iptables -t nat -F nic # iptables -F nic # # A tunnel should have established with non-zero byte counters nic # ipsec whack --trafficstatus whack: Pluto is not running (no "/run/pluto/pluto.ctl") nic # grep "negotiated connection" /tmp/pluto.log nic # # you should see both RSA and NULL nic # grep IKEv2_AUTH_ /tmp/pluto.log nic # nic # ../bin/check-for-core.sh nic # if [ -f /sbin/ausearch ]; then ausearch -r -m avc -ts recent ; fi