Added openssl-ikev2/rw-cpa scenario
[strongswan.git] / testing / tests / openssl-ikev2 / rw-cpa / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4
5 conn %default
6         ikelifetime=60m
7         keylife=20m
8         rekey=no
9         reauth=no
10         keyexchange=ikev2
11         ike=aes128gcm128-prfsha256-ecp256!
12         esp=aes128gcm128-ecp256!
13
14 conn rw
15         left=PH_IP_MOON
16         leftcert=moonCert.pem
17         leftid=@moon.strongswan.org
18         leftsubnet=10.1.0.0/16
19         leftfirewall=yes
20         right=%any
21         auto=add