380 427s | RFC 3566 Test Case 6: AES-XCBC-MAC-96 with 34-byte input: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: f8 60 22 a9 54 d6 e9 e3 02 0e 0f c3 a8 ca 43 fe 427s | RFC 3566 Test Case 6: AES-XCBC-MAC-96 with 34-byte input extracted len 16 bytes at 0x11f9b50e020 427s | unwrapped: 427s | be cb b3 bc cd b5 18 a3 06 77 d5 48 1f b6 b4 d8 .........w.H.... 427s | verify_bytes() RFC 3566 Test Case 6: AES-XCBC-MAC-96 with 34-byte input: symkey: ok 427s ipsec algparse: RFC 3566 Test Case 7: AES-XCBC-MAC-96 with 1000-byte input 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "0xf0dafee895db30253761103b5d84528f" 427s | decode_to_chunk() output: 427s | f0 da fe e8 95 db 30 25 37 61 10 3b 5d 84 52 8f ......0%7a.;].R. 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50a160 (length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50dc20 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50bce0 length 1000) 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 ........ 427s | XCBC: data 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 ........ 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50d8e0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | Computing E[63] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 5c 88 af cc 1e 1e 83 fc c4 2c 0c e4 12 12 f5 17 \........,...... 427s | XCBC: M[n] 427s | 00 00 00 00 00 00 00 00 ........ 427s | XCBC: M[n] 427s | 00 00 00 00 00 00 00 00 ........ 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | 9d 2f 04 6d bc 24 17 fa 1c 2b ac 68 da fc 25 79 ./.m.$...+.h..%y 427s | XCBC: MAC 427s | f0 da fe e8 95 db 30 25 37 61 10 3b 5d 84 52 8f ......0%7a.;].R. 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | f0 da fe e8 95 db 30 25 37 61 10 3b 5d 84 52 8f ......0%7a.;].R. 427s | chunk output 427s | f0 da fe e8 95 db 30 25 37 61 10 3b 5d 84 52 8f ......0%7a.;].R. 427s | verify_bytes() RFC 3566 Test Case 7: AES-XCBC-MAC-96 with 1000-byte input: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50dc20 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 1000 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 1000-bytes 427s | base: base-key@0x11f9b50e040 (1016-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@0x11f9b50bbb0 (size 1000) 427s | PRF symkey interface: symkey message-key@0x11f9b50bbb0 (1000-bytes, EXTRACT_KEY_FROM_KEY) 427s | symkey message extracting all 1000 bytes of key@0x11f9b50bbb0 427s | symkey message: symkey-key@0x11f9b50bbb0 (1000-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 1008 427s | wrapper: (SECItemType)-541225248: d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3... 427s | symkey message extracted len 1008 bytes at 0x11f9b50c8c0 427s | unwrapped: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: data 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | 00 00 00 00 00 00 00 00 ........ 427s | K extracting all 16 bytes of key@0x11f9b50e380 427s | K: symkey-key@0x11f9b50e380 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)1000: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50d5f0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | Computing E[63] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 5c 88 af cc 1e 1e 83 fc c4 2c 0c e4 12 12 f5 17 \........,...... 427s | XCBC: M[n] 427s | 00 00 00 00 00 00 00 00 ........ 427s | XCBC: M[n] 427s | 00 00 00 00 00 00 00 00 ........ 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | 9d 2f 04 6d bc 24 17 fa 1c 2b ac 68 da fc 25 79 ./.m.$...+.h..%y 427s | XCBC: MAC 427s | f0 da fe e8 95 db 30 25 37 61 10 3b 5d 84 52 8f ......0%7a.;].R. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e040 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 3566 Test Case 7: AES-XCBC-MAC-96 with 1000-byte input extracting all 16 bytes of key@0x11f9b50e040 427s | RFC 3566 Test Case 7: AES-XCBC-MAC-96 with 1000-byte input: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: f0 99 86 10 3e 71 c3 60 f5 3a 75 7e a3 74 41 ce 427s | RFC 3566 Test Case 7: AES-XCBC-MAC-96 with 1000-byte input extracted len 16 bytes at 0x11f9b50deb0 427s | unwrapped: 427s | f0 da fe e8 95 db 30 25 37 61 10 3b 5d 84 52 8f ......0%7a.;].R. 427s | verify_bytes() RFC 3566 Test Case 7: AES-XCBC-MAC-96 with 1000-byte input: symkey: ok 427s ipsec algparse: RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 16) 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f10111213" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | decode_to_chunk() test_prf_vector: input "0x47f51b4564966215b8985c63055ed308" 427s | decode_to_chunk() output: 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50d5d0 (length 16) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50dc20 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50bae0 length 20) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50e6c0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | Computing E[2] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 1d 04 48 fa cf 4d 9c 6f 55 b9 93 da 09 80 3d b3 ..H..M.oU.....=. 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | cc b2 f1 48 ed 77 08 69 0d be 33 56 c1 6e ed dd ...H.w.i..3V.n.. 427s | XCBC: MAC 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | chunk output 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | verify_bytes() RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 16): prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e040 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 16=16 just right 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50dc20 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 20 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 20-bytes 427s | base: base-key@0x11f9b50e380 (36-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@0x11f9b50bbb0 (size 20) 427s | PRF symkey interface: symkey message-key@0x11f9b50bbb0 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | symkey message extracting all 20 bytes of key@0x11f9b50bbb0 427s | symkey message: symkey-key@0x11f9b50bbb0 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)-541225248: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c f5 ac 6f 17 e5 36 21 76 8d d8 f9 24 6f 60 16 53 427s | symkey message extracted len 32 bytes at 0x11f9b50a230 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | K extracting all 16 bytes of key@0x11f9b50e040 427s | K: symkey-key@0x11f9b50e040 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)20: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 427s | K extracted len 16 bytes at 0x11f9b50d8e0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | XCBC: K1 427s | c3 52 80 57 54 23 7f 31 1a c0 ff f4 e3 e0 3e 78 .R.WT#.1......