iptables -t nat -F kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-64-same-route-twice\[root@nic ikev2-64-same-route-twice]# iptables -F kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-64-same-route-twice\[root@nic ikev2-64-same-route-twice]# iptables -t nat -L Chain PREROUTING (policy ACCEPT) target prot opt source destination Chain INPUT (policy ACCEPT) target prot opt source destination Chain OUTPUT (policy ACCEPT) target prot opt source destination Chain POSTROUTING (policy ACCEPT) target prot opt source destination kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-64-same-route-twice\[root@nic ikev2-64-same-route-twice]# : ==== end ==== kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-64-same-route-twice\[root@nic ikev2-64-same-route-twice]# ../bin/check-for-core.sh kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-64-same-route-twice\[root@nic ikev2-64-same-route-twice]# if [ -f /sbin/ausearch ]; then ausearch -r -m avc -ts recent ; fi type=AVC msg=audit(1566824781.750:169760): avc: denied { write } for pid=5361 comm="ip" path="/tmp/pluto.log" dev="dm-0" ino=942309374 scontext=unconfined_u:system_r:ifconfig_t:s0 tcontext=unconfined_u:object_r:container_file_t:s0:c718,c778 tclass=file permissive=1 type=AVC msg=audit(1566825038.248:179301): avc: denied { write } for pid=11296 comm="ip" path="/tmp/pluto.log" dev="dm-0" ino=330600195 scontext=unconfined_u:system_r:ifconfig_t:s0 tcontext=unconfined_u:object_r:container_file_t:s0:c718,c778 tclass=file permissive=1 kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-64-same-route-twice\[root@nic ikev2-64-same-route-twice]# : ==== end ==== kroot@swantest:/home/build/libreswan/testing/pluto/ikev2-64-same-route-twice\[root@nic ikev2-64-same-route-twice]#