Advertisement
Guest User

Untitled

a guest
Dec 8th, 2013
94
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 67.96 KB | None | 0 0
  1.  
  2. ocserv[13876]: [MYIP]:55971 accepted connection
  3. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #0
  4. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_constate.c:715
  5. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #1
  6. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  7. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: SSL 3.1 Handshake packet received. Epoch 0, length: 98
  8. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  9. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 98
  10. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 98
  11. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: CLIENT HELLO (1) was received. Length 94[94], frag offset 0, frag length: 94, sequence: 0
  12. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Client's version: 3.3
  13. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_db.c:278
  14. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  15. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  16. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  17. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SESSION TICKET/35' (0 bytes)
  18. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  19. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  20. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  21. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SIGNATURE ALGORITHMS/13' (28 bytes)
  22. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (0.0) (null)
  23. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.1) RSA-SHA1
  24. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.1) RSA-SHA224
  25. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.1) RSA-SHA256
  26. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.1) RSA-SHA384
  27. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.1) RSA-SHA512
  28. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (1.1) RSA-MD5
  29. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.2) DSA-SHA1
  30. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.3) ECDSA-SHA1
  31. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.3) ECDSA-SHA224
  32. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.3) ECDSA-SHA256
  33. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.3) ECDSA-SHA384
  34. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.3) ECDSA-SHA512
  35. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'HEARTBEAT/15' (1 bytes)
  36. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Received safe renegotiation CS
  37. ocserv[13876]: TLS[<2>]: ASSERT: server_name.c:300
  38. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Requested PK algorithm: RSA (1) -- ctype: X.509 (1)
  39. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: certificate[0] PK algorithm: RSA (1) - ctype: X.509 (1)
  40. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_SHA1 (00.05)
  41. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_MD5 (00.04)
  42. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_GCM_SHA256 (00.9C)
  43. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA1 (00.2F)
  44. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA256 (00.3C)
  45. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_128_CBC_SHA1 (00.41)
  46. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA1 (00.35)
  47. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA256 (00.3D)
  48. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_256_CBC_SHA1 (00.84)
  49. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_3DES_EDE_CBC_SHA1 (00.0A)
  50. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_GCM_SHA256
  51. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_GCM_SHA384
  52. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA1
  53. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA256
  54. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA1
  55. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA384
  56. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_3DES_EDE_CBC_SHA1
  57. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_GCM_SHA256
  58. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_GCM_SHA384
  59. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA1
  60. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA256
  61. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_CBC_SHA1
  62. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_3DES_EDE_CBC_SHA1
  63. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  64. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_GCM_SHA256
  65. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  66. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA1
  67. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  68. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA256
  69. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  70. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_128_CBC_SHA1
  71. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  72. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA1
  73. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  74. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA256
  75. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  76. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_256_CBC_SHA1
  77. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  78. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_3DES_EDE_CBC_SHA1
  79. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_ARCFOUR_128_SHA1
  80. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_GCM_SHA256
  81. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA1
  82. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA256
  83. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_128_CBC_SHA1
  84. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA1
  85. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA256
  86. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_256_CBC_SHA1
  87. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_3DES_EDE_CBC_SHA1
  88. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Requested cipher suites[size: 12]:
  89. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Selected cipher suite: RSA_ARCFOUR_128_SHA1
  90. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Selected Compression Method: NULL
  91. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: Safe renegotiation succeeded
  92. ocserv[13876]: TLS[<2>]: ASSERT: status_request.c:197
  93. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: Sending extension SAFE RENEGOTIATION (1 bytes)
  94. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: SessionID: 118e3569322c57e670a87f47dda71f0881512e23234a69a8efc564ceefb8ef99
  95. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO was queued [81 bytes]
  96. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE was queued [904 bytes]
  97. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.1) RSA-SHA256
  98. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.2) DSA-SHA256
  99. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.3) ECDSA-SHA256
  100. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.1) RSA-SHA384
  101. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.3) ECDSA-SHA384
  102. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.1) RSA-SHA512
  103. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.3) ECDSA-SHA512
  104. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.1) RSA-SHA224
  105. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.2) DSA-SHA224
  106. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.3) ECDSA-SHA224
  107. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.1) RSA-SHA1
  108. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.2) DSA-SHA1
  109. ocserv[13876]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.3) ECDSA-SHA1
  110. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE REQUEST was queued [78 bytes]
  111. ocserv[13876]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO DONE was queued [4 bytes]
  112. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 81 and target length: 81
  113. ocserv[13876]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  114. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 0 and length: 86
  115. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 904 and target length: 904
  116. ocserv[13876]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  117. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] Handshake(22) in epoch 0 and length: 909
  118. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 78 and target length: 78
  119. ocserv[13876]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  120. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[3] Handshake(22) in epoch 0 and length: 83
  121. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 4 and target length: 4
  122. ocserv[13876]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  123. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[4] Handshake(22) in epoch 0 and length: 9
  124. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  125. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Alert packet received. Epoch 0, length: 2
  126. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  127. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Received Packet Alert(21) with length: 2
  128. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[1] Alert(21) with length: 2
  129. ocserv[13876]: TLS[<4>]: REC[0x87d11c0]: Alert[2|46] - Unknown certificate - was received
  130. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_record.c:744
  131. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_record.c:750
  132. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_record.c:1247
  133. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_buffers.c:1228
  134. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:1357
