/testing/guestbin/swan-prep --hostkeys
Creating NSS database containing host keys
east #
 ipsec start
Redirecting to: [initsystem]
east #
 ../../guestbin/wait-until-pluto-started
east #
 ../../guestbin/ipsec-add.sh west-east-c west-east-b west-east
"west-east-c": added IKEv1 connection
"west-east-b": added IKEv1 connection
"west-east": added IKEv1 connection
east #
 echo "initdone"
initdone
east #
 ipsec down west-east
"west-east": terminating SAs using this connection
"west-east" #2: deleting IPsec SA (QUICK_R2) and sending notification using ISAKMP SA "west-east-c" #1
"west-east" #2: ESP traffic information: in=0B out=0B
east #
 # both east and west should still have one IKE SA #1
east #
 ipsec showstates
#5: "west-east":500 STATE_QUICK_R0 (expecting Quick Mode request); CRYPTO_TIMEOUT in XXs; lastdpd=-1s(seq in:0 out:0); crypto_calculating;
#3: "west-east-b":500 STATE_QUICK_R2 (IPsec SA established); REPLACE in XXs; newest; eroute owner; ISAKMP SA #1; idle;
#3: "west-east-b" esp.ESPSPIi@192.1.2.45 esp.ESPSPIi@192.1.2.23 tun.0@192.1.2.45 tun.0@192.1.2.23 Traffic: ESPin=0B ESPout=0B ESPmax=2^63B 
#1: "west-east-c":500 STATE_MAIN_R3 (ISAKMP SA established); REPLACE in XXs; newest; lastdpd=-1s(seq in:0 out:0); idle;
#4: "west-east-c":500 STATE_QUICK_R2 (IPsec SA established); REPLACE in XXs; newest; eroute owner; ISAKMP SA #1; idle;
#4: "west-east-c" esp.ESPSPIi@192.1.2.45 esp.ESPSPIi@192.1.2.23 tun.0@192.1.2.45 tun.0@192.1.2.23 Traffic: ESPin=0B ESPout=0B ESPmax=2^63B 
east #
 
