<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="de">
	<id>https://wiki.ixheim.de/index.php?action=history&amp;feed=atom&amp;title=Strongswan_swanctl_tool</id>
	<title>Strongswan swanctl tool - Versionsgeschichte</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.ixheim.de/index.php?action=history&amp;feed=atom&amp;title=Strongswan_swanctl_tool"/>
	<link rel="alternate" type="text/html" href="https://wiki.ixheim.de/index.php?title=Strongswan_swanctl_tool&amp;action=history"/>
	<updated>2026-06-29T06:58:23Z</updated>
	<subtitle>Versionsgeschichte dieser Seite in Xinux Wiki</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://wiki.ixheim.de/index.php?title=Strongswan_swanctl_tool&amp;diff=34593&amp;oldid=prev</id>
		<title>Thomas.will: Die Seite wurde neu angelegt: „=(re-)load connection configuration= *swanctl -c  loaded connection 'net'  successfully loaded 1 connections, 0 unloaded =(re-)load credentials= *swanctl -s  l…“</title>
		<link rel="alternate" type="text/html" href="https://wiki.ixheim.de/index.php?title=Strongswan_swanctl_tool&amp;diff=34593&amp;oldid=prev"/>
		<updated>2022-09-05T12:50:12Z</updated>

		<summary type="html">&lt;p&gt;Die Seite wurde neu angelegt: „=(re-)load connection configuration= *swanctl -c  loaded connection &amp;#039;net&amp;#039;  successfully loaded 1 connections, 0 unloaded =(re-)load credentials= *swanctl -s  l…“&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Neue Seite&lt;/b&gt;&lt;/p&gt;&lt;div&gt;=(re-)load connection configuration=&lt;br /&gt;
*swanctl -c&lt;br /&gt;
 loaded connection 'net'&lt;br /&gt;
 successfully loaded 1 connections, 0 unloaded&lt;br /&gt;
=(re-)load credentials=&lt;br /&gt;
*swanctl -s&lt;br /&gt;
 loaded ike secret 'ike-net'&lt;br /&gt;
=load credentials, authorities, pools and connections=&lt;br /&gt;
*swanctl -q&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
loaded ike secret 'ike-net'&lt;br /&gt;
no authorities found, 0 unloaded&lt;br /&gt;
no pools found, 0 unloaded&lt;br /&gt;
loaded connection 'net'&lt;br /&gt;
successfully loaded 1 connections, 0 unloaded&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=initiate a connection=&lt;br /&gt;
*swanctl --initiate --child net-1&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
[ENC] generating QUICK_MODE request 2770629131 [ HASH SA No KE ID ID ]&lt;br /&gt;
[NET] sending packet: from 10.84.252.40[500] to 10.84.252.32[500] (460 bytes)&lt;br /&gt;
[NET] received packet: from 10.84.252.32[500] to 10.84.252.40[500] (460 bytes)&lt;br /&gt;
[ENC] parsed QUICK_MODE response 2770629131 [ HASH SA No KE ID ID ]&lt;br /&gt;
[IKE] CHILD_SA net-1{2} established with SPIs cad409e6_i c02e7852_o and TS 10.83.40.0/24 === 10.83.32.0/24&lt;br /&gt;
[ENC] generating QUICK_MODE request 2770629131 [ HASH ]&lt;br /&gt;
[NET] sending packet: from 10.84.252.40[500] to 10.84.252.32[500] (76 bytes)&lt;br /&gt;
initiate completed successfully&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=terminate a connection=&lt;br /&gt;
*swanctl --terminate --child net-1&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
[IKE] closing CHILD_SA net-1{1} with SPIs c2b81202_i (0 bytes) c817d05d_o (0 bytes) and TS 10.83.40.0/24 === 10.83.32.0/24&lt;br /&gt;
[IKE] sending DELETE for ESP CHILD_SA with SPI c2b81202&lt;br /&gt;
[ENC] generating INFORMATIONAL_V1 request 328806429 [ HASH D ]&lt;br /&gt;
[NET] sending packet: from 10.84.252.40[500] to 10.84.252.32[500] (92 bytes)&lt;br /&gt;
[IKE] closing CHILD_SA net-1{2} with SPIs cad409e6_i (0 bytes) c02e7852_o (0 bytes) and TS 10.83.40.0/24 === 10.83.32.0/24&lt;br /&gt;
terminate completed successfully&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=list loaded configurations=&lt;br /&gt;
*swanctl --list-conn&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
net-net: IKEv1, reauthentication every 3600s&lt;br /&gt;
  local:  10.84.252.40&lt;br /&gt;
  remote: 10.84.252.32&lt;br /&gt;
  local pre-shared key authentication:&lt;br /&gt;
    id: 10.84.252.40&lt;br /&gt;
  remote pre-shared key authentication:&lt;br /&gt;
    id: 10.84.252.32&lt;br /&gt;
  net: TUNNEL, rekeying every 600s&lt;br /&gt;
    local:  10.83.40.0/24&lt;br /&gt;
    remote: 10.83.32.0/24&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=rekey an SA=&lt;br /&gt;
*swanctl --rekey --child net-1&lt;br /&gt;
 rekey completed successfully&lt;br /&gt;
&lt;br /&gt;
=log=&lt;br /&gt;
*swanctl --log&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
09[CFG] vici rekey CHILD_SA 'net-1'&lt;br /&gt;
09[ENC] generating QUICK_MODE request 2013598800 [ HASH SA No KE ID ID ]&lt;br /&gt;
09[NET] sending packet: from 10.84.252.40[500] to 10.84.252.32[500] (460 bytes)&lt;br /&gt;
13[NET] received packet: from 10.84.252.32[500] to 10.84.252.40[500] (460 bytes)&lt;br /&gt;
13[ENC] parsed QUICK_MODE response 2013598800 [ HASH SA No KE ID ID ]&lt;br /&gt;
13[IKE] CHILD_SA net{23} established with SPIs c6c7ffed_i cf1d5f57_o and TS 10.83.40.0/24 === 10.83.32.0/24&lt;br /&gt;
13[ENC] generating QUICK_MODE request 2013598800 [ HASH ]&lt;br /&gt;
13[NET] sending packet: from 10.84.252.40[500] to 10.84.252.32[500] (76 bytes)&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=list currently active IKE_SA=&lt;br /&gt;
*swanctl --list-sas&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
net: #3, ESTABLISHED, IKEv1, 41805ab3792c873b_i* 7f163baa33346484_r&lt;br /&gt;
  local  '10.84.252.40' @ 10.84.252.40[500]&lt;br /&gt;
  remote '10.84.252.32' @ 10.84.252.32[500]&lt;br /&gt;
  AES_CBC-256/HMAC_SHA2_256_128/PRF_HMAC_SHA2_256/MODP_2048&lt;br /&gt;
  established 867s ago, rekeying in 13421s&lt;br /&gt;
  net-1: #3, reqid 2, REKEYED, TUNNEL, ESP:AES_CBC-256/HMAC_SHA2_256_128/MODP_2048&lt;br /&gt;
    installed 49s ago, rekeying in 3275s, expires in 3912s&lt;br /&gt;
    in  ca334880,      0 bytes,     0 packets&lt;br /&gt;
    out c806412c,      0 bytes,     0 packets&lt;br /&gt;
    local  10.83.40.0/24&lt;br /&gt;
    remote 10.83.32.0/24&lt;br /&gt;
  net-1: #4, reqid 2, INSTALLED, TUNNEL, ESP:AES_CBC-256/HMAC_SHA2_256_128/MODP_2048&lt;br /&gt;
    installed 47s ago, rekeying in 3404s, expires in 3913s&lt;br /&gt;
    in  c5a10589,      0 bytes,     0 packets&lt;br /&gt;
    out c632c7bf,      0 bytes,     0 packets&lt;br /&gt;
    local  10.83.40.0/24&lt;br /&gt;
    remote 10.83.32.0/24&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
=Autostart=&lt;br /&gt;
*/etc/strongswan/strongswan.conf&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
charon {&lt;br /&gt;
 ...&lt;br /&gt;
 start-scripts {&lt;br /&gt;
   swanctl = /usr/sbin/swanctl -q&lt;br /&gt;
 }&lt;br /&gt;
 ...&lt;br /&gt;
}&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;/div&gt;</summary>
		<author><name>Thomas.will</name></author>
	</entry>
</feed>