upgraded gcrypt-ikev2 scenarios to 5.0.0
[strongswan.git] / testing / tests / gcrypt-ikev2 / rw-cert / hosts / dave / etc / ipsec.conf
index 42f03aa..20f1341 100755 (executable)
@@ -1,8 +1,6 @@
 # /etc/ipsec.conf - strongSwan IPsec configuration file
 
 config setup
 # /etc/ipsec.conf - strongSwan IPsec configuration file
 
 config setup
-        crlcheckinterval=180
-       strictcrlpolicy=no
        plutostart=no
 
 conn %default
        plutostart=no
 
 conn %default
@@ -11,7 +9,8 @@ conn %default
        rekeymargin=3m
        keyingtries=1
        keyexchange=ikev2
        rekeymargin=3m
        keyingtries=1
        keyexchange=ikev2
-       ike=aes256-sha256-modp2048!
+       ike=aes256-sha512-modp2048!
+       esp=aes256-sha512!
 
 conn home
        left=PH_IP_DAVE
 
 conn home
        left=PH_IP_DAVE