east:~# route delete -net 192.0.1.0 netmask 255.255.255.0 gw 192.1.2.45 east:~# named east:~# ipsec setup start ipsec_setup: Starting Libreswan IPsec VERSION east:~# /testing/pluto/bin/wait-until-policy-loaded east:~# ipsec auto --add us-private-or-clear-all east:~# ipsec auto --add private-or-clear-all east:~# ipsec whack --listen 002 listening for IKE messages 002 forgetting secrets 002 loading secrets from "/etc/ipsec.secrets" 002 loaded private key for keyid: PPK_RSA:ADEADBEEF 002 loaded private key for keyid: PPK_RSA:ADEADBEEF 002 loading group "/etc/ipsec.d/policies/private-or-clear-all" 002 loading group "/etc/ipsec.d/policies/us-private-or-clear-all" east:~# dig -x 192.0.1.2 txt ; <<>> DiG VERSION<<>> -x 192.0.1.2 txt ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 12345 ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 0 ;; QUESTION SECTION: ;2.1.0.192.in-addr.arpa. IN TXT ;; ANSWER SECTION: 2.1.0.192.in-addr.arpa. 604800 IN TXT "X-IPsec-Server(10)=192.0.1.2 AQOSRxzbj35bnNsMbTeQ81+tGulyaYNR0HHt25tzzSrCrQGm9YGMFpA450Aq/P3A/Tb4DO4qCX03M4aZZ6RpfToMPKxZQSPrOe0cv+lkCxf6IlA2h2CG7b8m6slVOF/fOhQrnjDDusQiv0RZFSu6k4J3F8VndVXHAEPU9aF2F7WIuQ==" ;; Query time: 25 msec ;; SERVER: 127.0.0.1#53(127.0.0.1) ;; WHEN: DATE ;; MSG SIZE rcvd: SIZE east:~# dig -x 192.1.2.45 key ; <<>> DiG VERSION<<>> -x 192.1.2.45 key ;; global options: printcmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 12345 ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 0 ;; QUESTION SECTION: ;45.2.1.192.in-addr.arpa. IN KEY ;; ANSWER SECTION: 45.2.1.192.in-addr.arpa. 604800 IN KEY 16896 4 1 AQNzGEFs18VKT00sA+4p+GUKn9C55PYuPQca6C+9Qhj0jfMdQnTRTDLe I+lp9TnidHH7fVpq+PkfiF2LHlZtDwMurLlwzbNOghlEYKfQ080WlOTT UAmOLhAzH28MF70q3hzq0m5fCaVZWtxcV+LfHWdxceCkjBUSaTFtR2W1 2urFCBz+SB3+OM33aeIbfHxmck2yzhJ8xyMods5kF3ek/RZlFvgN8VqB dcFVrZwTh0mXDCGN12HNFixL6FzQ1jQKerKBbjb0m/IPqugvpVPWVIUa jUpLMEmi1FAXc1mFZE9x1SFuSr0NzYIu2ZaHfvsAZY5oN+I+R2oC67fU CjgxY+t7 ;; Query time: 25 msec ;; SERVER: 127.0.0.1#53(127.0.0.1) ;; WHEN: DATE ;; MSG SIZE rcvd: SIZE east:~# east:~# east:~#