?? japan-console.txt
字號:
japan:~# set -xjapan:~# CFG="--config /testing/pluto/co-terminal-02/japan.conf" export CFG+ CFG=--config /testing/pluto/co-terminal-02/japan.conf+ export CFGjapan:~# : just for when we run it interactively + : just for when we run it interactivelyjapan:~# ipsec setup $CFG stop+ ipsec setup --config /testing/pluto/co-terminal-02/japan.conf stopipsec_setup: Stopping Openswan IPsec...ipsec_setup: stop ordered, but IPsec does not appear to be running!ipsec_setup: doing cleanup anyway...japan:~# rndc stop >/dev/null 2>&1+ rndc stopjapan:~# named+ namedjapan:~# : confirm that my key is present in DNS+ : confirm that my key is present in DNSjapan:~# dig 2.1.0.192.in-addr.arpa. key+ dig 2.1.0.192.in-addr.arpa. key; <<>> DiG VERSION<<>> 2.1.0.192.in-addr.arpa. key;; global options: printcmd;; Got answer:;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 12345;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 2, ADDITIONAL: 2;; QUESTION SECTION:;2.1.0.192.in-addr.arpa. IN KEY;; ANSWER SECTION:2.1.0.192.in-addr.arpa. 604800 IN KEY 16896 4 1 AQOSRxzbj35bnNsMbTeQ81+tGulyaYNR0HHt25tzzSrCrQGm9YGMFpA4 50Aq/P3A/Tb4DO4qCX03M4aZZ6RpfToMPKxZQSPrOe0cv+lkCxf6IlA2 h2CG7b8m6slVOF/fOhQrnjDDusQiv0RZFSu6k4J3F8VndVXHAEPU9aF2 F7WIuQ==;; AUTHORITY SECTION:1.0.192.in-addr.arpa. 604800 IN NS NSSERVER1.0.192.in-addr.arpa. 604800 IN NS NSSERVER;; ADDITIONAL SECTION:nic.uml.freeswan.org. 604800 IN A 192.1.2.254beet.uml.freeswan.org. 604800 IN A 192.1.2.129;; Query time: 25 msec;; SERVER: 192.1.2.254#53(192.1.2.254);; WHEN: DATE;; MSG SIZE rcvd: SIZEjapan:~# dig japan.uml.freeswan.org. key+ dig japan.uml.freeswan.org. key; <<>> DiG VERSION<<>> japan.uml.freeswan.org. key;; global options: printcmd;; Got answer:;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 12345;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 2, ADDITIONAL: 2;; QUESTION SECTION:;japan.uml.freeswan.org. IN KEY;; ANSWER SECTION:japan.uml.freeswan.org. 604800 IN KEY 16896 4 1 AQOSRxzbj35bnNsMbTeQ81+tGulyaYNR0HHt25tzzSrCrQGm9YGMFpA4 50Aq/P3A/Tb4DO4qCX03M4aZZ6RpfToMPKxZQSPrOe0cv+lkCxf6IlA2 h2CG7b8m6slVOF/fOhQrnjDDusQiv0RZFSu6k4J3F8VndVXHAEPU9aF2 F7WIuQ==;; AUTHORITY SECTION:uml.freeswan.org. 604800 IN NS NSSERVERuml.freeswan.org. 604800 IN NS NSSERVER;; ADDITIONAL SECTION:nic.root-servers.net. 604800 IN A 192.1.2.254carrot.uml.freeswan.org. 604800 IN A 192.1.2.130;; Query time: 25 msec;; SERVER: 192.1.2.254#53(192.1.2.254);; WHEN: DATE;; MSG SIZE rcvd: SIZEjapan:~# ipsec setup $CFG start+ ipsec setup --config /testing/pluto/co-terminal-02/japan.conf startipsec_setup: Starting Openswan IPsec VERSIONjapan:~# sleep 2+ sleep 2japan:~# ipsec eroute+ ipsec eroute0 0.0.0.0/0 -> 0.0.0.0/0 => %trapjapan:~# /testing/pluto/co-terminal-02/eroutewait.sh trap+ /testing/pluto/co-terminal-02/eroutewait.sh trapjapan:~# ipsec auto $CFG --delete packetdefault+ ipsec auto --config /testing/pluto/co-terminal-02/japan.conf --delete packetdefaultjapan:~# ipsec auto $CFG --add japan--wavesec+ ipsec auto --config /testing/pluto/co-terminal-02/japan.conf --add japan--wavesecjapan:~# ipsec whack --listen+ ipsec whack --listen002 listening for IKE messages002 forgetting secrets002 loading secrets from "/etc/ipsec.secrets"japan:~# ipsec auto $CFG --add clear+ ipsec auto --config /testing/pluto/co-terminal-02/japan.conf --add clearjapan:~# ipsec whack --listen+ ipsec whack --listen002 listening for IKE messages002 forgetting secrets002 loading secrets from "/etc/ipsec.secrets"002 loading group "/etc/ipsec.d/policies/clear"japan:~# ipsec auto $CFG --route clear+ ipsec auto --config /testing/pluto/co-terminal-02/japan.conf --route clearjapan:~# /testing/pluto/co-terminal-02/eroutewait.sh pass+ /testing/pluto/co-terminal-02/eroutewait.sh passjapan:~# ipsec whack --debug-oppo --debug-control --debug-controlmore + ipsec whack --debug-oppo --debug-control --debug-controlmorejapan:~# ipsec auto $CFG --add private-or-clear+ ipsec auto --config /testing/pluto/co-terminal-02/japan.conf --add private-or-clearjapan:~# ipsec whack --listen+ ipsec whack --listen002 listening for IKE messages002 forgetting secrets002 loading secrets from "/etc/ipsec.secrets"002 loading group "/etc/ipsec.d/policies/private-or-clear"002 loading group "/etc/ipsec.d/policies/clear"japan:~# ipsec auto $CFG --route private-or-clear+ ipsec auto --config /testing/pluto/co-terminal-02/japan.conf --route private-or-clearjapan:~# sh /testing/pluto/co-terminal-02/eroutewait.sh trap+ sh /testing/pluto/co-terminal-02/eroutewait.sh trapjapan:~# ipsec eroute | sed -e 's/^[0-9]* /n /' -e 's/tun0x..../tun0xABCD/'+ ipsec eroute+ sed -e 's/^[0-9]* /n /' -e s/tun0x..../tun0xABCD/n 192.0.1.2/32 -> 0.0.0.0/0 => %trapn 192.0.1.2/32 -> 192.1.2.129/32 => %passn 192.0.1.2/32 -> 192.1.2.130/32 => %passn 192.0.1.2/32 -> 192.1.2.254/32 => %passn 192.0.1.2/32 -> 192.1.3.254/32 => %passjapan:~# ipsec auto $CFG --up japan--wavesec+ ipsec auto --config /testing/pluto/co-terminal-02/japan.conf --up japan--wavesec104 "japan--wavesec" #1: STATE_MAIN_I1: initiate003 "japan--wavesec" #1: received Vendor ID payload [Openswan 003 "japan--wavesec" #1: received Vendor ID payload [Dead Peer Detection]106 "japan--wavesec" #1: STATE_MAIN_I2: sent MI2, expecting MR2108 "japan--wavesec" #1: STATE_MAIN_I3: sent MI3, expecting MR3004 "japan--wavesec" #1: STATE_MAIN_I4: ISAKMP SA established {auth=OAKLEY_RSA_SIG cipher=oakley_3des_cbc_192 prf=oakley_md5 group=modp1536}117 "japan--wavesec" #2: STATE_QUICK_I1: initiate003 "japan--wavesec" #2: conflict on eroute (), switching eroute to private-or-clear#0.0.0.0/0 