/testing/guestbin/swan-prep --x509 Preparing X.509 files kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# certutil -D -n road -d sql:/etc/ipsec.d kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# cp east-ikev2-oe.conf /etc/ipsec.d/ikev2-oe.conf kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# cp policies/* /etc/ipsec.d/policies/ kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# echo "192.1.2.0/24" >> /etc/ipsec.d/policies/clear-or-private kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# echo "192.1.3.0/24" >> /etc/ipsec.d/policies/clear-or-private kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# restorecon -R /etc/ipsec.d kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# ipsec start Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Redirecting to: namespaces direct start via ipsec pluto kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# /testing/pluto/bin/wait-until-pluto-started kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# ipsec whack --impair suppress-retransmits kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# # give OE policies time to load kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# sleep 5 kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# echo "initdone" initdone kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# # A tunnel should have established with non-zero byte counters kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# ping -n -c 4 192.1.2.23 PING 192.1.2.23 (192.1.2.23) 56(84) bytes of data. 64 bytes from 192.1.2.23: icmp_seq=1 ttl=64 time=0.020 ms 64 bytes from 192.1.2.23: icmp_seq=2 ttl=64 time=0.037 ms 64 bytes from 192.1.2.23: icmp_seq=3 ttl=64 time=0.029 ms 64 bytes from 192.1.2.23: icmp_seq=4 ttl=64 time=0.023 ms --- 192.1.2.23 ping statistics --- 4 packets transmitted, 4 received, 0% packet loss, time 60ms rtt min/avg/max/mdev = 0.020/0.027/0.037/0.007 ms kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# # jacob two two for east? kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients]# ipsec whack --trafficstatus whack: is Pluto running? connect() for "/run/pluto/pluto.ctl" failed (111 Connection refused) kroot@swantest:/home/build/libreswan/testing/pluto/certoe-07-nat-2-clients\[root@east certoe-07-nat-2-clients 33]# >>>>>>>>>>cutnonzeroexit>>>>>>>>>> exit status 33 final.sh 'ipsec whack --trafficstatus' <<<<<<<<<>>>>>>>>>cutnonzeroexit>>>>>>>>>> exit status 33 final.sh 'ipsec whack --trafficstatus' <<<<<<<<<>>>>>>>>>cutnonzeroexit>>>>>>>>>> exit status 33 final.sh 'ipsec auto --status' <<<<<<<<<>>>>>>>>>cutnonzeroexit>>>>>>>>>> exit status 1 final.sh 'if [ -f /sbin/ausearch ]; then ausearch -r -m avc -ts recent ; fi' <<<<<<<<<