  135. ocserv[13876]: TLS[<2>]: ASSERT: gnutls_handshake.c:3060
  136. ocserv[13876]: GnuTLS error (at worker-vpn.c:572): A TLS fatal alert has been received.: Unknown certificate
  137. ocserv[13578]: [MYIP]:55971 command socket closed
  138. ocserv[13877]: [MYIP]:55972 accepted connection
  139. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #0
  140. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_constate.c:715
  141. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #1
  142. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  143. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: SSL 3.1 Handshake packet received. Epoch 0, length: 98
  144. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  145. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 98
  146. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 98
  147. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: CLIENT HELLO (1) was received. Length 94[94], frag offset 0, frag length: 94, sequence: 0
  148. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Client's version: 3.3
  149. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_db.c:278
  150. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  151. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  152. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  153. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SESSION TICKET/35' (0 bytes)
  154. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  155. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  156. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  157. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SIGNATURE ALGORITHMS/13' (28 bytes)
  158. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (0.0) (null)
  159. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.1) RSA-SHA1
  160. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.1) RSA-SHA224
  161. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.1) RSA-SHA256
  162. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.1) RSA-SHA384
  163. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.1) RSA-SHA512
  164. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (1.1) RSA-MD5
  165. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.2) DSA-SHA1
  166. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.3) ECDSA-SHA1
  167. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.3) ECDSA-SHA224
  168. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.3) ECDSA-SHA256
  169. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.3) ECDSA-SHA384
  170. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.3) ECDSA-SHA512
  171. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'HEARTBEAT/15' (1 bytes)
  172. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Received safe renegotiation CS
  173. ocserv[13877]: TLS[<2>]: ASSERT: server_name.c:300
  174. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Requested PK algorithm: RSA (1) -- ctype: X.509 (1)
  175. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: certificate[0] PK algorithm: RSA (1) - ctype: X.509 (1)
  176. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_SHA1 (00.05)
  177. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_MD5 (00.04)
  178. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_GCM_SHA256 (00.9C)
  179. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA1 (00.2F)
  180. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA256 (00.3C)
  181. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_128_CBC_SHA1 (00.41)
  182. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA1 (00.35)
  183. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA256 (00.3D)
  184. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_256_CBC_SHA1 (00.84)
  185. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_3DES_EDE_CBC_SHA1 (00.0A)
  186. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_GCM_SHA256
  187. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_GCM_SHA384
  188. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA1
  189. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA256
  190. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA1
  191. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA384
  192. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_3DES_EDE_CBC_SHA1
  193. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_GCM_SHA256
  194. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_GCM_SHA384
  195. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA1
  196. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA256
  197. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_CBC_SHA1
  198. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_3DES_EDE_CBC_SHA1
  199. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  200. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_GCM_SHA256
  201. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  202. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA1
  203. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  204. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA256
  205. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  206. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_128_CBC_SHA1
  207. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  208. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA1
  209. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  210. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA256
  211. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  212. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_256_CBC_SHA1
  213. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  214. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_3DES_EDE_CBC_SHA1
  215. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_ARCFOUR_128_SHA1
  216. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_GCM_SHA256
  217. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA1
  218. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA256
  219. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_128_CBC_SHA1
  220. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA1
  221. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA256
  222. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_256_CBC_SHA1
  223. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_3DES_EDE_CBC_SHA1
  224. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Requested cipher suites[size: 12]:
  225. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Selected cipher suite: RSA_ARCFOUR_128_SHA1
  226. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Selected Compression Method: NULL
  227. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: Safe renegotiation succeeded
  228. ocserv[13877]: TLS[<2>]: ASSERT: status_request.c:197
  229. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: Sending extension SAFE RENEGOTIATION (1 bytes)
  230. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: SessionID: 0d35b4b285e43eab151b592661ae6143fd116e4bb8309c306db2374af581fcb1
  231. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO was queued [81 bytes]
  232. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE was queued [904 bytes]
  233. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.1) RSA-SHA256
  234. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.2) DSA-SHA256
  235. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.3) ECDSA-SHA256
  236. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.1) RSA-SHA384
  237. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.3) ECDSA-SHA384
  238. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.1) RSA-SHA512
  239. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.3) ECDSA-SHA512
  240. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.1) RSA-SHA224
  241. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.2) DSA-SHA224
  242. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.3) ECDSA-SHA224
  243. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.1) RSA-SHA1
  244. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.2) DSA-SHA1
  245. ocserv[13877]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.3) ECDSA-SHA1
  246. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE REQUEST was queued [78 bytes]
  247. ocserv[13877]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO DONE was queued [4 bytes]
  248. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 81 and target length: 81
  249. ocserv[13877]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  250. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 0 and length: 86
  251. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 904 and target length: 904
  252. ocserv[13877]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  253. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] Handshake(22) in epoch 0 and length: 909
  254. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 78 and target length: 78
  255. ocserv[13877]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  256. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[3] Handshake(22) in epoch 0 and length: 83
  257. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 4 and target length: 4
  258. ocserv[13877]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  259. ocserv[13877]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[4] Handshake(22) in epoch 0 and length: 9
  260. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  261. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_buffers.c:515
  262. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_record.c:1008
  263. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_record.c:1120
  264. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_buffers.c:1228
  265. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:1357
  266. ocserv[13877]: TLS[<2>]: ASSERT: gnutls_handshake.c:3060
  267. ocserv[13877]: GnuTLS error (at worker-vpn.c:572): The TLS connection was non-properly terminated.
