| 12345678910111213141516171819202122232425 | # /etc/ipsec.conf - strongSwan IPsec configuration fileconfig setup	strictcrlpolicy=yesca strongswan	cacert=strongswanCert.pem	ocspuri=http://ocsp.strongswan.org:8880	auto=addconn %default	keyexchange=ikev2	ikelifetime=60m	keylife=20m	rekeymargin=3m	keyingtries=1	left=PH_IP_CAROL	leftcert=carolCert.pem	leftid=carol@strongswan.orgconn home	right=PH_IP_MOON	rightsubnet=10.1.0.0/16	rightid=@moon.strongswan.org	auto=add
 |