>x 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | Computing E[2] using K3 427s | XCBC: K3 427s | c1 a7 ab a1 a2 3a 94 06 58 07 a0 8c c8 ee d0 6e .....:..X......n 427s | XCBC: E[n-1] 427s | 1d 04 48 fa cf 4d 9c 6f 55 b9 93 da 09 80 3d b3 ..H..M.oU.....=. 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | cc b2 f1 48 ed 77 08 69 0d be 33 56 c1 6e ed dd ...H.w.i..3V.n.. 427s | XCBC: MAC 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e380 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 16) extracting all 16 bytes of key@0x11f9b50e380 427s | RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 16): symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: 3d ab 2b 4f d9 d6 1d 3d e9 94 0b 77 af bf dc a0 427s | RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 16) extracted len 16 bytes at 0x11f9b50d8e0 427s | unwrapped: 427s | 47 f5 1b 45 64 96 62 15 b8 98 5c 63 05 5e d3 08 G..Ed.b...\c.^.. 427s | verify_bytes() RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 16): symkey: ok 427s ipsec algparse: RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 10) 427s | decode_to_chunk() test_prf_vector: input "0x00010203040506070809" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 .......... 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f10111213" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | decode_to_chunk() test_prf_vector: input "0x0fa087af7d866e7653434e602fdde835" 427s | decode_to_chunk() output: 427s | 0f a0 87 af 7d 86 6e 76 53 43 4e 60 2f dd e8 35 ....}.nvSCN`/..5 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50d5d0 (length 10) 427s | 00 01 02 03 04 05 06 07 08 09 .......... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 10 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 10-bytes 427s | base: base-key@0x11f9b50d2a0 (26-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 10<16 too small, padding with zeros 427s | CONCATENATE_BASE_AND_DATA: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50e380 (10-bytes, EXTRACT_KEY_FROM_KEY) 427s | params: 16-bytes@0x7fffdfbd9200 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9218 427s | PRF chunk interface PRF AES_XCBC 0x11f9b50dc20 427s | PRF chunk interface PRF AES_XCBC update message (0x11f9b50bae0 length 20) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | K extracting all 16 bytes of key@0x11f9b50bbb0 427s | K: symkey-key@0x11f9b50bbb0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541224408: 5f e4 c1 17 d9 28 47 db ef 19 3e 3f c7 be 87 06 427s | K extracted len 16 bytes at 0x11f9b50a160 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 00 00 00 00 00 00 ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 00 00 00 00 00 00 ................ 427s | XCBC: K1 427s | 50 ca b2 4d 03 34 45 5e 40 7b 25 0f dd 7c f8 d5 P..M.4E^@{%..|.. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9100 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9108 427s | Computing E[2] using K3 427s | XCBC: K3 427s | 8e f7 48 db 56 f1 f7 26 24 72 f2 c5 63 b0 3f 88 ..H.V..&$r..c.?. 427s | XCBC: E[n-1] 427s | fe 1f 63 e9 65 1a 4b bb 3c cc cd 0d cc 83 e4 30 ..c.e.K.<......0 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | 60 f9 39 21 b3 eb bc 9d 18 be 3f c8 af 33 db b8 `.9!......?..3.. 427s | XCBC: MAC 427s | 0f a0 87 af 7d 86 6e 76 53 43 4e 60 2f dd e8 35 ....}.nvSCN`/..5 427s | PRF chunk interface PRF AES_XCBC final length 16 427s | 0f a0 87 af 7d 86 6e 76 53 43 4e 60 2f dd e8 35 ....}.nvSCN`/..5 427s | chunk output 427s | 0f a0 87 af 7d 86 6e 76 53 43 4e 60 2f dd e8 35 ....}.nvSCN`/..5 427s | verify_bytes() RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 10): prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 10 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 10-bytes 427s | base: base-key@0x11f9b50e380 (26-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC init key symkey-key@0x11f9b50bbb0 (size 10) 427s | PRF symkey interface: key symkey-key@0x11f9b50bbb0 (10-bytes, EXTRACT_KEY_FROM_KEY) 427s | XCBC: Key 10<16 too small, padding with zeros 427s | CONCATENATE_BASE_AND_DATA: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50bbb0 (10-bytes, EXTRACT_KEY_FROM_KEY) 427s | params: 16-bytes@0x7fffdfbd9250 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF AES_XCBC 0x11f9b50dc20 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 20 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 20-bytes 427s | base: base-key@0x11f9b50e040 (36-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF AES_XCBC update symkey message-key@0x11f9b50e380 (size 20) 427s | PRF symkey interface: symkey message-key@0x11f9b50e380 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | symkey message extracting all 20 bytes of key@0x11f9b50e380 427s | symkey message: symkey-key@0x11f9b50e380 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)-541225248: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c f5 ac 6f 17 e5 36 21 76 8d d8 f9 24 6f 60 16 53 427s | symkey message extracted len 32 bytes at 0x11f9b50a260 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | K extracting all 16 bytes of key@0x11f9b50d2a0 427s | K: symkey-key@0x11f9b50d2a0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)20: 5f e4 c1 17 d9 28 47 db ef 19 3e 3f c7 be 87 06 427s | K extracted len 16 bytes at 0x11f9b509fc0 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 00 00 00 00 00 00 ................ 427s | XCBC: K: 427s | 00 01 02 03 04 05 06 07 08 09 00 00 00 00 00 00 ................ 427s | XCBC: K1 427s | 50 ca b2 4d 03 34 45 5e 40 7b 25 0f dd 7c f8 d5 P..M.4E^@{%..|.. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9150 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9158 427s | Computing E[2] using K3 427s | XCBC: K3 427s | 8e f7 48 db 56 f1 f7 26 24 72 f2 c5 63 b0 3f 88 ..H.V..&$r..c.?. 427s | XCBC: E[n-1] 427s | fe 1f 63 e9 65 1a 4b bb 3c cc cd 0d cc 83 e4 30 ..c.e.K.<......0 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n] 427s | 10 11 12 13 .... 