  268. ocserv[13578]: [MYIP]:55972 command socket closed
  269. ocserv[13878]: [MYIP]:55973 accepted connection
  270. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #0
  271. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_constate.c:715
  272. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #1
  273. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  274. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: SSL 3.1 Handshake packet received. Epoch 0, length: 98
  275. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  276. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 98
  277. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 98
  278. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: CLIENT HELLO (1) was received. Length 94[94], frag offset 0, frag length: 94, sequence: 0
  279. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Client's version: 3.3
  280. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_db.c:278
  281. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  282. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  283. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  284. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SESSION TICKET/35' (0 bytes)
  285. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  286. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  287. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  288. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SIGNATURE ALGORITHMS/13' (28 bytes)
  289. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (0.0) (null)
  290. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.1) RSA-SHA1
  291. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.1) RSA-SHA224
  292. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.1) RSA-SHA256
  293. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.1) RSA-SHA384
  294. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.1) RSA-SHA512
  295. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (1.1) RSA-MD5
  296. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.2) DSA-SHA1
  297. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.3) ECDSA-SHA1
  298. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.3) ECDSA-SHA224
  299. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.3) ECDSA-SHA256
  300. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.3) ECDSA-SHA384
  301. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.3) ECDSA-SHA512
  302. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'HEARTBEAT/15' (1 bytes)
  303. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Received safe renegotiation CS
  304. ocserv[13878]: TLS[<2>]: ASSERT: server_name.c:300
  305. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Requested PK algorithm: RSA (1) -- ctype: X.509 (1)
  306. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: certificate[0] PK algorithm: RSA (1) - ctype: X.509 (1)
  307. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_SHA1 (00.05)
  308. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_MD5 (00.04)
  309. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_GCM_SHA256 (00.9C)
  310. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA1 (00.2F)
  311. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA256 (00.3C)
  312. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_128_CBC_SHA1 (00.41)
  313. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA1 (00.35)
  314. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA256 (00.3D)
  315. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_256_CBC_SHA1 (00.84)
  316. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_3DES_EDE_CBC_SHA1 (00.0A)
  317. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_GCM_SHA256
  318. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_GCM_SHA384
  319. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA1
  320. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA256
  321. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA1
  322. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA384
  323. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_3DES_EDE_CBC_SHA1
  324. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_GCM_SHA256
  325. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_GCM_SHA384
  326. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA1
  327. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA256
  328. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_CBC_SHA1
  329. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_3DES_EDE_CBC_SHA1
  330. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  331. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_GCM_SHA256
  332. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  333. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA1
  334. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  335. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA256
  336. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  337. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_128_CBC_SHA1
  338. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  339. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA1
  340. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  341. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA256
  342. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  343. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_256_CBC_SHA1
  344. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  345. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_3DES_EDE_CBC_SHA1
  346. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_ARCFOUR_128_SHA1
  347. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_GCM_SHA256
  348. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA1
  349. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA256
  350. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_128_CBC_SHA1
  351. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA1
  352. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA256
  353. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_256_CBC_SHA1
  354. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_3DES_EDE_CBC_SHA1
  355. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Requested cipher suites[size: 12]:
  356. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Selected cipher suite: RSA_ARCFOUR_128_SHA1
  357. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Selected Compression Method: NULL
  358. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: Safe renegotiation succeeded
  359. ocserv[13878]: TLS[<2>]: ASSERT: status_request.c:197
  360. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: Sending extension SAFE RENEGOTIATION (1 bytes)
  361. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: SessionID: 37d100f1268fd082c83cf1ee187fa02c345e7f265452a9c6e37aae3c85acdb4d
  362. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO was queued [81 bytes]
  363. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE was queued [904 bytes]
  364. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.1) RSA-SHA256
  365. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.2) DSA-SHA256
  366. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.3) ECDSA-SHA256
  367. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.1) RSA-SHA384
  368. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.3) ECDSA-SHA384
  369. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.1) RSA-SHA512
  370. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.3) ECDSA-SHA512
  371. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.1) RSA-SHA224
  372. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.2) DSA-SHA224
  373. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.3) ECDSA-SHA224
  374. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.1) RSA-SHA1
  375. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.2) DSA-SHA1
  376. ocserv[13878]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.3) ECDSA-SHA1
  377. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE REQUEST was queued [78 bytes]
  378. ocserv[13878]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO DONE was queued [4 bytes]
  379. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 81 and target length: 81
  380. ocserv[13878]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  381. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 0 and length: 86
  382. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 904 and target length: 904
  383. ocserv[13878]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  384. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] Handshake(22) in epoch 0 and length: 909
  385. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 78 and target length: 78
  386. ocserv[13878]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  387. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[3] Handshake(22) in epoch 0 and length: 83
  388. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 4 and target length: 4
  389. ocserv[13878]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  390. ocserv[13878]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[4] Handshake(22) in epoch 0 and length: 9
  391. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  392. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_buffers.c:515
  393. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_record.c:1008
  394. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_record.c:1120
  395. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_buffers.c:1228
  396. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:1357
  397. ocserv[13878]: TLS[<2>]: ASSERT: gnutls_handshake.c:3060
  398. ocserv[13878]: GnuTLS error (at worker-vpn.c:572): The TLS connection was non-properly terminated.
