evaltest.dat 4.4 KB

123456789101112131415161718192021222324252627282930313233
  1. dave:: cat /var/log/daemon.log::authentication of 'moon.strongswan.org' with RSA.* successful::YES
  2. dave:: cat /var/log/daemon.log::PDP server.*aaa.strongswan.org.*is listening on port 271::YES
  3. dave:: cat /var/log/daemon.log::collected ... SW records::YES
  4. dave:: cat /var/log/daemon.log::PB-TNC access recommendation is .*Quarantined::YES
  5. dave:: cat /var/log/daemon.log::EAP method EAP_TTLS succeeded, MSK established::YES
  6. carol::cat /var/log/daemon.log::authentication of 'moon.strongswan.org' with RSA.* successful::YES
  7. carol::cat /var/log/daemon.log::PDP server.*aaa.strongswan.org.*is listening on port 271::YES
  8. carol::cat /var/log/daemon.log::collected ... SW ID records::YES
  9. carol::cat /var/log/daemon.log::strongswan.org__strongSwan.*swidtag::YES
  10. carol::cat /var/log/daemon.log::collected 1 SW record::YES
  11. carol::cat /var/log/daemon.log::PB-TNC access recommendation is .*Access Allowed::YES
  12. carol::cat /var/log/daemon.log::EAP method EAP_TTLS succeeded, MSK established::YES
  13. alice::cat /var/log/daemon.log::user AR identity.*dave.*authenticated by password::YES
  14. alice::cat /var/log/daemon.log::received software inventory with.*items for request 3 at last eid 1 of epoch::YES
  15. alice::cat /var/log/daemon.log::user AR identity.*carol.*authenticated by password::YES
  16. alice::cat /var/log/daemon.log::failed to collect SW ID events, fallback to SW ID inventory::YES
  17. alice::cat /var/log/daemon.log::received software ID inventory with.*items for request 9 at last eid 1 of epoch::YES
  18. alice::cat /var/log/daemon.log::1 SWID tag target::YES
  19. alice::cat /var/log/daemon.log::received software inventory with 1 item for request 9 at last eid 1 of epoch::YES
  20. moon:: cat /var/log/daemon.log::received RADIUS attribute Filter-Id: 'isolate'::YES
  21. moon:: cat /var/log/daemon.log::RADIUS authentication of 'dave' successful::YES
  22. moon:: cat /var/log/daemon.log::authentication of '192.168.0.200' with EAP successful::YES
  23. moon:: cat /var/log/daemon.log::received RADIUS attribute Filter-Id: 'allow'::YES
  24. moon:: cat /var/log/daemon.log::RADIUS authentication of 'carol' successful::YES
  25. moon:: cat /var/log/daemon.log::authentication of '192.168.0.100' with EAP successful::YES
  26. carol::swanctl --list-sas --raw 2> /dev/null::home.*version=2 state=ESTABLISHED local-host=192.168.0.100 local-port=4500 local-id=192.168.0.100 remote-host=192.168.0.1 remote-port=4500 remote-id=moon.strongswan.org initiator=yes.*encr-alg=AES_CBC encr-keysize=128 integ-alg=HMAC_SHA2_256_128 prf-alg=PRF_HMAC_SHA2_256 dh-group=MODP_3072.*child-sas.*home.*state=INSTALLED mode=TUNNEL protocol=ESP.*encr-alg=AES_GCM_16 encr-keysize=128.*local-ts=\[192.168.0.100/32] remote-ts=\[10.1.0.0/28]::YES
  27. dave:: swanctl --list-sas --raw 2> /dev/null::home.*version=2 state=ESTABLISHED local-host=192.168.0.200 local-port=4500 local-id=192.168.0.200 remote-host=192.168.0.1 remote-port=4500 remote-id=moon.strongswan.org initiator=yes.*encr-alg=AES_CBC encr-keysize=128 integ-alg=HMAC_SHA2_256_128 prf-alg=PRF_HMAC_SHA2_256 dh-group=MODP_3072.*child-sas.*home.*state=INSTALLED mode=TUNNEL protocol=ESP.*encr-alg=AES_GCM_16 encr-keysize=128.*local-ts=\[192.168.0.200/32] remote-ts=\[10.1.0.16/28]::YES
  28. moon:: swanctl --list-sas --ike-id 2 --raw 2> /dev/null::rw-allow.*version=2 state=ESTABLISHED local-host=192.168.0.1 local-port=4500 local-id=moon.strongswan.org remote-host=192.168.0.100 remote-port=4500 remote-id=192.168.0.100 remote-eap-id=carol.*encr-alg=AES_CBC encr-keysize=128 integ-alg=HMAC_SHA2_256_128 prf-alg=PRF_HMAC_SHA2_256 dh-group=MODP_3072.*child-sas.*rw-allow.*state=INSTALLED mode=TUNNEL protocol=ESP.*encr-alg=AES_GCM_16 encr-keysize=128.*local-ts=\[10.1.0.0/28] remote-ts=\[192.168.0.100/32]::YES
  29. moon:: swanctl --list-sas --ike-id 1 --raw 2> /dev/null::rw-isolate.*version=2 state=ESTABLISHED local-host=192.168.0.1 local-port=4500 local-id=moon.strongswan.org remote-host=192.168.0.200 remote-port=4500 remote-id=192.168.0.200 remote-eap-id=dave.*encr-alg=AES_CBC encr-keysize=128 integ-alg=HMAC_SHA2_256_128 prf-alg=PRF_HMAC_SHA2_256 dh-group=MODP_3072.*child-sas.*rw-isolate.*state=INSTALLED mode=TUNNEL protocol=ESP.*encr-alg=AES_GCM_16 encr-keysize=128.*local-ts=\[10.1.0.16/28] remote-ts=\[192.168.0.200/32]::YES
  30. carol::ping -c 1 PH_IP_ALICE::64 bytes from PH_IP_ALICE: icmp_.eq=1::YES
  31. carol::ping -c 1 -W 1 PH_IP_VENUS::64 bytes from PH_IP_VENUS: icmp_.eq=1::NO
  32. dave:: ping -c 1 PH_IP_VENUS::64 bytes from PH_IP_VENUS: icmp_.eq=1::YES
  33. dave:: ping -c 1 -W 1 PH_IP_ALICE::64 bytes from PH_IP_ALICE: icmp_.eq=1::NO