and linking japan--wavesec004 "japan--wavesec" #2: STATE_QUICK_I2: sent QI2, IPsec SA establishedjapan:~# ipsec eroute | sed -e 's/^[0-9]* /n /' -e 's/tun0x..../tun0xABCD/'+ ipsec eroute+ sed -e 's/^[0-9]* /n /' -e s/tun0x..../tun0xABCD/n 192.0.1.2/32 -> 0.0.0.0/0 => %trapn 192.0.1.2/32 -> 192.1.2.129/32 => %passn 192.0.1.2/32 -> 192.1.2.130/32 => %passn 192.0.1.2/32 -> 192.1.2.254/32 => %passn 192.0.1.2/32 -> 192.1.3.254/32 => %passjapan:~# ping -c 1 1.2.3.4+ ping -c 1 1.2.3.4PING 1.2.3.4 (1.2.3.4): 56 data bytes64 bytes from 1.2.3.4: icmp_seq=0 ttl=257 time=999 ms--- 1.2.3.4 ping statistics ---1 packets transmitted, 1 packets received, 0% packet lossround-trip min/avg/max = 3.1/4.5/9.26 msjapan:~# /testing/pluto/co-terminal-02/eroutewait.sh tun0+ /testing/pluto/co-terminal-02/eroutewait.sh tun0japan:~# ipsec eroute | sed -e 's/^[0-9]* /n /' -e 's/tun0x..../tun0xABCD/'+ ipsec eroute+ sed -e 's/^[0-9]* /n /' -e s/tun0x..../tun0xABCD/n 192.0.1.2/32 -> 0.0.0.0/0 => %trapn 192.0.1.2/32 -> 1.2.3.4/32 => tun0xABCD@192.0.1.254n 192.0.1.2/32 -> 192.1.2.129/32 => %passn 192.0.1.2/32 -> 192.1.2.130/32 => %passn 192.0.1.2/32 -> 192.1.2.254/32 => %passn 192.0.1.2/32 -> 192.1.3.254/32 => %passjapan:~# ping -c 1 1.2.3.4+ ping -c 1 1.2.3.4PING 1.2.3.4 (1.2.3.4): 56 data bytes64 bytes from 1.2.3.4: icmp_seq=0 ttl=257 time=999 ms--- 1.2.3.4 ping statistics ---1 packets transmitted, 1 packets received, 0% packet lossround-trip min/avg/max = 3.1/4.5/9.26 msjapan:~# sleep 1+ sleep 1japan:~# ping -c 1 192.0.2.2+ ping -c 1 192.0.2.2PING 192.0.2.2 (192.0.2.2): 56 data bytes64 bytes from 192.0.2.2: icmp_seq=0 ttl=257 time=999 ms--- 192.0.2.2 ping statistics ---1 packets transmitted, 1 packets received, 0% packet lossround-trip min/avg/max = 3.1/4.5/9.26 msjapan:~# /testing/pluto/co-terminal-02/eroutewait.sh 192.1.2.23+ /testing/pluto/co-terminal-02/eroutewait.sh 192.1.2.23japan:~# ping -c 1 192.0.2.2+ ping -c 1 192.0.2.2PING 192.0.2.2 (192.0.2.2): 56 data bytes64 bytes from 192.0.2.2: icmp_seq=0 ttl=257 time=999 ms--- 192.0.2.2 ping statistics ---1 packets transmitted, 1 packets received, 0% packet lossround-trip min/avg/max = 3.1/4.5/9.26 msjapan:~# ipsec eroute | sed -e 's/^[0-9]* /n /' -e 's/tun0x..../tun0xABCD/'+ ipsec eroute+ sed -e 's/^[0-9]* /n /' -e s/tun0x..../tun0xABCD/n 192.0.1.2/32 -> 0.0.0.0/0 => %trapn 192.0.1.2/32 -> 1.2.3.4/32 => tun0xABCD@192.0.1.254n 192.0.1.2/32 -> 192.0.2.2/32 => tun0xABCD@192.1.2.23n 192.0.1.2/32 -> 192.1.2.129/32 => %passn 192.0.1.2/32 -> 192.1.2.130/32 => %passn 192.0.1.2/32 -> 192.1.2.254/32 => %passn 192.0.1.2/32 -> 192.1.3.254/32 => %passjapan:~# echo done+ echo donedonejapan:~# + : ==== tuc ==== :
?? 快捷鍵說明
復(fù)制代碼
Ctrl + C
搜索代碼
Ctrl + F
全屏模式
F11
切換主題
Ctrl + Shift + D
顯示快捷鍵
?
增大字號
Ctrl + =
減小字號
Ctrl + -