summaryrefslogtreecommitdiff
path: root/testing/tests/swanctl/rw-cert/hosts/moon/etc/swanctl/swanctl.conf
blob: 861d65ab6b54d9070d51257698b4f81dbf5e6c43 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
connections {

   rw {
      local_addrs  = 192.168.0.1

      local {
         auth = pubkey
         certs = moonCert.pem
         id = moon.strongswan.org
      }
      remote {
         auth = pubkey
      }
      children {
         net {
            local_ts  = 10.1.0.0/16 

            start_action = none
            updown = /usr/local/libexec/ipsec/_updown iptables
            rekey_time = 10m 
            esp_proposals = aes128gcm128-modp2048
         }
      }

      version = 2
      reauth_time = 60m
      rekey_time =  20m
      proposals = aes128-sha256-modp2048
   }
}