connections { rw-eap { local_addrs = 192.168.0.1 local { auth = eap-ttls certs = moonCert.pem } remote { auth = eap-ttls } children { net { local_ts = 10.1.0.0/16 updown = /usr/local/libexec/ipsec/_updown iptables esp_proposals = aes128gcm128-x25519 } } version = 2 send_certreq = no proposals = aes128-sha256-x25519 } } secrets { eap-carol { id = carol@strongswan.org secret = Ar3etTnp } eap-dave { id = dave@strongswan.org secret = W7R0g3do } }