]> git.ipfire.org Git - thirdparty/strongswan.git/blob - testing/tests/multi-level-ca-loop/hosts/moon/etc/ipsec.conf
- import of strongswan-2.7.0
[thirdparty/strongswan.git] / testing / tests / multi-level-ca-loop / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 version 2.0 # conforms to second version of ipsec.conf specification
4
5 config setup
6 plutodebug=control
7 crlcheckinterval=180
8 strictcrlpolicy=yes
9
10 conn %default
11 ikelifetime=60m
12 keylife=20m
13 rekeymargin=3m
14 keyingtries=1
15 left=PH_IP_MOON
16 leftnexthop=%direct
17 leftcert=moonCert.pem
18 leftid=@moon.strongswan.org
19
20 conn alice
21 leftsubnet=PH_IP_ALICE/32
22 right=%any
23 rightca="C=CH, O=Linux strongSwan, OU=Research, CN=Research CA"
24 auto=add