added multi-level-ca scenario
[strongswan.git] / testing / tests / ikev2 / multi-level-ca / hosts / carol / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         crlcheckinterval=180
5         strictcrlpolicy=no
6         plutostart=no
7
8 conn %default
9         ikelifetime=60m
10         keylife=20m
11         rekeymargin=3m
12         keyingtries=1
13         keyexchange=ikev2
14         left=PH_IP_CAROL
15         leftnexthop=%direct
16         leftcert=carolCert.pem
17         leftsendcert=ifasked
18         right=PH_IP_MOON
19         rightid=@moon.strongswan.org
20         rightca="C=CH, O=Linux strongSwan, CN=strongSwan Root CA"
21
22 conn alice
23         rightsubnet=PH_IP_ALICE/32
24         auto=add
25         
26 conn venus
27         rightsubnet=PH_IP_VENUS/32
28         auto=add