/testing/guestbin/swan-prep ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ipsec start Redirecting to: namespaces direct start via ipsec pluto ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# /testing/pluto/bin/wait-until-pluto-started ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ipsec whack --impair suppress-retransmits ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ipsec auto --add westnet-eastnet-ipv4-psk-ikev2 002 added IKEv2 connection "westnet-eastnet-ipv4-psk-ikev2" ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# echo "initdone" initdone ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ipsec auto --up westnet-eastnet-ipv4-psk-ikev2 181 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #1: initiating IKEv2 connection 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #1: IMPAIR: suppressing retransmits; scheduling timeout in 60 seconds 181 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #1: sent IKE_SA_INIT request 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: IMPAIR: suppressing retransmits; scheduling timeout in 60 seconds 182 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #1: sent IKE_AUTH request {auth=IKEv2 cipher=AES_GCM_16_256 integ=n/a prf=HMAC_SHA2_512 group=MODP2048} 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: IKEv2 mode peer ID is ID_FQDN: '@east' 003 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #1: authenticated using authby=secret 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: received INTERNAL_IP4_ADDRESS 192.0.2.1 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: received INTERNAL_IP4_DNS 1.2.3.4 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: received INTERNAL_IP4_DNS 8.8.8.8 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: up-client output: updating resolvconf 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: route-client output: Error: Peer netns reference is invalid. 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: negotiated connection [192.0.2.1-192.0.2.1:0-65535 0] -> [192.1.2.23-192.1.2.23:0-65535 0] 004 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: IPsec SA established tunnel mode {ESPinUDP=>0x527f6ccd <0x12789580 xfrm=AES_GCM_16_256-NONE NATOA=none NATD=192.1.2.23:4500 DPD=passive} ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# # AA see really weired route, I have to remove that ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# route -n Kernel IP routing table Destination Gateway Genmask Flags Metric Ref Use Iface 0.0.0.0 192.1.3.254 0.0.0.0 UG 0 0 0 eth0 192.1.2.23 0.0.0.0 255.255.255.255 UH 0 0 0 eth0 192.1.3.0 0.0.0.0 255.255.255.0 U 0 0 0 eth0 ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# route del -net 192.1.2.23 netmask 255.255.255.255 ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# # ipsec will configure 192.0.2.1 on eth0 ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ip addr show dev eth0 1849: eth0@if1850: mtu 1500 qdisc noqueue state UP group default qlen 1000 Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. link/ether 12:00:00:ab:cd:02 brd ff:ff:ff:ff:ff:ff link-netnsid 0 inet 192.1.3.209/24 scope global eth0 valid_lft forever preferred_lft forever ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ping -n -c 2 -I 192.0.2.1 192.1.2.23 PING 192.1.2.23 (192.1.2.23) from 192.0.2.1 : 56(84) bytes of data. 64 bytes from 192.1.2.23: icmp_seq=1 ttl=64 time=0.086 ms 64 bytes from 192.1.2.23: icmp_seq=2 ttl=64 time=0.089 ms --- 192.1.2.23 ping statistics --- 2 packets transmitted, 2 received, 0% packet loss, time 1016ms rtt min/avg/max/mdev = 0.086/0.087/0.089/0.001 ms ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ipsec whack --trafficstatus 006 #2: "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23, type=ESP, add_time=1604157885, inBytes=168, outBytes=168, id='@east', lease=192.0.2.1/32 ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ipsec auto --down westnet-eastnet-ipv4-psk-ikev2 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23: terminating SAs using this connection 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: deleting state (STATE_V2_ESTABLISHED_CHILD_SA) aged 1.640566s and sending notification 005 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: ESP traffic information: in=168B out=168B 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #1: IMPAIR: suppressing retransmits; scheduling timeout in 60 seconds 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #2: down-client output: restoring resolvconf 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23 #1: deleting state (STATE_V2_ESTABLISHED_IKE_SA) aged 1.685343s and sending notification 002 "westnet-eastnet-ipv4-psk-ikev2"[1] 192.1.2.23: deleting connection instance with peer 192.1.2.23 {isakmp=#0/ipsec=#0} 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. 002 unroute-client output: Error: Peer netns reference is invalid. ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# #check if the address, 192.0.2.1, is removed ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ip addr show dev eth0 1849: eth0@if1850: mtu 1500 qdisc noqueue state UP group default qlen 1000 Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. Error: Peer netns reference is invalid. link/ether 12:00:00:ab:cd:02 brd ff:ff:ff:ff:ff:ff link-netnsid 0 inet 192.1.3.209/24 scope global eth0 valid_lft forever preferred_lft forever ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# echo done done ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# : ==== cut ==== ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# : ==== tuc ==== ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# ../bin/check-for-core.sh ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp]# if [ -f /sbin/ausearch ]; then ausearch -r -m avc -ts recent ; fi ]0;root@swantest:/home/build/libreswan/testing/pluto/ikev2-48-nat-cp[root@road ikev2-48-nat-cp 1]# >>>>>>>>>>cutnonzeroexit>>>>>>>>>> exit status 1 final.sh 'if [ -f /sbin/ausearch ]; then ausearch -r -m avc -ts recent ; fi' <<<<<<<<<>>>>>>>>>cut>>>>>>>>>> done <<<<<<<<<