| 12345678910111213141516171819202122 | 
							- # /etc/ipsec.conf - strongSwan IPsec configuration file
 
- config setup
 
- conn %default
 
- 	ikelifetime=60m
 
- 	keylife=20m
 
- 	rekeymargin=3m
 
- 	keyingtries=1
 
- 	keyexchange=ikev2
 
- conn nat-t
 
- 	left=%defaultroute
 
- 	leftsubnet=10.1.0.0/25
 
- 	leftcert=venusCert.pem
 
- 	leftid=@venus.strongswan.org
 
- 	leftfirewall=yes
 
- 	lefthostaccess=yes
 
- 	right=PH_IP_SUN
 
- 	rightid=@sun.strongswan.org
 
- 	rightsubnet=10.2.0.0/16
 
- 	auto=add
 
 
  |