- import of strongswan-2.7.0
[strongswan.git] / testing / hosts / alice / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 version 2.0     # conforms to second version of ipsec.conf specification
4
5 config setup
6         plutodebug=control
7         crlcheckinterval=180
8         strictcrlpolicy=no
9         nat_traversal=yes
10
11 conn %default
12         ikelifetime=60m
13         keylife=20m
14         rekeymargin=3m
15         keyingtries=1
16                 
17 conn nat-t
18         left=%defaultroute
19         leftcert=aliceCert.pem
20         leftid=alice@strongswan.org
21         leftfirewall=yes
22         right=PH_IP_SUN
23         rightid=@sun.strongswan.org
24         rightsubnet=10.2.0.0/16
25         auto=add