/testing/guestbin/swan-prep
east #
 ip addr show dev eth0 | grep 192.0.200.254 || ip addr add 192.0.200.254/24 dev eth0:1
east #
 ip addr show dev eth0 | grep 192.0.201.254 || ip addr add 192.0.201.254/24 dev eth0:1
east #
 ip route show scope global | grep 192.0.100.0 || ip route add 192.0.100.0/24 via 192.1.2.45  dev eth1
east #
 ip route show scope global | grep 192.0.101.0 || ip route add 192.0.101.0/24 via 192.1.2.45  dev eth1
east #
 ipsec start
Redirecting to: [initsystem]
east #
 ../../guestbin/wait-until-pluto-started
east #
 ipsec auto --add westnet-eastnet-a
002 "westnet-eastnet-a": added IKEv2 connection
east #
 ipsec auto --add westnet-eastnet-b
002 "westnet-eastnet-b": added IKEv2 connection
east #
 ipsec auto --add westnet-eastnet-c
002 "westnet-eastnet-c": added IKEv2 connection
east #
 echo "initdone"
initdone
east #
 ipsec whack --trafficstatus
006 #13: "westnet-eastnet-a", type=ESP, add_time=1234567890, inBytes=0, outBytes=0, id='@west'
006 #15: "westnet-eastnet-b", type=ESP, add_time=1234567890, inBytes=0, outBytes=0, id='@west'
006 #14: "westnet-eastnet-c", type=ESP, add_time=1234567890, inBytes=0, outBytes=0, id='@west'
east #
 ipsec status |grep STATE_
000 #13: "westnet-eastnet-a":500 STATE_V2_ESTABLISHED_CHILD_SA (established Child SA); REKEY in XXs; newest IPSEC; eroute owner; isakmp#17; idle;
000 #15: "westnet-eastnet-b":500 STATE_V2_ESTABLISHED_CHILD_SA (established Child SA); REKEY in XXs; newest IPSEC; eroute owner; isakmp#17; idle;
000 #14: "westnet-eastnet-c":500 STATE_V2_ESTABLISHED_CHILD_SA (established Child SA); REKEY in XXs; newest IPSEC; eroute owner; isakmp#17; idle;
000 #17: "westnet-eastnet-c":500 STATE_V2_ESTABLISHED_IKE_SA (established IKE SA); REKEY in XXs; newest ISAKMP; idle;
east #
 # there should be only one IKE_INIT exchange
east #
 grep "STATE_PARENT_I1 to " /tmp/pluto.log
east #
 grep "PARENT_R1 with status STF_OK" /tmp/pluto.log
| #1 complete_v2_state_transition() PARENT_R0->PARENT_R1 with status STF_OK
east #
 
