added
[strongswan.git] / testing / tests / ikev2 / ocsp-timeouts-unknown / hosts / carol / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         crlcheckinterval=180
5         strictcrlpolicy=yes
6         plutostart=no
7
8 ca strongswan-ca
9         cacert=strongswanCert.pem
10         ocspuri1=http://bob.strongswan.org:8800
11         ocspuri2=http://ocsp2.strongswan.org:8880
12         auto=add
13                         
14 conn %default
15         keyexchange=ikev2
16         ikelifetime=60m
17         keylife=20m
18         rekeymargin=3m
19         keyingtries=1
20         left=PH_IP_CAROL
21         leftnexthop=%direct
22         leftcert=carolCert.pem
23         leftid=carol@strongswan.org
24
25 conn home
26         right=PH_IP_MOON
27         rightsubnet=10.1.0.0/16
28         rightid=@moon.strongswan.org
29         auto=add