]> code.ossystems Code Review - meta-freescale.git/blob
55025dbc84f31a9316a6a938b0b4ec431145d17c
[meta-freescale.git] /
1 # /etc/ipsec.conf - strongSwan IPsec configuration file
2
3 config setup
4         plutodebug=control
5         crlcheckinterval=180
6         strictcrlpolicy=no
7         charonstart=no
8
9 conn %default
10         ikelifetime=60m
11         keylife=20m
12         rekeymargin=3m
13         keyingtries=1
14         keyexchange=ikev1
15         left=200.200.200.10
16         leftcert=moonCert.pem
17         leftid="C=CH, O=Linux strongSwan, CN=moon.strongswan.org"
18         leftfirewall=yes
19
20 conn net-net
21         left=%defaultroute
22         leftsubnet=192.168.1.0/24
23         leftcert=moonCert.pem
24         right=200.200.200.20
25         rightsubnet=192.168.2.0/24
26         rightid="C=CH, O=Linux strongSwan, CN=sun.strongswan.org"
27         auto=add
28         
29 conn host-host
30         left=%defaultroute
31         leftcert=moonCert.pem
32         right=200.200.200.20
33         rightid="C=CH, O=Linux strongSwan, CN=sun.strongswan.org"
34         auto=add
35
36 conn rw
37         leftsubnet=192.168.1.0/24
38         right=%any
39         auto=add