]> git.ipfire.org Git - thirdparty/strongswan.git/blob - testing/tests/protoport-dual/hosts/moon/etc/ipsec.conf
- import of strongswan-2.7.0
[thirdparty/strongswan.git] / testing / tests / protoport-dual / hosts / moon / etc / ipsec.conf
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 version 2.0 # conforms to second version of ipsec.conf specification
4
5 config setup
6 plutodebug=control
7 crlcheckinterval=180
8 strictcrlpolicy=no
9
10 conn %default
11 ikelifetime=60m
12 keylife=20m
13 rekeymargin=3m
14 keyingtries=1
15 left=PH_IP_MOON
16 leftnexthop=%direct
17 leftcert=moonCert.pem
18 leftid=@moon.strongswan.org
19 leftfirewall=yes
20 leftsubnet=10.1.0.0/16
21 right=%any
22 auto=add
23
24 conn rw-icmp
25 lefthostaccess=yes
26 leftprotoport=icmp
27 rightprotoport=icmp
28
29 conn rw-ssh
30 leftprotoport=tcp/ssh
31 rightprotoport=tcp