iptables -t nat -F
nic #
 iptables -F
nic #
 ipsec whack --trafficstatus
whack: Pluto is not running (no "/run/pluto/pluto.ctl")
nic #
 # A tunnel should have established
nic #
 grep "negotiated connection" /tmp/pluto.log
nic #
 # you should see both RSA and NULL
nic #
 grep IKEv2_AUTH_ /tmp/pluto.log
nic #
nic #
 ../bin/check-for-core.sh
nic #
 if [ -f /sbin/ausearch ]; then ausearch -r -m avc -ts recent ; fi