20f1341e145c1da9c2fb528ba4f40c2b11ee9081
[strongswan.git] / testing / tests / gcrypt-ikev2 / rw-cert / hosts / dave / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         plutostart=no
5
6 conn %default
7         ikelifetime=60m
8         keylife=20m
9         rekeymargin=3m
10         keyingtries=1
11         keyexchange=ikev2
12         ike=aes256-sha512-modp2048!
13         esp=aes256-sha512!
14
15 conn home
16         left=PH_IP_DAVE
17         leftcert=daveCert.pem
18         leftid=dave@strongswan.org
19         leftfirewall=yes
20         right=PH_IP_MOON
21         rightid=@moon.strongswan.org
22         rightsubnet=10.1.0.0/16
23         auto=add