mirror of
https://github.com/strongswan/strongswan.git
synced 2025-10-05 00:00:45 -04:00
While the alias is available after enabling the unit, we don't actually do that in our testing environment (adding a symlink manually would work too, then again, why not just use the proper name?).
22 lines
830 B
Plaintext
22 lines
830 B
Plaintext
moon::iptables-restore < /etc/iptables.rules
|
|
carol::iptables-restore < /etc/iptables.rules
|
|
dave::iptables-restore < /etc/iptables.rules
|
|
winnetou::ip route add 10.1.0.0/16 via 192.168.0.1
|
|
alice::cat /etc/tnc_config
|
|
carol::cat /etc/tnc_config
|
|
dave::cat /etc/tnc_config
|
|
carol::echo 0 > /proc/sys/net/ipv4/ip_forward
|
|
dave::echo aabbccddeeff11223344556677889900 > /var/lib/dbus/machine-id
|
|
alice::rm /etc/swanctl/rsa/aliceKey.pem
|
|
alice::rm /etc/swanctl/x509/aliceCert.pem
|
|
alice::systemctl start strongswan
|
|
moon::systemctl start strongswan
|
|
carol::systemctl start strongswan
|
|
dave::systemctl start strongswan
|
|
moon::expect-connection rw-allow
|
|
moon::expect-connection rw-isolate
|
|
carol::expect-connection home
|
|
carol::swanctl --initiate --child home 2> /dev/null
|
|
dave::expect-connection home
|
|
dave::swanctl --initiate --child home 2> /dev/null
|