  399. ocserv[13578]: [MYIP]:55973 command socket closed
  400. ocserv[13879]: [MYIP]:55974 accepted connection
  401. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #0
  402. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_constate.c:715
  403. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #1
  404. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  405. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: SSL 3.1 Handshake packet received. Epoch 0, length: 98
  406. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  407. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 98
  408. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 98
  409. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: CLIENT HELLO (1) was received. Length 94[94], frag offset 0, frag length: 94, sequence: 0
  410. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Client's version: 3.3
  411. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_db.c:278
  412. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  413. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  414. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  415. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SESSION TICKET/35' (0 bytes)
  416. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  417. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  418. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  419. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SIGNATURE ALGORITHMS/13' (28 bytes)
  420. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (0.0) (null)
  421. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.1) RSA-SHA1
  422. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.1) RSA-SHA224
  423. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.1) RSA-SHA256
  424. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.1) RSA-SHA384
  425. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.1) RSA-SHA512
  426. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (1.1) RSA-MD5
  427. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.2) DSA-SHA1
  428. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.3) ECDSA-SHA1
  429. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.3) ECDSA-SHA224
  430. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.3) ECDSA-SHA256
  431. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.3) ECDSA-SHA384
  432. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.3) ECDSA-SHA512
  433. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'HEARTBEAT/15' (1 bytes)
  434. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Received safe renegotiation CS
  435. ocserv[13879]: TLS[<2>]: ASSERT: server_name.c:300
  436. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Requested PK algorithm: RSA (1) -- ctype: X.509 (1)
  437. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: certificate[0] PK algorithm: RSA (1) - ctype: X.509 (1)
  438. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_SHA1 (00.05)
  439. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_MD5 (00.04)
  440. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_GCM_SHA256 (00.9C)
  441. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA1 (00.2F)
  442. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA256 (00.3C)
  443. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_128_CBC_SHA1 (00.41)
  444. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA1 (00.35)
  445. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA256 (00.3D)
  446. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_256_CBC_SHA1 (00.84)
  447. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_3DES_EDE_CBC_SHA1 (00.0A)
  448. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_GCM_SHA256
  449. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_GCM_SHA384
  450. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA1
  451. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA256
  452. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA1
  453. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA384
  454. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_3DES_EDE_CBC_SHA1
  455. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_GCM_SHA256
  456. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_GCM_SHA384
  457. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA1
  458. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA256
  459. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_CBC_SHA1
  460. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_3DES_EDE_CBC_SHA1
  461. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  462. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_GCM_SHA256
  463. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  464. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA1
  465. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  466. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA256
  467. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  468. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_128_CBC_SHA1
  469. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  470. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA1
  471. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  472. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA256
  473. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  474. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_256_CBC_SHA1
  475. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  476. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_3DES_EDE_CBC_SHA1
  477. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_ARCFOUR_128_SHA1
  478. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_GCM_SHA256
  479. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA1
  480. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA256
  481. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_128_CBC_SHA1
  482. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA1
  483. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA256
  484. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_256_CBC_SHA1
  485. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_3DES_EDE_CBC_SHA1
  486. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Requested cipher suites[size: 12]:
  487. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Selected cipher suite: RSA_ARCFOUR_128_SHA1
  488. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Selected Compression Method: NULL
  489. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Safe renegotiation succeeded
  490. ocserv[13879]: TLS[<2>]: ASSERT: status_request.c:197
  491. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: Sending extension SAFE RENEGOTIATION (1 bytes)
  492. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: SessionID: 39d2c532f97adfc8c73ed921594f8195bb9047957526e9be328a9fe9a19b27ab
  493. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO was queued [81 bytes]
  494. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE was queued [904 bytes]
  495. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.1) RSA-SHA256
  496. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.2) DSA-SHA256
  497. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.3) ECDSA-SHA256
