--- west.console.txt 2019-09-20 17:49:12.380188459 +0000 +++ OUTPUT/west.console.txt 2019-09-21 07:34:22.211834603 +0000 @@ -1,5 +1,7 @@ /testing/guestbin/swan-prep west # + +west # ip addr add 192.0.100.254/24 dev eth0:1 west # ip addr add 192.0.101.254/24 dev eth0:1 @@ -8,6 +10,8 @@ west # ip addr add 192.0.111.254/24 dev eth0:1 west # + +west # ip route add 192.0.200.0/24 via 192.1.2.23 dev eth1 west # ip route add 192.0.201.0/24 via 192.1.2.23 dev eth1 @@ -16,6 +20,8 @@ west # ip route add 192.0.211.0/24 via 192.1.2.23 dev eth1 west # + +west # # ensure that clear text does not get through west # iptables -A INPUT -i eth1 -s 192.0.2.0/24 -j LOGDROP @@ -31,9 +37,13 @@ west # ipsec whack --impair suppress-retransmits,delete-on-retransmit west # + +west # ipsec auto --add westnet-eastnet-ikev2 002 added connection description "westnet-eastnet-ikev2" west # + +west # ipsec auto --add westnet-eastnet-ikev2-00 002 added connection description "westnet-eastnet-ikev2-00" west # @@ -47,6 +57,8 @@ ipsec auto --add westnet-eastnet-ikev2-11 002 added connection description "westnet-eastnet-ikev2-11" west # + +west # echo "initdone" initdone west # @@ -63,8 +75,12 @@ ../../pluto/bin/one-ping.sh -I 192.0.1.254 192.0.2.254 up west # + +west # # remote pfs=no dh=none west # + +west # # pfs=no dh= - connect west # ipsec auto --up westnet-eastnet-ikev2-00 @@ -75,6 +91,8 @@ ../../pluto/bin/one-ping.sh -I 192.0.100.254 192.0.200.254 up west # + +west # # pfs=no dh=none - connect west # ipsec auto --up westnet-eastnet-ikev2-01 @@ -85,6 +103,8 @@ ../../pluto/bin/one-ping.sh -I 192.0.101.254 192.0.201.254 up west # + +west # # pfs=yes dh= - connect west # ipsec auto --up westnet-eastnet-ikev2-10 @@ -95,6 +115,8 @@ ../../pluto/bin/one-ping.sh -I 192.0.110.254 192.0.210.254 up west # + +west # # pfs=yes dh=none - connect west # ipsec auto --up westnet-eastnet-ikev2-11 @@ -105,6 +127,8 @@ ../../pluto/bin/one-ping.sh -I 192.0.111.254 192.0.211.254 up west # + +west # ipsec whack --trafficstatus 006 #2: "westnet-eastnet-ikev2", type=ESP, add_time=1234567890, inBytes=84, outBytes=84, id='@east' 006 #3: "westnet-eastnet-ikev2-00", type=ESP, add_time=1234567890, inBytes=84, outBytes=84, id='@east' @@ -112,6 +136,8 @@ 006 #5: "westnet-eastnet-ikev2-10", type=ESP, add_time=1234567890, inBytes=84, outBytes=84, id='@east' 006 #6: "westnet-eastnet-ikev2-11", type=ESP, add_time=1234567890, inBytes=84, outBytes=84, id='@east' west # + +west # echo done done west #