moved TNC scenarios to tnc folder
[strongswan.git] / testing / tests / tnc / tnccs-20-tls / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         strictcrlpolicy=no
5         plutostart=no
6         charondebug="tnc 2, imv 2"
7
8 conn %default
9         ikelifetime=60m
10         keylife=20m
11         rekeymargin=3m
12         keyingtries=1
13         keyexchange=ikev2
14
15 conn rw-allow
16         rightgroups=allow
17         leftsubnet=10.1.0.0/28
18         also=rw-eap
19         auto=add
20
21 conn rw-isolate
22         rightgroups=isolate
23         leftsubnet=10.1.0.16/28
24         also=rw-eap
25         auto=add
26
27 conn rw-eap
28         left=PH_IP_MOON
29         leftcert=moonCert.pem
30         leftid=@moon.strongswan.org
31         leftauth=eap-ttls
32         leftfirewall=yes
33         rightauth=eap-ttls
34         rightid=*@strongswan.org
35         rightsendcert=never
36         right=%any