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | 60 f9 39 21 b3 eb bc 9d 18 be 3f c8 af 33 db b8 `.9!......?..3.. 427s | XCBC: MAC 427s | 0f a0 87 af 7d 86 6e 76 53 43 4e 60 2f dd e8 35 ....}.nvSCN`/..5 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9320 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e6e0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9258 427s | PRF symkey interface PRF AES_XCBC final-key@0x11f9b50e040 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 10) extracting all 16 bytes of key@0x11f9b50e040 427s | RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 10): symkey-key@0x11f9b50e040 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: f0 78 d6 ce 6b d0 c5 78 b4 c2 fc 96 6b 65 09 99 427s | RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 10) extracted len 16 bytes at 0x11f9b509fc0 427s | unwrapped: 427s | 0f a0 87 af 7d 86 6e 76 53 43 4e 60 2f dd e8 35 ....}.nvSCN`/..5 427s | verify_bytes() RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 10): symkey: ok 427s ipsec algparse: RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 18) 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0fedcb" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | ed cb .. 427s | decode_to_chunk() test_prf_vector: input "0x000102030405060708090a0b0c0d0e0f10111213" 427s | decode_to_chunk() output: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | 10 11 12 13 .... 427s | decode_to_chunk() test_prf_vector: input "0x8cd3c93ae598a9803006ffb67c40e9e4" 427s | decode_to_chunk() output: 427s | 8c d3 c9 3a e5 98 a9 80 30 06 ff b6 7c 40 e9 e4 ...:....0...|@.. 427s | PRF chunk interface PRF AES_XCBC init key hunk 0x11f9b50d5d0 (length 18) 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | ed cb .. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9310 427s | key-offset: 0, key-size: 18 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 18-bytes 427s | base: base-key@0x11f9b50bbb0 (34-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9248 427s | XCBC: Key 18>16 too big, rehashing to size 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9170 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9178 427s | draft_chunk extracting all 18 bytes of key@0x11f9b50e040 427s | draft_chunk: symkey-key@0x11f9b50e040 (18-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)-541224400: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 47 bb e6 b7 5b fd 4e ec ff 40 8e 01 0b 75 df 8b 427s | draft_chunk extracted len 32 bytes at 0x11f9b50a260 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | ed cb 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | ed cb .. 427s | K extracting all 16 bytes of key@0x11f9b50bbb0 427s | K: symkey-key@0x11f9b50bbb0 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)18: d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 427s | K extracted len 16 bytes at 0x11f9b50e6c0 427s | unwrapped: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: K: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: K1 427s | e1 4d 5d 0e e2 77 15 df 08 b4 15 2b a2 3d a8 e0 .M]..w.....+.=.. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9030 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9038 427s | Computing E[2] using K3 427s | XCBC: K3 427s | 8d 34 ef cb 3b d5 45 ca 06 2a ec df ef 7c 0b fa .4..;.E..*...|.. 427s | XCBC: E[n-1] 427s | 0b 72 b2 ae 0a 37 79 81 75 6a d5 9c 79 c0 e6 96 .r...7y.uj..y... 427s | XCBC: M[n] 427s | ed cb .. 427s | XCBC: M[n] 427s | ed cb .. 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | 6b 8d dd 65 31 e2 3c 4b 73 40 39 43 96 bc ed 6c k..e1.16 too big, rehashing to size 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd91c0 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd91c8 427s | draft_chunk extracting all 18 bytes of key@0x11f9b50e380 427s | draft_chunk: symkey-key@0x11f9b50e380 (18-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)-541224320: 64 6c 3b 76 b5 d2 03 9c 82 71 67 99 f0 28 ce 0c 47 bb e6 b7 5b fd 4e ec ff 40 8e 01 0b 75 df 8b 427s | draft_chunk extracted len 32 bytes at 0x11f9b50dc20 427s | unwrapped: 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | ed cb 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: data 427s | 00 01 02 03 04 05 06 07 08 09 0a 0b 0c 0d 0e 0f ................ 427s | ed cb .. 427s | K extracting all 16 bytes of key@0x11f9b50e040 427s | K: symkey-key@0x11f9b50e040 (16-bytes, AES_ECB) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)18: d6 6d 7a 5e 4a 2c 4f 79 e8 a4 51 de 9d fd b3 e8 427s | K extracted len 16 bytes at 0x11f9b50e020 427s | unwrapped: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: K: 427s | 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | XCBC: K1 427s | e1 4d 5d 0e e2 77 15 df 08 b4 15 2b a2 3d a8 e0 .M]..w.....+.=.. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9080 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: AES_ECB 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9088 427s | Computing E[2] using K3 427s | XCBC: K3 427s | 8d 34 ef cb 3b d5 45 ca 06 2a ec df ef 7c 0b fa .4..;.E..*...|.. 427s | XCBC: E[n-1] 427s | 0b 72 b2 ae 0a 37 79 81 75 6a d5 9c 79 c0 e6 96 .r...7y.uj..y... 427s | XCBC: M[n] 427s | ed cb .. 427s | XCBC: M[n] 427s | ed cb .. 427s | XCBC: M[n]:80...^E[n-1]^K3 427s | 6b 8d dd 65 31 e2 3c 4b 73 40 39 43 96 bc ed 6c k..e1.j.....n1.].8 427s | PRF chunk interface PRF HMAC_MD5 init key hunk 0x11f9b50bae0 (length 4) 427s | 4a 65 66 65 Jefe 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9270 427s | key-offset: 0, key-size: 4 427s | EXTRACT_KEY_FROM_KEY: 427s | target: MD5_HMAC 427s | flags: SIGN 427s | key_size: 4-bytes 427s | base: base-key@0x11f9b50d2a0 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9278 427s | PRF chunk interface prf: created HMAC_MD5 context 0x11f9b50d610 from key-key@0x11f9b50e380 427s | PRF chunk interface prf: begin HMAC_MD5 with context 0x11f9b50d610 from key-key@0x11f9b50e380 427s | PRF chunk interface PRF HMAC_MD5 0x11f9b50dcb0 427s | PRF chunk interface PRF HMAC_MD5 update message (0x11f9b50dc20 length 28) 427s | 77 68 61 74 20 64 6f 20 79 61 20 77 61 6e 74 20 what do ya want 427s | 66 6f 72 20 6e 6f 74 68 69 6e 67 3f for nothing? 