upgraded gcrypt-ikev2 scenarios to 5.0.0
[strongswan.git] / testing / tests / gcrypt-ikev2 / rw-cert / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         plutostart=no
5
6 conn %default
7         ikelifetime=60m
8         keylife=20m
9         rekeymargin=3m
10         keyingtries=1
11         keyexchange=ikev2
12         ike=aes256-sha512-modp2048,3des-sha1-modp1536!
13         esp=aes256-sha512,3des-sha1!
14
15 conn rw
16         left=PH_IP_MOON
17         leftcert=moonCert.pem
18         leftid=@moon.strongswan.org
19         leftsubnet=10.1.0.0/16
20         leftfirewall=yes
21         right=%any
22         auto=add