  498. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.1) RSA-SHA384
  499. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.3) ECDSA-SHA384
  500. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.1) RSA-SHA512
  501. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.3) ECDSA-SHA512
  502. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.1) RSA-SHA224
  503. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.2) DSA-SHA224
  504. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.3) ECDSA-SHA224
  505. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.1) RSA-SHA1
  506. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.2) DSA-SHA1
  507. ocserv[13879]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.3) ECDSA-SHA1
  508. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE REQUEST was queued [78 bytes]
  509. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO DONE was queued [4 bytes]
  510. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 81 and target length: 81
  511. ocserv[13879]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  512. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 0 and length: 86
  513. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 904 and target length: 904
  514. ocserv[13879]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  515. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] Handshake(22) in epoch 0 and length: 909
  516. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 78 and target length: 78
  517. ocserv[13879]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  518. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[3] Handshake(22) in epoch 0 and length: 83
  519. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 4 and target length: 4
  520. ocserv[13879]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  521. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[4] Handshake(22) in epoch 0 and length: 9
  522. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  523. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Handshake packet received. Epoch 0, length: 7
  524. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  525. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 7
  526. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[1] Handshake(22) with length: 7
  527. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE (11) was received. Length 3[3], frag offset 0, frag length: 3, sequence: 0
  528. ocserv[13879]: TLS[<2>]: ASSERT: cert.c:1094
  529. ocserv[13879]: [MYIP]:55974 error verifying client certificate
  530. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  531. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Handshake packet received. Epoch 0, length: 310
  532. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  533. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 310
  534. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[2] Handshake(22) with length: 310
  535. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: CLIENT KEY EXCHANGE (16) was received. Length 306[306], frag offset 0, frag length: 306, sequence: 0
  536. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 ChangeCipherSpec packet received. Epoch 0, length: 1
  537. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Expected Packet ChangeCipherSpec(20)
  538. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Received Packet ChangeCipherSpec(20) with length: 1
  539. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[3] ChangeCipherSpec(20) with length: 1
  540. ocserv[13879]: TLS[<9>]: INT: PREMASTER SECRET[48]: 0303c96c8788adb5d9890d74085a8b3463b1b8fa4ac7daf02b6e52426c731a0d874fb273a6990963bd0d558f4ce4475c
  541. ocserv[13879]: TLS[<9>]: INT: CLIENT RANDOM[32]: 52a4910032a5a8ea4e1b420e880857cf2f01db3c82adcc524f9082e609850adb
  542. ocserv[13879]: TLS[<9>]: INT: SERVER RANDOM[32]: 52a490ffd6eaaae79b561828d9d3b718ee18eb41cbead81ec591ea0e74503e06
  543. ocserv[13879]: TLS[<9>]: INT: MASTER SECRET: 3840754cde1a3951f067a5164a1f132128052a95e687f039902ba80bfa9a5c1bfb6c8bb0703f996fec7c1dddd2305409
  544. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Initializing epoch #1
  545. ocserv[13879]: TLS[<9>]: INT: KEY BLOCK[72]: e0bcc810742161c001c81ec02f1a55c7ad7c66035c96baf334413400adac6a73
  546. ocserv[13879]: TLS[<9>]: INT: CLIENT WRITE KEY [16]: 11b28be107851c1bce2cc19aad8485d6
  547. ocserv[13879]: TLS[<9>]: INT: SERVER WRITE KEY [16]: b493bc05c42d4b0d08f71ba1d8663b99
  548. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Epoch #1 ready
  549. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Cipher Suite: RSA_ARCFOUR_128_SHA1
  550. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  551. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Handshake packet received. Epoch 0, length: 36
  552. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  553. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 36
  554. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 16
  555. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: FINISHED (20) was received. Length 12[12], frag offset 0, frag length: 12, sequence: 0
  556. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: recording tls-unique CB (recv)
  557. ocserv[13879]: TLS[<3>]: REC[0x87d11c0]: Sent ChangeCipherSpec
  558. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Cipher Suite: RSA_ARCFOUR_128_SHA1
  559. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: Initializing internal [write] cipher sessions
  560. ocserv[13879]: TLS[<3>]: HSK[0x87d11c0]: FINISHED was queued [16 bytes]
  561. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet ChangeCipherSpec(20) with length: 1 and target length: 1
  562. ocserv[13879]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  563. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[5] ChangeCipherSpec(20) in epoch 0 and length: 6
  564. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 16 and target length: 16
  565. ocserv[13879]: TLS[<9>]: ENC[0x87d11c0]: cipher: ARCFOUR-128, MAC: SHA1, Epoch: 1
  566. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 1 and length: 41
  567. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Start of epoch cleanup
  568. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Epoch #0 freed
  569. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: End of epoch cleanup
  570. ocserv[13879]: [MYIP]:55974 TLS handshake completed
  571. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Application Data packet received. Epoch 0, length: 940
  572. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Application Data(23)
  573. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Received Packet Application Data(23) with length: 940
  574. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[1] Application Data(23) with length: 920
  575. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Application Data(23) with length: 321 and target length: 321
  576. ocserv[13879]: TLS[<9>]: ENC[0x87d11c0]: cipher: ARCFOUR-128, MAC: SHA1, Epoch: 1
  577. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] Application Data(23) in epoch 1 and length: 346
  578. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Application Data packet received. Epoch 0, length: 590
