'Hash and URL' certificates of research and sales CAs
[strongswan.git] / testing / hosts / moon / etc / ipsec.conf
index a0e97e0..9512fb7 100755 (executable)
@@ -1,32 +1,30 @@
 # /etc/ipsec.conf - strongSwan IPsec configuration file
 
-version        2.0     # conforms to second version of ipsec.conf specification
-
 config setup
        plutodebug=control
        crlcheckinterval=180
        strictcrlpolicy=no
+       charonstart=no
 
 conn %default
        ikelifetime=60m
        keylife=20m
        rekeymargin=3m
        keyingtries=1
-       left=192.168.0.1
-       leftnexthop=%direct
+       left=PH_IP_MOON
        leftcert=moonCert.pem
        leftid=@moon.strongswan.org
        leftfirewall=yes
 
 conn net-net
        leftsubnet=10.1.0.0/16
-       right=192.168.0.2
+       right=PH_IP_SUN
        rightsubnet=10.2.0.0/16
        rightid=@sun.strongswan.org
        auto=add
         
 conn host-host
-       right=192.168.0.2
+       right=PH_IP_SUN
        rightid=@sun.strongswan.org
        auto=add