upgraded ipv6 scenarios to 5.0.0
[strongswan.git] / testing / tests / ipv6 / net2net-ikev1 / hosts / sun / etc / ipsec.conf
index c64904a..f71e38e 100755 (executable)
@@ -1,16 +1,20 @@
 # /etc/ipsec.conf - strongSwan IPsec configuration file
 
 config setup
-       plutodebug=control
-       crlcheckinterval=180
-       strictcrlpolicy=no
-       charonstart=no
+       plutostart=no
+
+ca strongswan
+       cacert=strongswanCert.pem
+       certuribase=http://ip6-winnetou.strongswan.org/certs/
+       crluri=http://ip6-winnetou.strongswan.org/strongswan.crl
+       auto=add
 
 conn %default
        ikelifetime=60m
        keylife=20m
        rekeymargin=3m
        keyingtries=1
+       keyexchange=ikev1
 
 conn net-net
        also=host-host
@@ -19,11 +23,9 @@ conn net-net
 
 conn host-host
        left=PH_IP6_SUN
-       leftnexthop=0::0
        leftcert=sunCert.pem
        leftid=@sun.strongswan.org
        leftfirewall=yes
        right=PH_IP6_MOON
-       rightnexthop=0::0
        rightid=@moon.strongswan.org
        auto=add