9512fb7e5d98eff12ca9d283aa201e1269f39065
[strongswan.git] / testing / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         plutodebug=control
5         crlcheckinterval=180
6         strictcrlpolicy=no
7         charonstart=no
8
9 conn %default
10         ikelifetime=60m
11         keylife=20m
12         rekeymargin=3m
13         keyingtries=1
14         left=PH_IP_MOON
15         leftcert=moonCert.pem
16         leftid=@moon.strongswan.org
17         leftfirewall=yes
18
19 conn net-net
20         leftsubnet=10.1.0.0/16
21         right=PH_IP_SUN
22         rightsubnet=10.2.0.0/16
23         rightid=@sun.strongswan.org
24         auto=add
25         
26 conn host-host
27         right=PH_IP_SUN
28         rightid=@sun.strongswan.org
29         auto=add
30
31 conn rw
32         leftsubnet=10.1.0.0/16
33         right=%any
34         auto=add