427s | PRF chunk interface PRF HMAC_MD5 final length 16 427s | 75 0c 78 3e 6a b0 b5 03 ea a8 6e 31 0a 5d b7 38 u.x>j.....n1.].8 427s | chunk output 427s | 75 0c 78 3e 6a b0 b5 03 ea a8 6e 31 0a 5d b7 38 u.x>j.....n1.].8 427s | verify_bytes() RFC 2104: MD5_HMAC test 2: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 4 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 4-bytes 427s | base: base-key@0x11f9b50d2a0 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF HMAC_MD5 init key symkey-key@0x11f9b50e380 (size 4) 427s | PRF symkey interface: key symkey-key@0x11f9b50e380 (4-bytes, EXTRACT_KEY_FROM_KEY) 427s | key-offset: 0, key-size: 4 427s | EXTRACT_KEY_FROM_KEY: 427s | target: MD5_HMAC 427s | flags: SIGN 427s | key_size: 4-bytes 427s | base: base-key@0x11f9b50e380 (4-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9318 427s | PRF symkey interface prf: created HMAC_MD5 context 0x11f9b50e820 from key symkey-key@0x11f9b50d2a0 427s | PRF symkey interface prf: begin HMAC_MD5 with context 0x11f9b50e820 from key symkey-key@0x11f9b50d2a0 427s | PRF symkey interface PRF HMAC_MD5 0x11f9b50a230 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 28 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 28-bytes 427s | base: base-key@0x11f9b50bbb0 (44-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF HMAC_MD5 update symkey message-key@0x11f9b50e040 (size 28) 427s | PRF symkey interface: symkey message-key@0x11f9b50e040 (28-bytes, EXTRACT_KEY_FROM_KEY) 427s | nss hmac digest hack extracting all 28 bytes of key@0x11f9b50e040 427s | nss hmac digest hack: symkey-key@0x11f9b50e040 (28-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)-1833323352: 6e fe 45 3a c1 5f 86 32 79 e8 2a 94 06 be 99 ea f8 29 4e 0e d7 aa 50 bd cd 38 0b ed 87 5d db e5 427s | nss hmac digest hack extracted len 32 bytes at 0x11f9b50d210 427s | unwrapped: 427s | 77 68 61 74 20 64 6f 20 79 61 20 77 61 6e 74 20 what do ya want 427s | 66 6f 72 20 6e 6f 74 68 69 6e 67 3f 00 00 00 00 for nothing?.... 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9330 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF HMAC_MD5 final-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 2104: MD5_HMAC test 2 extracting all 16 bytes of key@0x11f9b50d2a0 427s | RFC 2104: MD5_HMAC test 2: symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: f8 5f 4f 34 75 0c 10 00 8e f2 eb 52 6a f7 b9 6c 427s | RFC 2104: MD5_HMAC test 2 extracted len 16 bytes at 0x11f9b50a160 427s | unwrapped: 427s | 75 0c 78 3e 6a b0 b5 03 ea a8 6e 31 0a 5d b7 38 u.x>j.....n1.].8 427s | verify_bytes() RFC 2104: MD5_HMAC test 2: symkey: ok 427s ipsec algparse: RFC 2104: MD5_HMAC test 3 427s | decode_to_chunk() test_prf_vector: input "0xAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA" 427s | decode_to_chunk() output: 427s | aa aa aa aa aa aa aa aa aa aa aa aa aa aa aa aa ................ 427s | decode_to_chunk() test_prf_vector: input "0xDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDDD" 427s | decode_to_chunk() output: 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd .. 427s | decode_to_chunk() test_prf_vector: input "0x56be34521d144c88dbb8c733f0e8b3f6" 427s | decode_to_chunk() output: 427s | 56 be 34 52 1d 14 4c 88 db b8 c7 33 f0 e8 b3 f6 V.4R..L....3.... 427s | PRF chunk interface PRF HMAC_MD5 init key hunk 0x11f9b50d8e0 (length 16) 427s | aa aa aa aa aa aa aa aa aa aa aa aa aa aa aa aa ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9270 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: MD5_HMAC 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9278 427s | PRF chunk interface prf: created HMAC_MD5 context 0x11f9b50e770 from key-key@0x11f9b50d2a0 427s | PRF chunk interface prf: begin HMAC_MD5 with context 0x11f9b50e770 from key-key@0x11f9b50d2a0 427s | PRF chunk interface PRF HMAC_MD5 0x11f9b50a260 427s | PRF chunk interface PRF HMAC_MD5 update message (0x11f9b50dbe0 length 50) 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd .. 427s | PRF chunk interface PRF HMAC_MD5 final length 16 427s | 56 be 34 52 1d 14 4c 88 db b8 c7 33 f0 e8 b3 f6 V.4R..L....3.... 427s | chunk output 427s | 56 be 34 52 1d 14 4c 88 db b8 c7 33 f0 e8 b3 f6 V.4R..L....3.... 427s | verify_bytes() RFC 2104: MD5_HMAC test 3: prf OUT: ok 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF HMAC_MD5 init key symkey-key@0x11f9b50d2a0 (size 16) 427s | PRF symkey interface: key symkey-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: MD5_HMAC 427s | flags: SIGN 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50d2a0 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9318 427s | PRF symkey interface prf: created HMAC_MD5 context 0x11f9b512b10 from key symkey-key@0x11f9b50e380 427s | PRF symkey interface prf: begin HMAC_MD5 with context 0x11f9b512b10 from key symkey-key@0x11f9b50e380 427s | PRF symkey interface PRF HMAC_MD5 0x11f9b50dc20 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9400 427s | key-offset: 0, key-size: 50 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 50-bytes 427s | base: base-key@0x11f9b50bbb0 (66-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9338 427s | PRF symkey interface PRF HMAC_MD5 update symkey message-key@0x11f9b50e040 (size 50) 427s | PRF symkey interface: symkey message-key@0x11f9b50e040 (50-bytes, EXTRACT_KEY_FROM_KEY) 427s | nss hmac digest hack extracting all 50 bytes of key@0x11f9b50e040 427s | nss hmac digest hack: symkey-key@0x11f9b50e040 (50-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 64 427s | wrapper: (SECItemType)-1833323352: e7 9d c4 12 23 b9 d0 44 12 e7 e6 1d 81 09 ff 3a e7 9d c4 12 23 b9 d0 44 12 e7 e6 1d 81 09 ff 3a e7 9d c4 12 23 b9 d0 44 12 e7 e6 1d 81 09 ff 3a 7c 49 68 2c d3 0b 5e 91 ec dd bc 20 64 da 96 78 427s | nss hmac digest hack extracted len 64 bytes at 0x11f9b50dce0 427s | unwrapped: 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd dd ................ 427s | dd dd 00 00 00 00 00 00 00 00 00 00 00 00 00 00 ................ 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd9330 427s | key-offset: 0, key-size: 16 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 16-bytes 427s | base: base-key@0x11f9b50bbb0 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9268 427s | PRF symkey interface PRF HMAC_MD5 final-key@0x11f9b50e380 (size 16) 427s | PRF symkey interface: key-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | output: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | RFC 2104: MD5_HMAC test 3 extracting all 16 bytes of key@0x11f9b50e380 427s | RFC 2104: MD5_HMAC test 3: symkey-key@0x11f9b50e380 (16-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 16 427s | wrapper: (SECItemType)-541225232: 63 33 a1 b5 92 97 55 1c 68 d6 29 bc 51 fd d7 52 427s | RFC 2104: MD5_HMAC test 3 extracted len 16 bytes at 0x11f9b50deb0 427s | unwrapped: 427s | 56 be 34 52 1d 14 4c 88 db b8 c7 33 f0 e8 b3 f6 V.4R..L....3.... 427s | verify_bytes() RFC 2104: MD5_HMAC test 3: symkey: ok 427s ipsec algparse: testing HMAC_SHA1: 427s ipsec algparse: CAVP: IKEv2 key derivation with HMAC-SHA1 427s | decode_to_chunk() test_kdf_vector: input "0x32b50d5f4a3763f3" 427s | decode_to_chunk() output: 427s | 32 b5 0d 5f 4a 37 63 f3 initializing NSS db 427s 2.._J7c. 427s | decode_to_chunk() test_kdf_vector: input "0x9206a04b26564cb1" 427s | decode_to_chunk() output: 427s | 92 06 a0 4b 26 56 4c b1 ...K&VL. 427s | decode_to_chunk() test_kdf_vector: input "0x34c9e7c188868785" 427s | decode_to_chunk() output: 427s | 34 c9 e7 c1 88 86 87 85 4....... 427s | decode_to_chunk() test_kdf_vector: input "0x3ff77d760d2b2199" 427s | decode_to_chunk() output: 427s | 3f f7 7d 76 0d 2b 21 99 ?.}v.+!. 427s | decode_to_chunk() test_kdf_vector: input "0x4b2c1f971981a8ad8d0abeafabf38cf75fc8349c148142465ed9c8b516b8be52" 427s | decode_to_chunk() output: 427s | 4b 2c 1f 97 19 81 a8 ad 8d 0a be af ab f3 8c f7 K,.............. 427s | 5f c8 34 9c 14 81 42 46 5e d9 c8 b5 16 b8 be 52 _.4...BF^......R 427s | decode_to_chunk() test_kdf_vector: input "0x863f3c9d06efd39d2b907b97f8699e5dd5251ef64a2a176f36ee40c87d4f9330" 427s | decode_to_chunk() output: 427s | 86 3f 3c 9d 06 ef d3 9d 2b 90 7b 97 f8 69 9e 5d .?<.....+.{..i.] 427s | d5 25 1e f6 4a 2a 17 6f 36 ee 40 c8 7d 4f 93 30 .%..J*.o6.@.}O.0 427s | decode_to_chunk() test_kdf_vector: input "0xa9a7b222b59f8f48645f28a1db5b5f5d7479cba7" 427s | decode_to_chunk() output: 427s | a9 a7 b2 22 b5 9f 8f 48 64 5f 28 a1 db 5b 5f 5d ..."...Hd_(..[_] 427s | 74 79 cb a7 ty.. 427s | decode_to_chunk() test_kdf_vector: input "0x63e81194946ebd05df7df5ebf5d8750056bf1f1d" 427s | decode_to_chunk() output: 427s | 63 e8 11 94 94 6e bd 05 df 7d f5 eb f5 d8 75 00 c....n...}....u. 427s | 56 bf 1f 1d V... 427s | decode_to_chunk() test_kdf_vector: input "0xa14293677cc80ff8f9cc0eee30d895da9d8f405666e30ef0dfcb63c634a46002a2a63080e514a062768b76606f9fa5e992204fc5a670bde3f10d6b027113936a5c55b648a194ae587b0088d52204b702c979fa280870d2ed41efa9c549fd11198af1670b143d384bd275c5f594cf266b05ebadca855e4249520a441a81157435a7a56cc4" 427s | decode_to_chunk() output: 427s | a1 42 93 67 7c c8 0f f8 f9 cc 0e ee 30 d8 95 da .B.g|.......0... 427s | 9d 8f 40 56 66 e3 0e f0 df cb 63 c6 34 a4 60 02 ..@Vf.....c.4.`. 427s | a2 a6 30 80 e5 14 a0 62 76 8b 76 60 6f 9f a5 e9 ..0....bv.v`o... 427s | 92 20 4f c5 a6 70 bd e3 f1 0d 6b 02 71 13 93 6a . O..p....k.q..j 427s | 5c 55 b6 48 a1 94 ae 58 7b 00 88 d5 22 04 b7 02 \U.H...X{..."... 427s | c9 79 fa 28 08 70 d2 ed 41 ef a9 c5 49 fd 11 19 .y.(.p..A...I... 427s | 8a f1 67 0b 14 3d 38 4b d2 75 c5 f5 94 cf 26 6b ..g..=8K.u....&k 427s | 05 eb ad ca 85 5e 42 49 52 0a 44 1a 81 15 74 35 .....^BIR.D...t5 427s | a7 a5 6c c4 ..l. 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd93d0 427s | key-offset: 0, key-size: 32 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 32-bytes 427s | base: base-key@0x11f9b50d2a0 (48-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9308 427s | NSS_IKE_PRF_DERIVE: 427s | target: NSS_IKE_PRF_PLUS_DERIVE 427s | base: base-key@0x11f9b50e380 (32-bytes, EXTRACT_KEY_FROM_KEY) 427s | params: 56-bytes@0x7fffdfbd93a0 427s | CAVP: IKEv2 key derivation with HMAC-SHA1 extracting all 20 bytes of key@0x11f9b50d2a0 427s | CAVP: IKEv2 key derivation with HMAC-SHA1: symkey-key@0x11f9b50d2a0 (20-bytes, NSS_IKE_PRF_PLUS_DERIVE) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)1936548210: b3 85 b5 6f e3 d5 22 7b a9 ee 1b 4d 4d 71 e5 e2 e8 f0 f5 97 74 a1 92 3e 7c 8b f8 46 38 08 79 46 427s | CAVP: IKEv2 key derivation with HMAC-SHA1 extracted len 32 bytes at 0x11f9b50dcb0 427s | unwrapped: 427s | a9 a7 b2 22 b5 9f 8f 48 64 5f 28 a1 db 5b 5f 5d ..."...Hd_(..[_] 427s | 74 79 cb a7 00 00 00 00 00 00 00 00 00 00 00 00 ty.............. 427s | verify_bytes() CAVP: IKEv2 key derivation with HMAC-SHA1: skeyseed: ok 427s | NSS_IKE_PRF_PLUS_DERIVE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 132-bytes 427s | base: base-key@0x11f9b50d2a0 (20-bytes, NSS_IKE_PRF_PLUS_DERIVE) 427s | params: 40-bytes@0x7fffdfbd92f0 427s | CAVP: IKEv2 key derivation with HMAC-SHA1 extracting all 132 bytes of key@0x11f9b50e040 427s | CAVP: IKEv2 key derivation with HMAC-SHA1: symkey-key@0x11f9b50e040 (132-bytes, EXTRACT_KEY_FROM_KEY) 427s | sizeof bytes 144 427s | wrapper: (SECItemType)540684609: bc 2e 21 4b 42 c5 c7 af e4 48 33 00 b7 fe e2 8d 56 25 b3 3d 3f b5 3e ee cd 65 a4 8d 41 d4 83 f6 a8 fe ee b0 71 72 89 f9 b7 2e da cc 6d b9 b7 1f 3f 63 40 86 cb 09 41 5c 83 9d 74 c2 ae fb 3e 4d c0 32 d0 ce 21 cd 59 11 4a f1 fc c1 8a bc 7b 75 d2 50 df 20 2e d4 74 d5 73 54 d9 73 bb 4f 81 b4 73 3d ff 03 fe df 07 41 88 e6 9a 34 71 e8 97 18 45 c0 eb 3c 64 52 09 97 93 15 5a da 2d 76 72 25 73 3f 3f 2c 78 fe 61 71 14 f4 c6 ee 74 cb 55 e5 427s | CAVP: IKEv2 key derivation with HMAC-SHA1 extracted len 144 bytes at 0x11f9b5149d0 427s | unwrapped: 427s | a1 42 93 67 7c c8 0f f8 f9 cc 0e ee 30 d8 95 da .B.g|.......0... 427s | 9d 8f 40 56 66 e3 0e f0 df cb 63 c6 34 a4 60 02 ..@Vf.....c.4.`. 427s | a2 a6 30 80 e5 14 a0 62 76 8b 76 60 6f 9f a5 e9 ..0....bv.v`o... 427s | 92 20 4f c5 a6 70 bd e3 f1 0d 6b 02 71 13 93 6a . O..p....k.q..j 427s | 5c 55 b6 48 a1 94 ae 58 7b 00 88 d5 22 04 b7 02 \U.H...X{..."... 427s | c9 79 fa 28 08 70 d2 ed 41 ef a9 c5 49 fd 11 19 .y.(.p..A...I... 427s | 8a f1 67 0b 14 3d 38 4b d2 75 c5 f5 94 cf 26 6b ..g..=8K.u....&k 427s | 05 eb ad ca 85 5e 42 49 52 0a 44 1a 81 15 74 35 .....^BIR.D...t5 427s | a7 a5 6c c4 00 00 00 00 00 00 00 00 00 00 00 00 ..l............. 427s | verify_bytes() CAVP: IKEv2 key derivation with HMAC-SHA1: DKM: ok 427s | key-offset: 0, key-size: 20 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 20-bytes 427s | base: base-key@0x11f9b50e040 (132-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd93f8 427s | CONCATENATE_DATA_AND_BASE: 427s | target: EXTRACT_KEY_FROM_KEY 427s | base: base-key@0x11f9b50a290 (16-bytes, AES_KEY_GEN) 427s | params: 16-bytes@0x7fffdfbd93d0 427s | key-offset: 0, key-size: 32 427s | EXTRACT_KEY_FROM_KEY: 427s | target: EXTRACT_KEY_FROM_KEY 427s | key_size: 32-bytes 427s | base: base-key@0x11f9b50e180 (48-bytes, EXTRACT_KEY_FROM_KEY) 427s | operation: FLAGS_ONLY 427s | params: 8-bytes@0x7fffdfbd9308 427s | NSS_IKE_PRF_DERIVE: 427s | target: NSS_IKE_PRF_PLUS_DERIVE 427s | base: base-key@0x11f9b50bbb0 (20-bytes, EXTRACT_KEY_FROM_KEY) 427s | params: 56-bytes@0x7fffdfbd93b0 427s | CAVP: IKEv2 key derivation with HMAC-SHA1 extracting all 20 bytes of key@0x11f9b50e180 427s | CAVP: IKEv2 key derivation with HMAC-SHA1: symkey-key@0x11f9b50e180 (20-bytes, NSS_IKE_PRF_PLUS_DERIVE) 427s | sizeof bytes 32 427s | wrapper: (SECItemType)1936548210: 89 24 a6 c6 c7 6c 31 21 f1 05 13 45 e6 b5 f3 8b c1 27 86 25 1b 1b 58 f1 cd 88 a1 c2 c0 d8 b7 40 427s | CAVP: IKEv2 key derivation with HMAC-SHA1 extracted len 32 bytes at 0x11f9b50a260 427s | unwrapped: 427s | 63 e8 11 94 94 6e bd 05 df 7d f5 eb f5 d8 75 00 c....n...}....u. 427s | 56 bf 1f 1d 00 00 00 00 00 00 00 00 00 00 00 00 V............... 427s | verify_bytes() CAVP: IKEv2 key derivation with HMAC-SHA1: skeyseed_rekey: ok 427s ipsec algparse: leak detective found no leaks 427s running pluto selftest 427s /usr/libexec/ipsec/pluto: adjusting nssdir to /tmp/tmp.XAlMBWj32z 427s /usr/libexec/ipsec/pluto: selftest: skipping lock 427s /usr/libexec/ipsec/pluto: selftest: skipping control socket 427s /usr/libexec/ipsec/pluto: selftest: skipping fork 427s Starting Pluto (Libreswan Version 5.2 IKEv2 IKEv1 XFRM XFRMI esp-hw-offload FORK PTHREAD_SETSCHEDPRIO NSS (IPsec profile) (NSS-KDF) DNSSEC SYSTEMD_WATCHDOG LABELED_IPSEC (SELINUX) LIBCAP_NG LINUX_AUDIT AUTH_PAM NETWORKMANAGER CURL(non-NSS) LDAP(non-NSS) NFTABLES CAT NFLOG) pid:1647 427s operating system: Linux 6.18.0 [Linux 6.18.0-9-generic #9-Ubuntu SMP PREEMPT_DYNAMIC Mon Jan 12 16:45:54 UTC 2026 ppc64le] 427s core dump dir: /run/pluto 427s secrets file: /etc/ipsec.secrets 427s Initializing NSS using read-only database "sql:/tmp/tmp.XAlMBWj32z" 427s FIPS Mode: OFF 427s NSS crypto library initialized 427s FIPS mode disabled for pluto daemon 427s FIPS HMAC integrity support [not required] 427s libcap-ng capng_apply failed to apply changes, err=-5. see: man capng_apply 427s libcap-ng support [enabled] 427s Linux audit support [enabled] 427s leak-detective disabled 427s NSS crypto [enabled] 427s XAUTH PAM support [enabled] 427s initializing libevent in pthreads mode: headers: 2.1.12-stable (2010c00); library: 2.1.12-stable (2010c00) 427s NAT-Traversal: keep-alive period 20s 427s ERROR: xfrmi is not supported, failed to create ipsec-interface ipsec1 bound to lo 427s ipsec-interface is not working: xfrmi is not supported 427s IPsec Interface [disabled] 427s refreshed session resume keys, issuing key 1 427s Encryption algorithms: 427s AES_CCM_16 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm, aes_ccm_c 427s AES_CCM_12 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm_b 427s AES_CCM_8 {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_ccm_a 427s 3DES_CBC [*192] IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CBC) 3des 427s CAMELLIA_CTR {256,192,*128} IKEv1: ESP IKEv2: ESP 427s CAMELLIA_CBC {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP NSS(CBC) camellia 427s AES_GCM_16 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm, aes_gcm_c 427s AES_GCM_12 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm_b 427s AES_GCM_8 {256,192,*128} IKEv1: ESP IKEv2: IKE ESP FIPS NSS(AEAD) aes_gcm_a 427s AES_CTR {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CTR) aesctr 427s AES_CBC {256,192,*128} IKEv1: IKE ESP IKEv2: IKE ESP FIPS NSS(CBC) aes 427s NULL_AUTH_AES_GMAC {256,192,*128} IKEv1: ESP IKEv2: ESP FIPS aes_gmac 427s NULL [] IKEv1: ESP IKEv2: ESP NULL 427s CHACHA20_POLY1305 [*256] IKEv1: IKEv2: IKE ESP NSS(AEAD) chacha20poly1305 427s Hash algorithms: 427s MD5 IKEv1: IKE IKEv2: NSS 427s SHA1 IKEv1: IKE IKEv2: IKE FIPS NSS sha 427s SHA2_256 IKEv1: IKE IKEv2: IKE FIPS NSS sha2, sha256 427s SHA2_384 IKEv1: IKE IKEv2: IKE FIPS NSS sha384 427s SHA2_512 IKEv1: IKE IKEv2: IKE FIPS NSS sha512 427s IDENTITY IKEv1: IKEv2: FIPS 427s PRF algorithms: 427s HMAC_MD5 IKEv1: IKE IKEv2: IKE NSS md5 427s HMAC_SHA1 IKEv1: IKE IKEv2: IKE FIPS NSS sha, sha1 427s HMAC_SHA2_256 IKEv1: IKE IKEv2: IKE FIPS NSS sha2, sha256, sha2_256 427s HMAC_SHA2_384 IKEv1: IKE IKEv2: IKE FIPS NSS sha384, sha2_384 427s HMAC_SHA2_512 IKEv1: IKE IKEv2: IKE FIPS NSS sha512, sha2_512 427s AES_XCBC IKEv1: IKEv2: IKE native(XCBC) aes128_xcbc 427s Integrity algorithms: 427s HMAC_MD5_96 IKEv1: IKE ESP AH IKEv2: IKE ESP AH NSS md5, hmac_md5 427s HMAC_SHA1_96 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha, sha1, sha1_96, hmac_sha1 427s HMAC_SHA2_512_256 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha512, sha2_512, sha2_512_256, hmac_sha2_512 427s HMAC_SHA2_384_192 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha384, sha2_384, sha2_384_192, hmac_sha2_384 427s HMAC_SHA2_256_128 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS sha2, sha256, sha2_256, sha2_256_128, hmac_sha2_256 427s HMAC_SHA2_256_TRUNCBUG IKEv1: ESP AH IKEv2: AH 427s AES_XCBC_96 IKEv1: ESP AH IKEv2: IKE ESP AH native(XCBC) aes_xcbc, aes128_xcbc, aes128_xcbc_96 427s AES_CMAC_96 IKEv1: ESP AH IKEv2: ESP AH FIPS aes_cmac 427s NONE IKEv1: ESP IKEv2: IKE ESP FIPS null 427s DH algorithms: 427s NONE IKEv1: IKEv2: IKE ESP AH FIPS NSS(MODP) null, dh0 427s MODP1536 IKEv1: IKE ESP AH IKEv2: IKE ESP AH NSS(MODP) dh5 427s MODP2048 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh14 427s MODP3072 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh15 427s MODP4096 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh16 427s MODP6144 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh17 427s MODP8192 IKEv1: IKE ESP AH IKEv2: IKE ESP AH FIPS NSS(MODP) dh18 427s DH19 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_256, ecp256 427s DH20 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_384, ecp384 427s DH21 IKEv1: IKE IKEv2: IKE ESP AH FIPS NSS(ECP) ecp_521, ecp521 427s DH31 IKEv1: IKE IKEv2: IKE ESP AH NSS(ECP) curve25519 427s IPCOMP algorithms: 427s DEFLATE IKEv1: ESP AH IKEv2: ESP AH FIPS 427s LZS IKEv1: IKEv2: ESP AH FIPS 427s LZJH IKEv1: IKEv2: ESP AH FIPS 427s testing CAMELLIA_CBC: 427s Camellia: 16 bytes with 128-bit key 427s Camellia: 16 bytes with 128-bit key 427s Camellia: 16 bytes with 256-bit key 427s Camellia: 16 bytes with 256-bit key 427s testing AES_GCM_16: 427s empty string 427s one block 427s two blocks 427s two blocks with associated data 427s testing AES_CTR: 427s Encrypting 16 octets using AES-CTR with 128-bit key 427s Encrypting 32 octets using AES-CTR with 128-bit key 427s Encrypting 36 octets using AES-CTR with 128-bit key 427s Encrypting 16 octets using AES-CTR with 192-bit key 427s Encrypting 32 octets using AES-CTR with 192-bit key 427s Encrypting 36 octets using AES-CTR with 192-bit key 427s Encrypting 16 octets using AES-CTR with 256-bit key 427s Encrypting 32 octets using AES-CTR with 256-bit key 427s Encrypting 36 octets using AES-CTR with 256-bit key 427s testing AES_CBC: 427s Encrypting 16 bytes (1 block) using AES-CBC with 128-bit key 427s Encrypting 32 bytes (2 blocks) using AES-CBC with 128-bit key 427s Encrypting 48 bytes (3 blocks) using AES-CBC with 128-bit key 427s Encrypting 64 bytes (4 blocks) using AES-CBC with 128-bit key 427s testing AES_XCBC: 427s RFC 3566 Test Case 1: AES-XCBC-MAC-96 with 0-byte input 427s RFC 3566 Test Case 2: AES-XCBC-MAC-96 with 3-byte input 427s RFC 3566 Test Case 3: AES-XCBC-MAC-96 with 16-byte input 427s RFC 3566 Test Case 4: AES-XCBC-MAC-96 with 20-byte input 427s RFC 3566 Test Case 5: AES-XCBC-MAC-96 with 32-byte input 427s RFC 3566 Test Case 6: AES-XCBC-MAC-96 with 34-byte input 427s RFC 3566 Test Case 7: AES-XCBC-MAC-96 with 1000-byte input 427s RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 16) 427s RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 10) 427s RFC 4434 Test Case AES-XCBC-PRF-128 with 20-byte input (key length 18) 427s testing HMAC_MD5: 427s RFC 2104: MD5_HMAC test 1 427s RFC 2104: MD5_HMAC test 2 427s RFC 2104: MD5_HMAC test 3 427s testing HMAC_SHA1: 427s CAVP: IKEv2 key derivation with HMAC-SHA1 427s selftest: exiting pluto 427s autopkgtest [06:45:25]: test cryptocheck: -----------------------] 428s autopkgtest [06:45:26]: test cryptocheck: - - - - - - - - - - results - - - - - - - - - - 428s cryptocheck PASS 428s autopkgtest [06:45:26]: test cavp: preparing testbed 448s Creating nova instance adt-resolute-ppc64el-libreswan-20260205-063818-juju-7f2275-prod-proposed-migration-environment-20-94cde7f0-e021-4452-8a3f-2c41a8d30c17 from image adt/ubuntu-resolute-ppc64el-server-20260205.img (UUID f866c950-0b62-4023-bac6-0f13279e15ed)... 506s autopkgtest [06:46:44]: testbed dpkg architecture: ppc64el 506s autopkgtest [06:46:44]: testbed apt version: 3.1.14 507s autopkgtest [06:46:45]: @@@@@@@@@@@@@@@@@@@@ test bed setup 507s autopkgtest [06:46:45]: testbed release detected to be: resolute 508s autopkgtest [06:46:46]: updating testbed package index (apt update) 508s Get:1 http://ftpmaster.internal/ubuntu resolute-proposed InRelease [124 kB] 508s Hit:2 http://ftpmaster.internal/ubuntu resolute InRelease 508s Hit:3 http://ftpmaster.internal/ubuntu resolute-updates InRelease 508s Hit:4 http://ftpmaster.internal/ubuntu resolute-security InRelease 508s Get:5 http://ftpmaster.internal/ubuntu resolute-proposed/universe Sources [1719 kB] 508s Get:6 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse Sources [35.4 kB] 508s Get:7 http://ftpmaster.internal/ubuntu resolute-proposed/restricted Sources [5260 B] 508s Get:8 http://ftpmaster.internal/ubuntu resolute-proposed/main Sources [228 kB] 508s Get:9 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el Packages [261 kB] 508s Get:10 http://ftpmaster.internal/ubuntu resolute-proposed/universe ppc64el Packages [1514 kB] 508s Get:11 http://ftpmaster.internal/ubuntu resolute-proposed/multiverse ppc64el Packages [21.9 kB] 509s Fetched 3910 kB in 1s (5405 kB/s) 509s Reading package lists... 510s Hit:1 http://ftpmaster.internal/ubuntu resolute-proposed InRelease 510s Hit:2 http://ftpmaster.internal/ubuntu resolute InRelease 510s Hit:3 http://ftpmaster.internal/ubuntu resolute-updates InRelease 510s Hit:4 http://ftpmaster.internal/ubuntu resolute-security InRelease 511s Reading package lists... 511s Reading package lists... 511s Building dependency tree... 511s Reading state information... 512s Calculating upgrade... 512s The following packages will be upgraded: 512s libc-bin libc-gconv-modules-extra libc6 locales pollinate 512s python3-referencing sed 512s 7 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 512s Need to get 8612 kB of archives. 512s After this operation, 0 B of additional disk space will be used. 512s Get:1 http://ftpmaster.internal/ubuntu resolute/main ppc64el sed ppc64el 4.9-2build3 [211 kB] 512s Get:2 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc-gconv-modules-extra ppc64el 2.42-2ubuntu5 [1448 kB] 512s Get:3 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc6 ppc64el 2.42-2ubuntu5 [1913 kB] 512s Get:4 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el libc-bin ppc64el 2.42-2ubuntu5 [748 kB] 512s Get:5 http://ftpmaster.internal/ubuntu resolute-proposed/main ppc64el locales all 2.42-2ubuntu5 [4255 kB] 512s Get:6 http://ftpmaster.internal/ubuntu resolute/main ppc64el pollinate all 4.33-4ubuntu5 [14.0 kB] 512s Get:7 http://ftpmaster.internal/ubuntu resolute/main ppc64el python3-referencing all 0.36.2-1ubuntu2 [22.2 kB] 513s dpkg-preconfigure: unable to re-open stdin: No such file or directory 513s Fetched 8612 kB in 1s (12.5 MB/s) 513s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 516s Preparing to unpack .../sed_4.9-2build3_ppc64el.deb ... 516s Unpacking sed (4.9-2build3) over (4.9-2build2) ... 516s Setting up sed (4.9-2build3) ... 516s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 516s Preparing to unpack .../libc-gconv-modules-extra_2.42-2ubuntu5_ppc64el.deb ... 516s Unpacking libc-gconv-modules-extra:ppc64el (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 516s Setting up libc-gconv-modules-extra:ppc64el (2.42-2ubuntu5) ... 516s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 516s Preparing to unpack .../libc6_2.42-2ubuntu5_ppc64el.deb ... 516s Unpacking libc6:ppc64el (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 516s Setting up libc6:ppc64el (2.42-2ubuntu5) ... 