  579. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Application Data(23)
  580. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Received Packet Application Data(23) with length: 590
  581. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[2] Application Data(23) with length: 570
  582. ocserv[13879]: [MYIP]:55974 no certificate provided for authentication
  583. ocserv[13879]: TLS[<2>]: ASSERT: gnutls_buffers.c:613
  584. ocserv[13879]: TLS[<4>]: REC: Sending Alert[1|0] - Close notify
  585. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Alert(21) with length: 2 and target length: 2
  586. ocserv[13879]: TLS[<9>]: ENC[0x87d11c0]: cipher: ARCFOUR-128, MAC: SHA1, Epoch: 1
  587. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[3] Alert(21) in epoch 1 and length: 27
  588. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Start of epoch cleanup
  589. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: End of epoch cleanup
  590. ocserv[13879]: TLS[<4>]: REC[0x87d11c0]: Epoch #1 freed
  591. ocserv[13578]: [MYIP]:55974 command socket closed
  592. ocserv[13880]: [MYIP]:55975 accepted connection
  593. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #0
  594. ocserv[13880]: TLS[<2>]: ASSERT: gnutls_constate.c:715
  595. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #1
  596. ocserv[13880]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  597. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: SSL 3.1 Handshake packet received. Epoch 0, length: 130
  598. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  599. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 130
  600. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 130
  601. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: CLIENT HELLO (1) was received. Length 126[126], frag offset 0, frag length: 126, sequence: 0
  602. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: Client's version: 3.3
  603. ocserv[13880]: [MYIP]:55975 sending resumption request (fetch)
  604. ocserv[13880]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SESSION TICKET/35' (0 bytes)
  605. ocserv[13880]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  606. ocserv[13880]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  607. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: Allowing unsafe initial negotiation
  608. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: SessionID: 39d2c532f97adfc8c73ed921594f8195bb9047957526e9be328a9fe9a19b27ab
  609. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO was queued [74 bytes]
  610. ocserv[13880]: [MYIP]:55975 error verifying client certificate
  611. ocserv[13880]: TLS[<3>]: REC[0x87d11c0]: Sent ChangeCipherSpec
  612. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Initializing epoch #1
  613. ocserv[13880]: TLS[<9>]: INT: KEY BLOCK[72]: 0ff6595c8a4e362da3f7a5bad65bb12b9dcf2b6d736ace300269707e479e204a
  614. ocserv[13880]: TLS[<9>]: INT: CLIENT WRITE KEY [16]: 5e36958c3ad315a798500bb096c14587
  615. ocserv[13880]: TLS[<9>]: INT: SERVER WRITE KEY [16]: f3e1bec2ec51c7fae009335a1f675ec1
  616. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Epoch #1 ready
  617. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: Cipher Suite: RSA_ARCFOUR_128_SHA1
  618. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: Initializing internal [write] cipher sessions
  619. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: recording tls-unique CB (send)
  620. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: FINISHED was queued [16 bytes]
  621. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 74 and target length: 74
  622. ocserv[13880]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  623. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 0 and length: 79
  624. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet ChangeCipherSpec(20) with length: 1 and target length: 1
  625. ocserv[13880]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  626. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] ChangeCipherSpec(20) in epoch 0 and length: 6
  627. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 16 and target length: 16
  628. ocserv[13880]: TLS[<9>]: ENC[0x87d11c0]: cipher: ARCFOUR-128, MAC: SHA1, Epoch: 1
  629. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 1 and length: 41
  630. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 ChangeCipherSpec packet received. Epoch 0, length: 1
  631. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Expected Packet ChangeCipherSpec(20)
  632. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Received Packet ChangeCipherSpec(20) with length: 1
  633. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[1] ChangeCipherSpec(20) with length: 1
  634. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: Cipher Suite: RSA_ARCFOUR_128_SHA1
  635. ocserv[13880]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  636. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Handshake packet received. Epoch 0, length: 36
  637. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  638. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 36
  639. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 16
  640. ocserv[13880]: TLS[<3>]: HSK[0x87d11c0]: FINISHED (20) was received. Length 12[12], frag offset 0, frag length: 12, sequence: 0
  641. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Start of epoch cleanup
  642. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Epoch #0 freed
  643. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: End of epoch cleanup
  644. ocserv[13880]: [MYIP]:55975 TLS handshake completed
  645. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Application Data packet received. Epoch 0, length: 623
  646. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Application Data(23)
  647. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Received Packet Application Data(23) with length: 623
  648. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[1] Application Data(23) with length: 603
  649. ocserv[13880]: [MYIP]:55975 no certificate provided for authentication
  650. ocserv[13880]: TLS[<2>]: ASSERT: gnutls_buffers.c:613
  651. ocserv[13880]: TLS[<4>]: REC: Sending Alert[1|0] - Close notify
  652. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Alert(21) with length: 2 and target length: 2
  653. ocserv[13880]: TLS[<9>]: ENC[0x87d11c0]: cipher: ARCFOUR-128, MAC: SHA1, Epoch: 1
  654. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] Alert(21) in epoch 1 and length: 27
  655. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Start of epoch cleanup
  656. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: End of epoch cleanup
  657. ocserv[13880]: TLS[<4>]: REC[0x87d11c0]: Epoch #1 freed
  658. ocserv[13578]: [MYIP]:55975 command socket closed
  659. ocserv[13881]: [MYIP]:55976 accepted connection
  660. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #0
  661. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_constate.c:715
  662. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Allocating epoch #1
  663. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  664. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: SSL 3.1 Handshake packet received. Epoch 0, length: 98
