| 12345678910111213141516171819202122 | # /etc/ipsec.conf - strongSwan IPsec configuration fileconfig setupconn %default	ikelifetime=60m	keylife=20m	rekeymargin=3m	keyingtries=1	keyexchange=ikev2conn rw-eap	left=PH_IP_MOON	leftsubnet=10.1.0.0/16	leftid=@moon.strongswan.org	leftcert=moonCert.pem	leftauth=pubkey	leftfirewall=yes	rightid=*@strongswan.org	rightauth=eap-dynamic	right=%any	auto=add
 |