12345678910111213141516171819202122232425262728293031 |
- # /etc/strongswan.conf - strongSwan configuration file
- charon-systemd {
- load = random nonce aes sha1 sha2 md5 pem pkcs1 gmp hmac x509 revocation curl vici kernel-netlink socket-default eap-identity eap-ttls eap-md5 eap-tnc tnc-tnccs tnccs-dynamic tnccs-11 tnccs-20 tnc-imv updown
- multiple_authentication=no
- integrity_test = yes
- syslog {
- daemon {
- tnc = 3
- imv = 3
- }
- }
- plugins {
- eap-ttls {
- phase2_method = md5
- phase2_piggyback = yes
- phase2_tnc = yes
- phase2_tnc_method = tnc
- }
- eap-tnc {
- protocol = tnccs-dynamic
- }
- }
- }
- libtls {
- suites = TLS_DHE_RSA_WITH_AES_128_CBC_SHA256
- }
|