1ec8b49d6d932d22385ccb0cf3f6115678b2a143
[strongswan.git] / testing / tests / ipv6 / host2host-ikev2 / hosts / sun / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         strictcrlpolicy=no
5         crlcheckinterval=180
6         plutostart=no
7
8 conn %default
9         ikelifetime=60m
10         keylife=20m
11         rekeymargin=3m
12         keyingtries=1
13         keyexchange=ikev2
14
15 conn net-net
16         also=host-host
17         leftsubnet=fec2::0/16
18         rightsubnet=fec1::0/16
19
20 conn host-host
21         left=PH_IP6_SUN
22         leftcert=sunCert.pem
23         leftid=@sun.strongswan.org
24         leftfirewall=yes
25         right=PH_IP6_MOON
26         rightid=@moon.strongswan.org
27         auto=add