added ikev2/rw-eap-tnc-block scenario
[strongswan.git] / testing / tests / ikev2 / rw-eap-tnc-block / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         strictcrlpolicy=no
5         plutostart=no
6         charondebug="tls 2, tnc 3"
7
8 conn %default
9         ikelifetime=60m
10         keylife=20m
11         rekeymargin=3m
12         keyingtries=1
13         keyexchange=ikev2
14
15 conn rw-eap
16         left=PH_IP_MOON
17         leftsubnet=10.1.0.0/16
18         leftcert=moonCert.pem
19         leftid=@moon.strongswan.org
20         leftauth=eap-ttls
21         leftfirewall=yes
22         rightauth=eap-ttls
23         rightid=*@strongswan.org
24         rightsendcert=never
25         right=%any
26         auto=add