Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- #ipsec.conf - StrongSwan Common Gateway Configuration
- # Basic Configuration
- config setup
- #crlcheckinterval=180
- #strictcrlpolicy=no
- #plutostart=no
- conn %default
- ikelifetime=60m
- keylife=20m
- rekeymargin=3m
- keyingtries=1
- ike=aes256-sha256-modp1024
- esp=aes256-sha256
- conn windows8
- #left is gateway
- left 10.1.0.2
- leftcert=ssCert.pem
- leftid="C=EN, O=Corp, CN=10.1.0.2"
- #Protected Resources
- leftsubnet=172.17.81.128/27
- #assume manual firewall configuration
- leftfirewall=no
- #right is client
- right=%any
- #DNS [Comma separated list]
- rightdns=162.17.81.142
- # Identidy device based on Certificate DN wildcard
- rightid="C=EN,O=Corp,OU=Dev,CN=*"
- keyexchange=ikev2
- auto=add
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement