--- MASTER/testing/pluto/github-1210-ikev1-quick-mismatch/east.console.txt +++ OUTPUT/testing/pluto/github-1210-ikev1-quick-mismatch/east.console.txt @@ -14,37 +14,7 @@ ../../guestbin/ipsec-look.sh east NOW XFRM state: -src 192.1.3.209 dst 192.1.2.23 - proto esp spi 0xSPISPI reqid REQID mode tunnel - replay-window 0 flag af-unspec - auth-trunc hmac(sha1) 0xHASHKEY 96 - enc cbc(aes) 0xENCKEY - anti-replay esn context: - seq-hi 0x0, seq 0xXX, oseq-hi 0x0, oseq 0xXX - replay_window 128, bitmap-length 4 - 00000000 00000000 00000000 XXXXXXXX -src 192.1.2.23 dst 192.1.3.209 - proto esp spi 0xSPISPI reqid REQID mode tunnel - replay-window 0 flag af-unspec - auth-trunc hmac(sha1) 0xHASHKEY 96 - enc cbc(aes) 0xENCKEY - anti-replay esn context: - seq-hi 0x0, seq 0xXX, oseq-hi 0x0, oseq 0xXX - replay_window 128, bitmap-length 4 - 00000000 00000000 00000000 XXXXXXXX XFRM policy: -src 192.0.1.0/24 dst 192.0.2.0/24 - dir fwd priority PRIORITY ptype main - tmpl src 192.1.3.209 dst 192.1.2.23 - proto esp reqid REQID mode tunnel -src 192.0.1.0/24 dst 192.0.2.0/24 - dir in priority PRIORITY ptype main - tmpl src 192.1.3.209 dst 192.1.2.23 - proto esp reqid REQID mode tunnel -src 192.0.2.0/24 dst 192.0.1.0/24 - dir out priority PRIORITY ptype main - tmpl src 192.1.2.23 dst 192.1.3.209 - proto esp reqid REQID mode tunnel XFRM done IPSEC mangle TABLES iptables filter TABLE