  665. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  666. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 98
  667. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 98
  668. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: CLIENT HELLO (1) was received. Length 94[94], frag offset 0, frag length: 94, sequence: 0
  669. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Client's version: 3.3
  670. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_db.c:278
  671. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  672. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  673. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  674. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SESSION TICKET/35' (0 bytes)
  675. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SIGNATURE ALGORITHMS/13'
  676. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'HEARTBEAT/15'
  677. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Found extension 'SESSION TICKET/35'
  678. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'SIGNATURE ALGORITHMS/13' (28 bytes)
  679. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (0.0) (null)
  680. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.1) RSA-SHA1
  681. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.1) RSA-SHA224
  682. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.1) RSA-SHA256
  683. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.1) RSA-SHA384
  684. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.1) RSA-SHA512
  685. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (1.1) RSA-MD5
  686. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.2) DSA-SHA1
  687. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (2.3) ECDSA-SHA1
  688. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (3.3) ECDSA-SHA224
  689. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (4.3) ECDSA-SHA256
  690. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (5.3) ECDSA-SHA384
  691. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: rcvd signature algo (6.3) ECDSA-SHA512
  692. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Parsing extension 'HEARTBEAT/15' (1 bytes)
  693. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Received safe renegotiation CS
  694. ocserv[13881]: TLS[<2>]: ASSERT: server_name.c:300
  695. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Requested PK algorithm: RSA (1) -- ctype: X.509 (1)
  696. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: certificate[0] PK algorithm: RSA (1) - ctype: X.509 (1)
  697. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_SHA1 (00.05)
  698. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_ARCFOUR_128_MD5 (00.04)
  699. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_GCM_SHA256 (00.9C)
  700. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA1 (00.2F)
  701. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_128_CBC_SHA256 (00.3C)
  702. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_128_CBC_SHA1 (00.41)
  703. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA1 (00.35)
  704. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_AES_256_CBC_SHA256 (00.3D)
  705. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_CAMELLIA_256_CBC_SHA1 (00.84)
  706. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Keeping ciphersuite: RSA_3DES_EDE_CBC_SHA1 (00.0A)
  707. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_GCM_SHA256
  708. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_GCM_SHA384
  709. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA1
  710. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_128_CBC_SHA256
  711. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA1
  712. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_AES_256_CBC_SHA384
  713. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_ECDSA_3DES_EDE_CBC_SHA1
  714. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_GCM_SHA256
  715. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_GCM_SHA384
  716. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA1
  717. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_128_CBC_SHA256
  718. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_AES_256_CBC_SHA1
  719. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: ECDHE_RSA_3DES_EDE_CBC_SHA1
  720. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  721. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_GCM_SHA256
  722. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  723. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA1
  724. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  725. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_128_CBC_SHA256
  726. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  727. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_128_CBC_SHA1
  728. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  729. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA1
  730. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  731. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_AES_256_CBC_SHA256
  732. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  733. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_CAMELLIA_256_CBC_SHA1
  734. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_handshake.c:3283
  735. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_RSA_3DES_EDE_CBC_SHA1
  736. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_ARCFOUR_128_SHA1
  737. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_GCM_SHA256
  738. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA1
  739. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_128_CBC_SHA256
  740. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_128_CBC_SHA1
  741. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA1
  742. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_AES_256_CBC_SHA256
  743. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_CAMELLIA_256_CBC_SHA1
  744. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Removing ciphersuite: DHE_DSS_3DES_EDE_CBC_SHA1
  745. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Requested cipher suites[size: 12]:
  746. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Selected cipher suite: RSA_ARCFOUR_128_SHA1
  747. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Selected Compression Method: NULL
  748. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Safe renegotiation succeeded
  749. ocserv[13881]: TLS[<2>]: ASSERT: status_request.c:197
  750. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: Sending extension SAFE RENEGOTIATION (1 bytes)
  751. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: SessionID: 80f663ff57db6f4f444924b076b497e7a98bfce0fa27baff36a1aad55d0be600
  752. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO was queued [81 bytes]
  753. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE was queued [904 bytes]
  754. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.1) RSA-SHA256
  755. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.2) DSA-SHA256
  756. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (4.3) ECDSA-SHA256
  757. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.1) RSA-SHA384
  758. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (5.3) ECDSA-SHA384
  759. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.1) RSA-SHA512
  760. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (6.3) ECDSA-SHA512
  761. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.1) RSA-SHA224
  762. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.2) DSA-SHA224
  763. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (3.3) ECDSA-SHA224
  764. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.1) RSA-SHA1
  765. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.2) DSA-SHA1
  766. ocserv[13881]: TLS[<3>]: EXT[0x87d11c0]: sent signature algo (2.3) ECDSA-SHA1
  767. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE REQUEST was queued [78 bytes]
  768. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: SERVER HELLO DONE was queued [4 bytes]
  769. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 81 and target length: 81
  770. ocserv[13881]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  771. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 0 and length: 86
  772. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 904 and target length: 904
  773. ocserv[13881]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  774. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] Handshake(22) in epoch 0 and length: 909
  775. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 78 and target length: 78
  776. ocserv[13881]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  777. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[3] Handshake(22) in epoch 0 and length: 83
  778. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 4 and target length: 4
  779. ocserv[13881]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  780. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[4] Handshake(22) in epoch 0 and length: 9
  781. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  782. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Handshake packet received. Epoch 0, length: 7
  783. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  784. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 7
  785. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[1] Handshake(22) with length: 7
  786. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: CERTIFICATE (11) was received. Length 3[3], frag offset 0, frag length: 3, sequence: 0
  787. ocserv[13881]: TLS[<2>]: ASSERT: cert.c:1094
  788. ocserv[13881]: [MYIP]:55976 error verifying client certificate
  789. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  790. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Handshake packet received. Epoch 0, length: 310
  791. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  792. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 310
  793. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[2] Handshake(22) with length: 310
  794. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: CLIENT KEY EXCHANGE (16) was received. Length 306[306], frag offset 0, frag length: 306, sequence: 0
  795. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 ChangeCipherSpec packet received. Epoch 0, length: 1
  796. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Expected Packet ChangeCipherSpec(20)
  797. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Received Packet ChangeCipherSpec(20) with length: 1
  798. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[3] ChangeCipherSpec(20) with length: 1
  799. ocserv[13881]: TLS[<9>]: INT: PREMASTER SECRET[48]: 03037b567c36eb7086ff3331b8555bc4586238c96eb1b5e15d4634698167c9928e74dfe41ef6d5ef0c1ca9499d96ba6d
  800. ocserv[13881]: TLS[<9>]: INT: CLIENT RANDOM[32]: 52a49105054e2da3b5515481aabe4360666379e5fc364e03347c14f4126b43ba
  801. ocserv[13881]: TLS[<9>]: INT: SERVER RANDOM[32]: 52a491048efadef3dbf535e913004bafd717af755eda4f9de5d9f578bfb17488
  802. ocserv[13881]: TLS[<9>]: INT: MASTER SECRET: b955d72ac7000c080ac7e5888602f6c53ec98375428444bc44253b1aeafe8d514fc7e64922a9b9df2e62da807c1d0a57
  803. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Initializing epoch #1
  804. ocserv[13881]: TLS[<9>]: INT: KEY BLOCK[72]: e3351bd6763f0e1e21f51108b7530ce81464083701b1f11d0a95e7ae5f903fd7
  805. ocserv[13881]: TLS[<9>]: INT: CLIENT WRITE KEY [16]: 4636ca95b9acf581dc03735b3e759639
  806. ocserv[13881]: TLS[<9>]: INT: SERVER WRITE KEY [16]: ec1e36004804a0f53ba86f93cc9057c2
  807. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Epoch #1 ready
  808. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Cipher Suite: RSA_ARCFOUR_128_SHA1
  809. ocserv[13881]: TLS[<2>]: ASSERT: gnutls_buffers.c:1018
  810. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Handshake packet received. Epoch 0, length: 36
  811. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Handshake(22)
  812. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Received Packet Handshake(22) with length: 36
  813. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[0] Handshake(22) with length: 16
  814. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: FINISHED (20) was received. Length 12[12], frag offset 0, frag length: 12, sequence: 0
  815. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: recording tls-unique CB (recv)
  816. ocserv[13881]: TLS[<3>]: REC[0x87d11c0]: Sent ChangeCipherSpec
  817. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Cipher Suite: RSA_ARCFOUR_128_SHA1
  818. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: Initializing internal [write] cipher sessions
  819. ocserv[13881]: TLS[<3>]: HSK[0x87d11c0]: FINISHED was queued [16 bytes]
  820. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet ChangeCipherSpec(20) with length: 1 and target length: 1
  821. ocserv[13881]: TLS[<9>]: ENC[0x87d11c0]: cipher: NULL, MAC: MAC-NULL, Epoch: 0
  822. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[5] ChangeCipherSpec(20) in epoch 0 and length: 6
  823. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Handshake(22) with length: 16 and target length: 16
  824. ocserv[13881]: TLS[<9>]: ENC[0x87d11c0]: cipher: ARCFOUR-128, MAC: SHA1, Epoch: 1
  825. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[1] Handshake(22) in epoch 1 and length: 41
  826. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Start of epoch cleanup
  827. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Epoch #0 freed
  828. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: End of epoch cleanup
  829. ocserv[13881]: [MYIP]:55976 TLS handshake completed
  830. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: SSL 3.3 Application Data packet received. Epoch 0, length: 505
  831. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Expected Packet Application Data(23)
  832. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Received Packet Application Data(23) with length: 505
  833. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Decrypted Packet[1] Application Data(23) with length: 485
  834. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Preparing Packet Application Data(23) with length: 321 and target length: 321
  835. ocserv[13881]: TLS[<9>]: ENC[0x87d11c0]: cipher: ARCFOUR-128, MAC: SHA1, Epoch: 1
  836. ocserv[13881]: TLS[<4>]: REC[0x87d11c0]: Sent Packet[2] Application Data(23) in epoch 1 and length: 346
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement