ipsec.conf 410 B

123456789101112131415161718192021222324
  1. # /etc/ipsec.conf - strongSwan IPsec configuration file
  2. config setup
  3. ca strongswan
  4. cacert=strongswanCert.pem
  5. certuribase=http://winnetou.strongswan.org/certs/
  6. auto=add
  7. conn %default
  8. ikelifetime=60m
  9. keylife=20m
  10. rekeymargin=3m
  11. keyingtries=1
  12. conn rw
  13. left=PH_IP_MOON
  14. leftcert=moonCert.pem
  15. leftid=@moon.strongswan.org
  16. leftsubnet=10.1.0.0/16
  17. leftfirewall=yes
  18. right=%any
  19. keyexchange=ikev2
  20. auto=add