ipsec_verify - see if FreeSWAN has been installed correctly
ipsecverify [--host name]
Invoked without argument,
examines the local system for a number of common system faults: IPsec not in path, no secrets file generated, pluto not running, and IPsec support not present in kernel (or IPsec module not loaded). If two or more interfaces are found, it performs checks relevant on an IPsec gateway: whether IP forwarding is allowed, and if so, whether MASQ or NAT rules are in play.
performs checks relevant to Opportunistic Encryption. It looks in forward DNS for a TXT record for the system's hostname, and in reverse DNS for a TXT record for the system's IP addresses. It checks whether the system has a public IP.
to look for a TXT record for
in forward and reverse DNS.