]> git.ipfire.org Git - thirdparty/strongswan.git/blob - testing/tests/ocsp-revoked/hosts/carol/etc/ipsec.conf
- import of strongswan-2.7.0
[thirdparty/strongswan.git] / testing / tests / ocsp-revoked / hosts / carol / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 version 2.0 # conforms to second version of ipsec.conf specification
4
5 config setup
6 plutodebug=control
7 crlcheckinterval=180
8 strictcrlpolicy=yes
9
10 ca strongswan
11 cacert=strongswanCert.pem
12 ocspuri=http://ocsp.strongswan.org:8880
13 auto=add
14
15 conn %default
16 ikelifetime=60m
17 keylife=20m
18 rekeymargin=3m
19 keyingtries=1
20 left=PH_IP_CAROL
21 leftnexthop=%direct
22 leftcert=carolRevokedCert.pem
23 leftid=carol@strongswan.org
24
25 conn home
26 right=PH_IP_MOON
27 rightsubnet=10.1.0.0/16
28 rightid=@moon.strongswan.org
29 auto=add