b26f81911a81ce3be5a51616650a6abd2577ca55
[strongswan.git] / testing / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         plutodebug=control
5         crlcheckinterval=180
6         strictcrlpolicy=no
7         charonstart=no
8
9 conn %default
10         ikelifetime=60m
11         keylife=20m
12         rekeymargin=3m
13         keyingtries=1
14         left=PH_IP_MOON
15         leftnexthop=%direct
16         leftcert=moonCert.pem
17         leftid=@moon.strongswan.org
18         leftfirewall=yes
19
20 conn net-net
21         leftsubnet=10.1.0.0/16
22         right=PH_IP_SUN
23         rightsubnet=10.2.0.0/16
24         rightid=@sun.strongswan.org
25         auto=add
26         
27 conn host-host
28         right=PH_IP_SUN
29         rightid=@sun.strongswan.org
30         auto=add
31
32 conn rw
33         leftsubnet=10.1.0.0/16
34         right=%any
35         auto=add