| 12345678910111213141516171819 | # /etc/ipsec.conf - strongSwan IPsec configuration fileconfig setup	strictcrlpolicy=yesconn %default	ikelifetime=60m	keylife=20m	rekeymargin=3m	keyingtries=1conn rw	left=PH_IP_MOON	leftcert=moonCert.pem	leftid=@moon.strongswan.org	leftsubnet=10.1.0.0/16	right=%any	keyexchange=ikev2	auto=add
 |