#once unbound work properly replace the next lines kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# sed -i 's/5353/53/' /etc/nsd/nsd.conf kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# #/testing/guestbin/swan-prep --dnssec kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# : ==== cut ==== kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# setenforce Permissive kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# systemctl start nsd-keygen kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# /usr/sbin/nsd > /dev/null 2> /dev/null kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# dig +short @127.0.0.1 33.3.1.192.IN-ADDR.ARPA. IPSECKEY kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# dig +short @127.0.0.1 23.2.1.192.IN-ADDR.ARPA. IPSECKEY kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# dig +short @192.1.2.254 chaos version.server txt "NSD 4.1.24" kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# echo done done kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# : ==== end ==== kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# # both ends should have two public keys.The second from reverse dns kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08]# ipsec auto --listpubkeys whack: Pluto is not running (no "/run/pluto/pluto.ctl") kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-55-ipseckey-08\[root@nic ikev2-55-ipseckey-08 33]# >>>>>>>>>>cutnonzeroexit>>>>>>>>>> exit status 33 final.sh 'ipsec auto --listpubkeys' <<<<<<<<<>>>>>>>>>cutnonzeroexit>>>>>>>>>> exit status 33 final.sh 'ipsec whack --trafficstatus' <<<<<<<<<>>>>>>>>>cutnonzeroexit>>>>>>>>>> exit status 33 final.sh 'ipsec auto --status' <<<<<<<<<