Instead of creating two IKE_SAs with different identities, this scenario uses simple labels to select the correct child config.
9 lines
259 B
Plaintext
9 lines
259 B
Plaintext
moon::systemctl stop strongswan
|
|
sun::systemctl stop strongswan
|
|
moon::iptables-restore < /etc/iptables.flush
|
|
sun::iptables-restore < /etc/iptables.flush
|
|
alice::iptables -t mangle -F OUTPUT
|
|
venus::iptables -t mangle -F OUTPUT
|
|
bob::iptables -t mangle -F OUTPUT
|
|
|