use new certificates
[strongswan.git] / testing / tests / ikev1 / attr-cert / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         plutodebug=control
5         crlcheckinterval=180
6         strictcrlpolicy=no
7         charonstart=no
8
9 conn %default
10         ikelifetime=60m
11         keylife=20m
12         rekeymargin=3m
13         keyingtries=1
14         left=PH_IP_MOON
15         leftcert=moonCert.pem
16         leftid=@moon.strongswan.org
17
18 conn alice
19         leftsubnet=PH_IP_ALICE/32
20         right=%any
21         rightgroups=Research
22         auto=add
23         
24 conn venus
25         leftsubnet=PH_IP_VENUS/32
26         right=%any
27         rightgroups="Accounting, Sales"
28         auto=add
29