--- east.console.txt 2019-08-24 18:12:56.327672022 +0000 +++ OUTPUT/east.console.txt 2019-08-26 13:29:25.345019956 +0000 @@ -2,6 +2,7 @@ Preparing X.509 files east # crlutil -I -i /testing/x509/crls/cacrlvalid.crl -d sql:/etc/ipsec.d +crlutil: unable to import CRL: SEC_ERROR_CRL_BAD_SIGNATURE: The CRL for the certificate's issuer has an invalid signature. east # certutil -d sql:/etc/ipsec.d -D -n west east # @@ -36,13 +37,14 @@ initdone east # crlutil -L -d sql:/etc/ipsec.d | grep mainca -Libreswan test CA for mainca - Libreswan CRL east # ipsec auto --listall | grep -A10 "List of CRLs" | grep -E 'Issuer|Entry|Serial' east # east # ipsec stop Redirecting to: [initsystem] +Shutting down pluto IKE daemon +002 shutting down east # ipsec status whack: Pluto is not running (no "/run/pluto/pluto.ctl")