generated hash-and-url files for rfc3779 certs
[strongswan.git] / testing / hosts / venus / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         plutodebug=control
5         crlcheckinterval=180
6         strictcrlpolicy=no
7         nat_traversal=yes
8         charonstart=no
9
10 conn %default
11         ikelifetime=60m
12         keylife=20m
13         rekeymargin=3m
14         keyingtries=1
15
16 conn nat-t
17         left=%defaultroute
18         leftcert=venusCert.pem
19         leftid=@venus.strongswan.org
20         leftfirewall=yes
21         right=PH_IP_SUN
22         rightid=@sun.strongswan.org
23         rightsubnet=10.2.0.0/16
24         auto=add