Advertisement
Guest User

Untitled

a guest
Jul 1st, 2015
230
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.61 KB | None | 0 0
  1. # ipsec.conf - strongSwan IPsec configuration file
  2.  
  3. config setup
  4. # uniqueids=never
  5. charondebug="cfg 2, dmn 2, ike 2, net 2"
  6.  
  7. conn %default
  8. keyexchange=ikev2
  9. # ike=aes128-sha256-ecp256,aes256-sha384-ecp384,aes128-sha256-modp2048,aes128-sha1-modp2048,aes256-sha384-modp4096,aes256-sha256-modp4096,aes256-sha1-modp4096,aes128-sha256-modp1536,aes128-sha1-modp1536,aes256-sha384-modp2048,aes256-sha256-modp2048,aes256-sha1-modp2048,aes128-sha256-modp1024,aes128-sha1-modp1024,aes256-sha384-modp1536,aes256-sha256-modp1536,aes256-sha1-modp1536,aes256-sha384-modp1024,aes256-sha256-modp1024,aes256-sha1-modp1024!
  10. # esp=aes128gcm16-ecp256,aes256gcm16-ecp384,aes128-sha256-ecp256,aes256-sha384-ecp384,aes128-sha256-modp2048,aes128-sha1-modp2048,aes256-sha384-modp4096,aes256-sha256-modp4096,aes256-sha1-modp4096,aes128-sha256-modp1536,aes128-sha1-modp1536,aes256-sha384-modp2048,aes256-sha256-modp2048,aes256-sha1-modp2048,aes128-sha256-modp1024,aes128-sha1-modp1024,aes256-sha384-modp1536,aes256-sha256-modp1536,aes256-sha1-modp1536,aes256-sha384-modp1024,aes256-sha256-modp1024,aes256-sha1-modp1024,aes128gcm16,aes256gcm16,aes128-sha256,aes128-sha1,aes256-sha384,aes256-sha256,aes256-sha1!
  11. dpdaction=clear
  12. dpddelay=300s
  13. rekey=no
  14. left=%any
  15. leftsubnet=0.0.0.0/0
  16. leftcert=vpnHostCert.pem
  17. right=%any
  18. rightdns=8.8.8.8,8.8.4.4
  19. rightsourceip=10.55.55.0/24
  20.  
  21. conn IPSec-IKEv2
  22. keyexchange=ikev2
  23. auto=add
  24.  
  25. conn IPSec-IKEv2-EAP
  26. also="IPSec-IKEv2"
  27. rightauth=eap-mschapv2
  28. rightsendcert=never
  29. eap_identity=%any
  30.  
  31. conn CiscoIPSec
  32. keyexchange=ikev1
  33. # forceencaps=yes
  34. rightauth=pubkey
  35. rightauth2=xauth
  36. auto=add
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement