Nov 09 22:31:44.782043 172.16.0.3.500 > 10.0.0.16.500: [udp sum ok] isakmp v1.0 exchange ID_PROT cookie: ca46fed865eb1b3c->0000000000000000 msgid: 00000000 len: 184 payload: SA len: 56 DOI: 1(IPSEC) situation: IDENTITY_ONLY payload: PROPOSAL len: 44 proposal: 1 proto: ISAKMP spisz: 0 xforms: 1 payload: TRANSFORM len: 36 transform: 0 ID: ISAKMP attribute ENCRYPTION_ALGORITHM = AES_CBC attribute HASH_ALGORITHM = SHA2_256 attribute AUTHENTICATION_METHOD = PRE_SHARED attribute GROUP_DESCRIPTION = MODP_1536 attribute LIFE_TYPE = SECONDS attribute LIFE_DURATION = 3600 attribute KEY_LENGTH = 256 payload: VENDOR len: 20 payload: VENDOR len: 20 (supports v2 NAT-T, draft-ietf-ipsec-nat-t-ike-02) payload: VENDOR len: 20 (supports v3 NAT-T, draft-ietf-ipsec-nat-t-ike-03) payload: VENDOR len: 20 (supports NAT-T, RFC 3947) payload: VENDOR len: 20 (supports DPD v1.0) [ttl 0] (id 1, len 212) Nov 09 22:31:45.046038 10.0.0.16.500 > 172.16.0.3.500: [udp sum ok] isakmp v1.0 exchange ID_PROT cookie: ca46fed865eb1b3c->39ff0820eabfb103 msgid: 00000000 len: 136 payload: SA len: 56 DOI: 1(IPSEC) situation: IDENTITY_ONLY payload: PROPOSAL len: 44 proposal: 1 proto: ISAKMP spisz: 0 xforms: 1 payload: TRANSFORM len: 36 transform: 1 ID: ISAKMP attribute ENCRYPTION_ALGORITHM = AES_CBC attribute KEY_LENGTH = 256 attribute HASH_ALGORITHM = SHA2_256 attribute GROUP_DESCRIPTION = MODP_1536 attribute AUTHENTICATION_METHOD = PRE_SHARED attribute LIFE_TYPE = SECONDS attribute LIFE_DURATION = 3600 payload: VENDOR len: 12 (supports draft-ietf-ipsra-isakmp-xauth-06.txt) payload: VENDOR len: 20 (supports DPD v1.0) payload: VENDOR len: 20 (supports NAT-T, RFC 3947) [ttl 0] (id 1, len 164) Nov 09 22:31:45.061537 172.16.0.3.500 > 10.0.0.16.500: [udp sum ok] isakmp v1.0 exchange ID_PROT cookie: ca46fed865eb1b3c->39ff0820eabfb103 msgid: 00000000 len: 316 payload: KEY_EXCH len: 196 payload: NONCE len: 20 payload: NAT-D len: 36 payload: NAT-D len: 36 [ttl 0] (id 1, len 344) Nov 09 22:31:45.213488 10.0.0.16.500 > 172.16.0.3.500: [udp sum ok] isakmp v1.0 exchange ID_PROT cookie: ca46fed865eb1b3c->39ff0820eabfb103 msgid: 00000000 len: 332 payload: KEY_EXCH len: 196 payload: NONCE len: 36 payload: NAT-D len: 36 payload: NAT-D len: 36 [ttl 0] (id 1, len 360) Nov 09 22:31:45.229111 172.16.0.3.4500 > 10.0.0.16.4500: [bad udp cksum cb37! -> 9e56] udpencap: isakmp v1.0 exchange ID_PROT cookie: ca46fed865eb1b3c->39ff0820eabfb103 msgid: 00000000 len: 124 payload: ID len: 32 type: FQDN = "OpenBSD61-VM-4.my.domain" payload: HASH len: 36 payload: NOTIFICATION len: 28 notification: INITIAL CONTACT (ca46fed865eb1b3c->39ff0820eabfb103) [ttl 0] (id 1, len 156) Nov 09 22:31:45.273825 10.0.0.16.4500 > 172.16.0.3.4500: [bad udp cksum 75d9! -> db48] udpencap: isakmp v1.0 exchange ID_PROT cookie: ca46fed865eb1b3c->39ff0820eabfb103 msgid: 00000000 len: 92 payload: ID len: 12 type: IPV4_ADDR = 10.0.0.16 payload: HASH len: 36 [ttl 0] (id 1, len 124) Nov 09 22:31:45.278070 172.16.0.3.4500 > 10.0.0.16.4500: [bad udp cksum 970b! -> 78f0] udpencap: isakmp v1.0 exchange QUICK_MODE cookie: ca46fed865eb1b3c->39ff0820eabfb103 msgid: fe57968a len: 168 payload: HASH len: 36 payload: SA len: 52 DOI: 1(IPSEC) situation: IDENTITY_ONLY payload: PROPOSAL len: 40 proposal: 1 proto: IPSEC_ESP spisz: 4 xforms: 1 SPI: 0xe79b6410 payload: TRANSFORM len: 28 transform: 1 ID: AES attribute LIFE_TYPE = SECONDS attribute LIFE_DURATION = 1200 attribute ENCAPSULATION_MODE = TUNNEL attribute AUTHENTICATION_ALGORITHM = HMAC_SHA2_256 attribute KEY_LENGTH = 256 payload: NONCE len: 20 payload: ID len: 16 type: IPV4_ADDR_SUBNET = 192.168.222.0/255.255.255.0 payload: ID len: 16 type: IPV4_ADDR_SUBNET = 192.168.1.0/255.255.255.0 [ttl 0] (id 1, len 200) Nov 09 22:31:45.468110 10.0.0.16.4500 > 172.16.0.3.4500: [bad udp cksum eeef! -> 1b76] udpencap: isakmp v1.0 exchange QUICK_MODE cookie: ca46fed865eb1b3c->39ff0820eabfb103 msgid: fe57968a len: 188 payload: HASH len: 36 payload: SA len: 52 DOI: 1(IPSEC) situation: IDENTITY_ONLY payload: PROPOSAL len: 40 proposal: 1 proto: IPSEC_ESP spisz: 4 xforms: 1 SPI: 0xcdeb580f payload: TRANSFORM len: 28 transform: 1 ID: AES attribute KEY_LENGTH = 256 attribute AUTHENTICATION_ALGORITHM = HMAC_SHA2_256 attribute ENCAPSULATION_MODE = TUNNEL attribute LIFE_TYPE = SECONDS attribute LIFE_DURATION = 1200 payload: NONCE len: 36 payload: ID len: 16 type: IPV4_ADDR_SUBNET = 192.168.222.0/255.255.255.0 payload: ID len: 16 type: IPV4_ADDR_SUBNET = 192.168.1.0/255.255.255.0 [ttl 0] (id 1, len 220) Nov 09 22:31:45.468172 172.16.0.3.4500 > 10.0.0.16.4500: [bad udp cksum d777! -> e1ab] udpencap: isakmp v1.0 exchange QUICK_MODE cookie: ca46fed865eb1b3c->39ff0820eabfb103 msgid: fe57968a len: 64 payload: HASH len: 36 [ttl 0] (id 1, len 96)