--- east.console.txt 2019-09-20 17:49:12.517183513 +0000 +++ OUTPUT/east.console.txt 2019-09-21 07:21:24.810282915 +0000 @@ -6,7 +6,7 @@ /testing/pluto/bin/wait-until-pluto-started east # ipsec auto --add westnet-eastnet-ikev2 -002 added connection description "westnet-eastnet-ikev2" +connect(pluto_ctl) failed: Connection refused east # echo "initdone" initdone @@ -14,27 +14,7 @@ ../../pluto/bin/ipsec-look.sh east NOW XFRM state: -src 192.1.2.45 dst 192.1.2.23 - proto esp spi 0xSPISPI reqid REQID mode tunnel - replay-window 32 flag af-unspec - aead rfc4106(gcm(aes)) 0xENCAUTHKEY 128 -src 192.1.2.23 dst 192.1.2.45 - proto esp spi 0xSPISPI reqid REQID mode tunnel - replay-window 32 flag af-unspec - aead rfc4106(gcm(aes)) 0xENCAUTHKEY 128 XFRM policy: -src 192.0.1.0/24 dst 192.0.2.0/24 - dir fwd priority 1042407 ptype main - tmpl src 192.1.2.45 dst 192.1.2.23 - proto esp reqid REQID mode tunnel -src 192.0.1.0/24 dst 192.0.2.0/24 - dir in priority 1042407 ptype main - tmpl src 192.1.2.45 dst 192.1.2.23 - proto esp reqid REQID mode tunnel -src 192.0.2.0/24 dst 192.0.1.0/24 - dir out priority 1042407 ptype main - tmpl src 192.1.2.23 dst 192.1.2.45 - proto esp reqid REQID mode tunnel XFRM done IPSEC mangle TABLES NEW_IPSEC_CONN mangle TABLES @@ -49,7 +29,8 @@ east # east # ipsec stop -Redirecting to: [initsystem] +PATH/bin/nsenter --mount=/run/mountns/east-nflog-01-global --net=/run/netns/east-nflog-01-global --uts=/run/utsns/east-nflog-01-global /bin/bash +whack: is Pluto running? connect() for "/run/pluto/pluto.ctl" failed (111 Connection refused) east # # show no nflog left behind east #