/testing/guestbin/swan-prep --userland strongswan --x509
east #
 strongswan starter --debug-all
Starting strongSwan X.X.X IPsec [starter]...
Loading config setup
Loading conn 'westnet-eastnet-ikev2'
  authby=rsasig
  auto=add
  fragmentation=yes
  keyexchange=ikev2
  left=192.1.2.45
  leftcert=/etc/strongswan/ipsec.d/certs/west.crt
  leftid=C=CA, ST=Ontario, O=Libreswan, OU=Test Department, CN=west.testing.libreswan.org, E=testing.libreswan.org
  leftrsasigkey=%cert
  leftsendcert=always
  leftsubnet=192.0.1.0/24
  right=192.1.2.23
  rightcert=/etc/strongswan/ipsec.d/certs/east.crt
  rightid=C=CA/ST=Ontario/O=Libreswan/OU=Test Department/CN=east.testing.libreswan.org/E=testing.libreswan.org
  rightrsasigkey=%cert
  rightsendcert=always
  rightsubnet=192.0.2.0/24
found netkey IPsec stack
east #
 echo "initdone"
initdone
east #
 if [ -f /var/run/pluto/pluto.pid ]; then ipsec look ; fi
east #
 if [ -f /var/run/charon.pid ]; then strongswan status && grep "invalid X509 hash length" /tmp/charon.log ; fi
Security Associations (1 up, 0 connecting):
westnet-eastnet-ikev2[2]: ESTABLISHED XXX second ago, 192.1.2.23[C=CA, ST=Ontario, L=Toronto, O=Libreswan, OU=Test Department, CN=east.testing.libreswan.org, E=testing@libreswan.org]...192.1.2.45[C=CA, ST=Ontario, L=Toronto, O=Libreswan, OU=Test Department, CN=west.testing.libreswan.org, E=testing@libreswan.org]
westnet-eastnet-ikev2{1}:  INSTALLED, TUNNEL, reqid 1, ESP SPIs: SPISPI_i SPISPI_o
westnet-eastnet-ikev2{1}:   192.0.2.0/24 === 192.0.1.0/24
east #
east #
 if [ -n "`ls /tmp/core* 2>/dev/null`" ]; then echo CORE FOUND; mv /tmp/core* OUTPUT/; fi
east #
 if [ -f /sbin/ausearch ]; then ausearch -r -m avc -ts recent ; fi