516s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 516s Preparing to unpack .../libc-bin_2.42-2ubuntu5_ppc64el.deb ... 516s Unpacking libc-bin (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 516s Setting up libc-bin (2.42-2ubuntu5) ... 516s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 516s Preparing to unpack .../locales_2.42-2ubuntu5_all.deb ... 516s Unpacking locales (2.42-2ubuntu5) over (2.42-2ubuntu4) ... 516s Preparing to unpack .../pollinate_4.33-4ubuntu5_all.deb ... 516s Unpacking pollinate (4.33-4ubuntu5) over (4.33-4ubuntu4) ... 516s Preparing to unpack .../python3-referencing_0.36.2-1ubuntu2_all.deb ... 516s Unpacking python3-referencing (0.36.2-1ubuntu2) over (0.36.2-1ubuntu1) ... 516s Setting up locales (2.42-2ubuntu5) ... 516s Generating locales (this might take a while)... 518s en_US.UTF-8... done 518s Generation complete. 518s Setting up pollinate (4.33-4ubuntu5) ... 528s Setting up python3-referencing (0.36.2-1ubuntu2) ... 532s Processing triggers for man-db (2.13.1-1) ... 532s Processing triggers for install-info (7.2-5) ... 532s Processing triggers for systemd (259-1ubuntu3) ... 532s autopkgtest [06:47:09]: upgrading testbed (apt dist-upgrade and autopurge) 532s Reading package lists... 532s Building dependency tree... 532s Reading state information... 532s Calculating upgrade... 532s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 532s Reading package lists... 532s Building dependency tree... 532s Reading state information... 532s Solving dependencies... 532s 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. 533s autopkgtest [06:47:11]: rebooting testbed after setup commands that affected boot 608s Reading package lists... 608s Building dependency tree... 608s Reading state information... 608s Solving dependencies... 608s The following NEW packages will be installed: 608s dns-root-data libevent-2.1-7t64 libevent-pthreads-2.1-7t64 libldns3t64 608s libnss3-tools libreswan libunbound8 608s 0 upgraded, 7 newly installed, 0 to remove and 0 not upgraded. 608s Need to get 3283 kB of archives. 608s After this operation, 15.4 MB of additional disk space will be used. 608s Get:1 http://ftpmaster.internal/ubuntu resolute/main ppc64el dns-root-data all 2025080400build1 [6022 B] 608s Get:2 http://ftpmaster.internal/ubuntu resolute/main ppc64el libnss3-tools ppc64el 2:3.120-1 [744 kB] 608s Get:3 http://ftpmaster.internal/ubuntu resolute/main ppc64el libevent-pthreads-2.1-7t64 ppc64el 2.1.12-stable-10build1 [8140 B] 608s Get:4 http://ftpmaster.internal/ubuntu resolute/universe ppc64el libldns3t64 ppc64el 1.8.4-2build1 [200 kB] 608s Get:5 http://ftpmaster.internal/ubuntu resolute/main ppc64el libevent-2.1-7t64 ppc64el 2.1.12-stable-10build1 [172 kB] 608s Get:6 http://ftpmaster.internal/ubuntu resolute/main ppc64el libunbound8 ppc64el 1.24.2-1ubuntu1 [576 kB] 608s Get:7 http://ftpmaster.internal/ubuntu resolute/universe ppc64el libreswan ppc64el 5.2-2.2ubuntu1 [1577 kB] 608s Fetched 3283 kB in 0s (13.8 MB/s) 608s Selecting previously unselected package dns-root-data. 608s (Reading database ... (Reading database ... 5% (Reading database ... 10% (Reading database ... 15% (Reading database ... 20% (Reading database ... 25% (Reading database ... 30% (Reading database ... 35% (Reading database ... 40% (Reading database ... 45% (Reading database ... 50% (Reading database ... 55% (Reading database ... 60% (Reading database ... 65% (Reading database ... 70% (Reading database ... 75% (Reading database ... 80% (Reading database ... 85% (Reading database ... 90% (Reading database ... 95% (Reading database ... 100% (Reading database ... 82008 files and directories currently installed.) 608s Preparing to unpack .../0-dns-root-data_2025080400build1_all.deb ... 608s Unpacking dns-root-data (2025080400build1) ... 608s Selecting previously unselected package libnss3-tools. 608s Preparing to unpack .../1-libnss3-tools_2%3a3.120-1_ppc64el.deb ... 608s Unpacking libnss3-tools (2:3.120-1) ... 608s Selecting previously unselected package libevent-pthreads-2.1-7t64:ppc64el. 608s Preparing to unpack .../2-libevent-pthreads-2.1-7t64_2.1.12-stable-10build1_ppc64el.deb ... 608s Unpacking libevent-pthreads-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 608s Selecting previously unselected package libldns3t64:ppc64el. 608s Preparing to unpack .../3-libldns3t64_1.8.4-2build1_ppc64el.deb ... 608s Unpacking libldns3t64:ppc64el (1.8.4-2build1) ... 608s Selecting previously unselected package libevent-2.1-7t64:ppc64el. 608s Preparing to unpack .../4-libevent-2.1-7t64_2.1.12-stable-10build1_ppc64el.deb ... 608s Unpacking libevent-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 608s Selecting previously unselected package libunbound8:ppc64el. 608s Preparing to unpack .../5-libunbound8_1.24.2-1ubuntu1_ppc64el.deb ... 608s Unpacking libunbound8:ppc64el (1.24.2-1ubuntu1) ... 608s Selecting previously unselected package libreswan. 608s Preparing to unpack .../6-libreswan_5.2-2.2ubuntu1_ppc64el.deb ... 608s Unpacking libreswan (5.2-2.2ubuntu1) ... 608s Setting up libldns3t64:ppc64el (1.8.4-2build1) ... 608s Setting up libevent-pthreads-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 608s Setting up libevent-2.1-7t64:ppc64el (2.1.12-stable-10build1) ... 608s Setting up dns-root-data (2025080400build1) ... 608s Setting up libunbound8:ppc64el (1.24.2-1ubuntu1) ... 608s Setting up libnss3-tools (2:3.120-1) ... 608s Setting up libreswan (5.2-2.2ubuntu1) ... 608s ipsec.service is a disabled or a static unit, not starting it. 608s Processing triggers for man-db (2.13.1-1) ... 608s Processing triggers for libc-bin (2.42-2ubuntu5) ... 677s autopkgtest [06:49:35]: test cavp: [----------------------- 678s Testing installed CAVP binary: /usr/libexec/ipsec/cavp 679s test: IKE v2 679s Reading from ikev2.fax 684s test: IKE v1 Digital Signature Authentication 684s Reading from ikev1_dsa.fax 686s test: IKE v1 Pre-shared Key Authentication 686s Reading from ikev1_psk.fax 689s /tmp/autopkgtest.Hvl4RN/build.y5P/src 689s autopkgtest [06:49:47]: test cavp: -----------------------] 690s autopkgtest [06:49:48]: test cavp: - - - - - - - - - - results - - - - - - - - - - 690s cavp PASS 690s autopkgtest [06:49:48]: @@@@@@@@@@@@@@@@@@@@ summary 690s opportunistic SKIP exit status 77 and marked as skippable 690s cryptocheck PASS 690s cavp PASS