2e84f2e6a99c4ebf1489ecfc36ba2c410db17369
[strongswan.git] / testing / tests / gcrypt / rw-cert-ikev2 / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         crlcheckinterval=180
5         strictcrlpolicy=no
6         plutostart=no
7
8 conn %default
9         ikelifetime=60m
10         keylife=20m
11         rekeymargin=3m
12         keyingtries=1
13         keyexchange=ikev2
14         ike=aes256-sha256-modp2048,3des-sha1-modp1536!
15
16 conn rw
17         left=PH_IP_MOON
18         leftcert=moonCert.pem
19         leftid=@moon.strongswan.org
20         leftsubnet=10.1.0.0/16
21         leftfirewall=yes
22         right=%any
23         auto=add