[root@linuxpc2 etc]# ipsec statusall 000 Status of IKEv1 pluto daemon (strongSwan 4.6.2): 000 interface lo/lo ::1:500 000 interface lo/lo 127.0.0.1:500 000 interface eth1/eth1 10.10.10.6:500 000 interface eth2/eth2 10.125.40.64:500 000 interface virbr0/virbr0 192.168.122.1:500 000 %myid = '%any' 000 loaded plugins: aes des sha1 sha2 md5 random x509 pkcs1 pkcs8 pgp dnskey pem gmp hmac xauth attr kernel-netlink resolve 000 debug options: controlmore 000 000 "conn100": 10.10.10.0/24===10.10.10.6[C=IN, ST=BLR, O=Wipro Technologies, OU=RA, CN=ftm]:1/0...10.10.10.7[10.10.10.7]:1/0===10.10.10.0/24; erouted; eroute owner: #6 000 "conn100": CAs: "O=Wipro Technologies, OU=RA, E=karanjot.singh@wipro.com, L=BLR, ST=BLR, C=IN, CN=NSN ODC Test CA"...%any 000 "conn100": ike_life: 83376s; ipsec_life: 300s; rekey_margin: 180s; rekey_fuzz: 50%; keyingtries: 0 000 "conn100": dpd_action: restart; dpd_delay: 10s; dpd_timeout: 120s; 000 "conn100": policy: PUBKEY+ENCRYPT+TUNNEL+UP; prio: 24,24; interface: eth1; 000 "conn100": newest ISAKMP SA: #1; newest IPsec SA: #6; 000 "conn100": IKE proposal: 3DES_CBC/HMAC_SHA1/MODP_1024 000 "conn100": ESP proposal: 3DES_CBC/HMAC_SHA1/ 000 000 #6: "conn100" STATE_QUICK_I2 (sent QI2, IPsec SA established); EVENT_SA_REPLACE in 70s; newest IPSEC; eroute owner 000 #6: "conn100" esp.cd1fefd2@10.10.10.7 (0 bytes) esp.c361a998@10.10.10.6 (0 bytes); tunnel 000 #5: "conn100" STATE_QUICK_I2 (sent QI2, IPsec SA established); EVENT_SA_EXPIRE in 231s 000 #5: "conn100" esp.c1c20f9a@10.10.10.7 (0 bytes) esp.c9efac8d@10.10.10.6 (0 bytes); tunnel 000 #4: "conn100" STATE_QUICK_I2 (sent QI2, IPsec SA established); EVENT_SA_EXPIRE in 185s 000 #4: "conn100" esp.c1a2c0d0@10.10.10.7 (0 bytes) esp.c9adba01@10.10.10.6 (0 bytes); tunnel 000 #3: "conn100" STATE_QUICK_I2 (sent QI2, IPsec SA established); EVENT_SA_EXPIRE in 138s 000 #3: "conn100" esp.c96eb76e@10.10.10.7 (0 bytes) esp.c2df58a4@10.10.10.6 (0 bytes); tunnel 000 #2: "conn100" STATE_QUICK_I2 (sent QI2, IPsec SA established); EVENT_SA_EXPIRE in 85s 000 #2: "conn100" esp.c29abdd9@10.10.10.7 (0 bytes) esp.c11e8f13@10.10.10.6 (0 bytes); tunnel 000 #1: "conn100" STATE_MAIN_I4 (ISAKMP SA established); EVENT_SA_REPLACE in 82911s; newest ISAKMP; DPD active 000 Status of IKEv2 charon daemon (strongSwan 4.6.2): uptime: 3 minutes, since Jun 13 15:39:21 2012 malloc: sbrk 135168, mmap 0, used 76544, free 58624 worker threads: 8 of 16 idle, 7/1/0/0 working, job queue: 0/0/0/0, scheduled: 0 loaded plugins: aes des sha1 sha2 md5 random x509 revocation constraints pubkey pkcs1 pkcs8 pgp pem fips-prf gmp xcbc hmac attr kernel-netlink resolve socket-raw stroke updown Listening IP addresses: 10.10.10.6 10.125.40.64 192.168.122.1 Connections: Security Associations (0 up, 0 connecting): none