added ocsp-multi-level scenario
[strongswan.git] / testing / tests / ikev2 / ocsp-multi-level / hosts / carol / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         crlcheckinterval=180
5         strictcrlpolicy=no
6         plutostart=no
7
8 ca strongswan
9         cacert=strongswanCert.pem
10         ocspuri=http://ocsp.strongswan.org:8880
11         auto=add
12
13 conn %default
14         ikelifetime=60m
15         keylife=20m
16         rekeymargin=3m
17         keyingtries=1
18         keyexchange=ikev2
19         left=PH_IP_CAROL
20         leftnexthop=%direct
21         leftcert=carolCert.pem
22         right=PH_IP_MOON
23         rightid=@moon.strongswan.org
24
25 conn alice
26         rightsubnet=PH_IP_ALICE/32
27         auto=add
28         
29 conn venus
30         rightsubnet=PH_IP_VENUS/32
31         auto=add