6955ce74a562a6038592756258d60b2d1e07bd98
[strongswan.git] / testing / tests / ikev2 / two-certs / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         charondebug="cfg 2"
5         crlcheckinterval=180
6         strictcrlpolicy=yes
7         plutostart=no
8
9 conn %default
10         ikelifetime=60m
11         keylife=20m
12         rekeymargin=3m
13         keyingtries=1
14         left=PH_IP_MOON
15         leftnexthop=%direct
16         leftcert=moonCert.pem
17         leftid=@moon.strongswan.org
18         leftsubnet=10.1.0.0/16
19         leftfirewall=yes
20         right=%any
21         keyexchange=ikev2
22
23 conn carol
24         rightid=carol@strongswan.org
25         rightcert=carolRevokedCert.pem
26         auto=add
27
28 conn dave
29         rightid=dave@strongswan.org
30         rightcert=daveCert.der
31         auto=add
32