000 interface eth1/eth1 fec1::1:500 000 interface eth0/eth0 fec0::1:500 000 interface lo/lo ::1:500 000 interface lo/lo 127.0.0.1:500 000 interface eth0/eth0 192.168.0.1:500 000 interface eth1/eth1 10.1.0.1:500 000 %myid = (none) 000 debug control 000 000 "alice": 10.1.0.10/32===192.168.0.1[@moon.strongswan.org]...%any; unrouted; eroute owner: #0 000 "alice": CAs: 'C=CH, O=Linux strongSwan, CN=strongSwan Root CA'...'C=CH, O=Linux strongSwan, OU=Research, CN=Research CA' 000 "alice": ike_life: 3600s; ipsec_life: 1200s; rekey_margin: 180s; rekey_fuzz: 100%; keyingtries: 1 000 "alice": policy: RSASIG+ENCRYPT+TUNNEL+PFS; prio: 32,32; interface: eth0; 000 "alice": newest ISAKMP SA: #0; newest IPsec SA: #0; 000 "alice": IKE algorithms wanted: 5_000-2-5, 5_000-2-2, 5_000-1-5, 5_000-1-2, 000 "alice": IKE algorithms found: 5_192-2_160-5, 5_192-2_160-2, 5_192-1_128-5, 5_192-1_128-2, 000 "alice": ESP algorithms wanted: 3_000-2, 3_000-1, 000 "alice": ESP algorithms loaded: 3_192-2_160, 3_192-1_128, 000 "alice"[1]: 10.1.0.10/32===192.168.0.1[@moon.strongswan.org]...192.168.0.100[C=CH, O=Linux strongSwan, OU=Research, CN=carol@strongswan.org]; erouted; eroute owner: #2 000 "alice"[1]: CAs: 'C=CH, O=Linux strongSwan, CN=strongSwan Root CA'...'C=CH, O=Linux strongSwan, OU=Research, CN=Research CA' 000 "alice"[1]: ike_life: 3600s; ipsec_life: 1200s; rekey_margin: 180s; rekey_fuzz: 100%; keyingtries: 1 000 "alice"[1]: policy: RSASIG+ENCRYPT+TUNNEL+PFS; prio: 32,32; interface: eth0; 000 "alice"[1]: newest ISAKMP SA: #1; newest IPsec SA: #2; 000 "alice"[1]: IKE algorithms wanted: 5_000-2-5, 5_000-2-2, 5_000-1-5, 5_000-1-2, 000 "alice"[1]: IKE algorithms found: 5_192-2_160-5, 5_192-2_160-2, 5_192-1_128-5, 5_192-1_128-2, 000 "alice"[1]: IKE algorithm newest: 3DES_CBC_192-SHA-MODP1536 000 "alice"[1]: ESP algorithms wanted: 3_000-2, 3_000-1, 000 "alice"[1]: ESP algorithms loaded: 3_192-2_160, 3_192-1_128, 000 "alice"[1]: ESP algorithm newest: 3DES_0-HMAC_SHA1; pfsgroup= 000 "venus": 10.1.0.20/32===192.168.0.1[@moon.strongswan.org]...%any; unrouted; eroute owner: #0 000 "venus": CAs: 'C=CH, O=Linux strongSwan, CN=strongSwan Root CA'...'C=CH, O=Linux strongSwan, OU=Sales, CN=Sales CA' 000 "venus": ike_life: 3600s; ipsec_life: 1200s; rekey_margin: 180s; rekey_fuzz: 100%; keyingtries: 1 000 "venus": policy: RSASIG+ENCRYPT+TUNNEL+PFS; prio: 32,32; interface: eth0; 000 "venus": newest ISAKMP SA: #0; newest IPsec SA: #0; 000 "venus": IKE algorithms wanted: 5_000-2-5, 5_000-2-2, 5_000-1-5, 5_000-1-2, 000 "venus": IKE algorithms found: 5_192-2_160-5, 5_192-2_160-2, 5_192-1_128-5, 5_192-1_128-2, 000 "venus": ESP algorithms wanted: 3_000-2, 3_000-1, 000 "venus": ESP algorithms loaded: 3_192-2_160, 3_192-1_128, 000 "venus"[3]: 10.1.0.20/32===192.168.0.1[@moon.strongswan.org]...192.168.0.200[C=CH, O=Linux strongSwan, OU=Sales, CN=dave@strongswan.org]; erouted; eroute owner: #4 000 "venus"[3]: CAs: 'C=CH, O=Linux strongSwan, CN=strongSwan Root CA'...'C=CH, O=Linux strongSwan, OU=Sales, CN=Sales CA' 000 "venus"[3]: ike_life: 3600s; ipsec_life: 1200s; rekey_margin: 180s; rekey_fuzz: 100%; keyingtries: 1 000 "venus"[3]: policy: RSASIG+ENCRYPT+TUNNEL+PFS; prio: 32,32; interface: eth0; 000 "venus"[3]: newest ISAKMP SA: #3; newest IPsec SA: #4; 000 "venus"[3]: IKE algorithms wanted: 5_000-2-5, 5_000-2-2, 5_000-1-5, 5_000-1-2, 000 "venus"[3]: IKE algorithms found: 5_192-2_160-5, 5_192-2_160-2, 5_192-1_128-5, 5_192-1_128-2, 000 "venus"[3]: IKE algorithm newest: 3DES_CBC_192-SHA-MODP1536 000 "venus"[3]: ESP algorithms wanted: 3_000-2, 3_000-1, 000 "venus"[3]: ESP algorithms loaded: 3_192-2_160, 3_192-1_128, 000 "venus"[3]: ESP algorithm newest: 3DES_0-HMAC_SHA1; pfsgroup= 000 000 #2: "alice"[1] 192.168.0.100 STATE_QUICK_R2 (IPsec SA established); EVENT_SA_REPLACE in 953s; newest IPSEC; eroute owner 000 #2: "alice"[1] 192.168.0.100 esp.5fa676b8@192.168.0.100 (0 bytes) esp.4e4d55a8@192.168.0.1 (0 bytes); tunnel 000 #1: "alice"[1] 192.168.0.100 STATE_MAIN_R3 (sent MR3, ISAKMP SA established); EVENT_SA_REPLACE in 3350s; newest ISAKMP 000 #4: "venus"[3] 192.168.0.200 STATE_QUICK_R2 (IPsec SA established); EVENT_SA_REPLACE in 1035s; newest IPSEC; eroute owner 000 #4: "venus"[3] 192.168.0.200 esp.ef8a0a5c@192.168.0.200 (0 bytes) esp.670433cd@192.168.0.1 (0 bytes); tunnel 000 #3: "venus"[3] 192.168.0.200 STATE_MAIN_R3 (sent MR3, ISAKMP SA established); EVENT_SA_REPLACE in 3433s; newest ISAKMP 000