new net2net ipv6 scenarios for IKEv1 and IKEv2
[strongswan.git] / testing / tests / ipv6 / net2net-ikev2 / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         strictcrlpolicy=no
5         plutostart=no
6
7 conn %default
8         ikelifetime=60m
9         keylife=20m
10         rekeymargin=3m
11         keyingtries=1
12         keyexchange=ikev2
13
14 conn net-net
15         also=host-host
16         leftsubnet=fec1::0/16
17         rightsubnet=fec2::0/16
18
19 conn host-host
20         left=PH_IP6_MOON
21         leftcert=moonCert.pem
22         leftid=@moon.strongswan.org
23         leftfirewall=yes
24         right=PH_IP6_SUN
25         rightid=@sun.strongswan.org
26         auto=add
27