c3dca0d7e959f0dd0e50aee6102992e689dbb105
[strongswan.git] / testing / tests / ipv6 / net2net-ikev2 / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4
5 ca strongswan
6         cacert=strongswanCert.pem
7         certuribase=http://ip6-winnetou.strongswan.org/certs/
8         crluri=http://ip6-winnetou.strongswan.org/strongswan.crl
9         auto=add
10
11 conn %default
12         ikelifetime=60m
13         keylife=20m
14         rekeymargin=3m
15         keyingtries=1
16         keyexchange=ikev2
17         mobike=no
18
19 conn net-net
20         also=host-host
21         leftsubnet=fec1::0/16
22         rightsubnet=fec2::0/16
23
24 conn host-host
25         left=PH_IP6_MOON
26         leftcert=moonCert.pem
27         leftid=@moon.strongswan.org
28         leftfirewall=yes
29         right=PH_IP6_SUN
30         rightid=@sun.strongswan.org
31         auto=add